因式分解与离散对数难度的比较:一次 240 位数字的试验
密码学与安全
2020-06-12 v1
摘要
我们报告两项新纪录:RSA-240(一个 795 比特数)的因式分解,以及在一个 795 比特素数域上的离散对数计算。此前的纪录为 2009 年 RSA-768 的因式分解和 2016 年 768 比特离散对数计算。我们在 795 比特水平上的两次计算使用相同硬件与软件,表明计算离散对数并不比同等规模的因式分解困难很多。此外,得益于算法变体与恰当参数选择,我们的计算比基于先前纪录预期的开销显著更低。本文末页还报告了 RSA-250 的因式分解。
引用
@article{arxiv.2006.06197,
title = {Comparing the difficulty of factorization and discrete logarithm: a 240-digit experiment},
author = {Fabrice Boudot and Pierrick Gaudry and Aurore Guillevic and Nadia Heninger and Emmanuel Thomé and Paul Zimmermann},
journal= {arXiv preprint arXiv:2006.06197},
year = {2020}
}