cryptomedium

Грааль (Grail)

caplag

Task: RSA with 576 high bits of prime p revealed (p_revealed has 448 trailing zero bits). Solution: Coppersmith small_roots method to recover the unknown low bits and factor N.

$ ls tags/ techniques/
coppersmith_methodknown_high_bits_of_plattice_reduction

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]