<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RSA Private Key Recovery in Tech Talk</title>
    <link>https://community.isc2.org/t5/Tech-Talk/RSA-Private-Key-Recovery/m-p/51727#M3576</link>
    <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Some time ago, I did some research on the RSA algorithm because I learned some years ago that a private key cannot be extracted from a public key. As you know, web servers have certificates which all have a public key inside. So, what about the private key, are there any possibilities to get it ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Well, it depends on the key generation process. I explain in my research paper on which way a private key can be recovered from a public key. In this vulnerability, I explain when two prime are generated during the key generation process are close to each other, the private key can easily be recovered.&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.sans.org/white-papers/recover-an-rsa-private-key-from-a-tls-v1-2-session/" target="_blank"&gt;https://www.sans.org/white-papers/recover-an-rsa-private-key-from-a-tls-v1-2-session/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This vulnerability exist for a long time, so validating prime numbers during the key generation process is also important.&lt;/P&gt;&lt;P&gt;If you need any additional information, don't hestiate to contact me via email.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;Johan&lt;/P&gt;</description>
    <pubDate>Mon, 27 Jun 2022 13:17:49 GMT</pubDate>
    <dc:creator>JohanLoos</dc:creator>
    <dc:date>2022-06-27T13:17:49Z</dc:date>
    <item>
      <title>RSA Private Key Recovery</title>
      <link>https://community.isc2.org/t5/Tech-Talk/RSA-Private-Key-Recovery/m-p/51727#M3576</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Some time ago, I did some research on the RSA algorithm because I learned some years ago that a private key cannot be extracted from a public key. As you know, web servers have certificates which all have a public key inside. So, what about the private key, are there any possibilities to get it ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Well, it depends on the key generation process. I explain in my research paper on which way a private key can be recovered from a public key. In this vulnerability, I explain when two prime are generated during the key generation process are close to each other, the private key can easily be recovered.&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.sans.org/white-papers/recover-an-rsa-private-key-from-a-tls-v1-2-session/" target="_blank"&gt;https://www.sans.org/white-papers/recover-an-rsa-private-key-from-a-tls-v1-2-session/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This vulnerability exist for a long time, so validating prime numbers during the key generation process is also important.&lt;/P&gt;&lt;P&gt;If you need any additional information, don't hestiate to contact me via email.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;Johan&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jun 2022 13:17:49 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/RSA-Private-Key-Recovery/m-p/51727#M3576</guid>
      <dc:creator>JohanLoos</dc:creator>
      <dc:date>2022-06-27T13:17:49Z</dc:date>
    </item>
    <item>
      <title>Re: RSA Private Key Recovery</title>
      <link>https://community.isc2.org/t5/Tech-Talk/RSA-Private-Key-Recovery/m-p/51731#M3577</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/841582019"&gt;@JohanLoos&lt;/a&gt;&amp;nbsp;&amp;nbsp; A very good practical demonstration.&amp;nbsp; Well done&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Of course all this will be practically all undone with the implementation of Quantum Computing, which is why there is so much interest in the subject.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jun 2022 21:06:26 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/RSA-Private-Key-Recovery/m-p/51731#M3577</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2022-06-27T21:06:26Z</dc:date>
    </item>
  </channel>
</rss>

