Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Great points. Another thing to keep in mind is that traffic encrypted using 1024 bit RSA keys, which the vast majority of SSL sites use, is no longer considered secure enough to withstand brute force decryption. In fact, the NIST has recommended that all sites upgrade to 2048 bit private keys by Jan. 1, 2011. They wouldn't make this recommendation unless people with GPGPU could crack it.


You are not going to do an exhaustive search on a 1024bit keyspace, ever.

You break RSA by factoring n into p x q.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: