{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2022,4,5]],"date-time":"2022-04-05T06:32:27Z","timestamp":1649140347746},"reference-count":30,"publisher":"Elsevier BV","issue":"4","license":[{"start":{"date-parts":[[1999,1,1]],"date-time":"1999-01-01T00:00:00Z","timestamp":915148800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Information Security Technical Report"],"published-print":{"date-parts":[[1999,1]]},"DOI":"10.1016\/s1363-4127(99)80085-5","type":"journal-article","created":{"date-parts":[[2002,7,25]],"date-time":"2002-07-25T14:22:28Z","timestamp":1027606948000},"page":"28-33","source":"Crossref","is-referenced-by-count":0,"title":["Padding attacks on RSA"],"prefix":"10.1016","volume":"4","author":[{"given":"David","family":"Naccache","sequence":"first","affiliation":[]}],"member":"78","reference":[{"key":"10.1016\/S1363-4127(99)80085-5_BIB1","series-title":"Digital signatures using reversible public-key cryptography for the financial services industry (rDSA)","author":"ANSI X9.31","year":"1998"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB2","series-title":"1999 RSA Data Security Conference proceeding book","article-title":"To pad or not to pad: does formatting degrade security?","author":"Baudron","year":"1999"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB3","series-title":"Proceedings of the first annual conference on computer and communication security","article-title":"Random oracles are practical: a paradigm for designing efficient protocols","author":"Bellare","year":"1993"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB4","series-title":"Advances in cryptology EUROCRYPT'94","first-page":"92","article-title":"Optimal asymetric encryption","author":"Bellare","year":"1995"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB5","series-title":"Advances in cryptology EUROCRYPT'96, Springer-Verlag","first-page":"399","article-title":"The exact security of digital signatures: how to sign with RSA and Rabin","author":"Bellare","year":"1996"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB6","series-title":"Advances in cryptology CRYPTO'98","first-page":"1","article-title":"Chosen ciphertext attacks against protocols based on the RSA encryption standard PKCS#1","author":"Bleichenbacher","year":"1998"},{"issue":"no. 2","key":"10.1016\/S1363-4127(99)80085-5_BIB7","first-page":"203","article-title":"Twenty years of attacks on the RSA cryptosystem","volume":"vol. 46","author":"Boneh","year":"1999","journal-title":"Notices of the American Mathematical Society (AMS)"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB8","series-title":"Advances in cryptology EUROCRYPT'96","first-page":"1","article-title":"Low exponent RSA with related messages","author":"Coppersmith","year":"1996"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB9","series-title":"Advances in cryptology EUROCRYPT'96","first-page":"155","article-title":"Finding a small root of a univariate modular equation","author":"Coppersmith","year":"1996"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB10","article-title":"ISO 97961 and the new forgery strategy","author":"Coppersmith","year":"1999","journal-title":"ISO\/IEC\/JTC1\/SC27\/N2362"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB11","series-title":"Advances in cryptology CRYPTO'99","first-page":"1","article-title":"On the security of RSA padding","author":"Coron","year":"1999"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB12","series-title":"TR-CS-82-2","article-title":"Chosen signature cryptanalysis of the RSA (MIT) public-key cryptosystem","author":"Davida","year":"1982"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB13","series-title":"Advances in eryptology CRYPTO'85","first-page":"516","article-title":"A chosen text attack on the RSA eryptosystem and some discrete logarithm schemes","author":"Desmedt","year":"1986"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB14","series-title":"Specification o chipcard interface with digital signature application\/function according to SiG and SigV","year":"1998"},{"issue":"no. 1","key":"10.1016\/S1363-4127(99)80085-5_BIB15","doi-asserted-by":"crossref","first-page":"41","DOI":"10.1007\/BF00191320","article-title":"Which new RSAsignatures can be computed from certain given RSA signatures?","volume":"vol. 5","author":"Evertse","year":"1992","journal-title":"Journal of eryptology"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB16","series-title":"Advances in eryptology EUROCRYPT'97","first-page":"495","article-title":"Selective forgery of RSA signatures using redundancy","author":"Girault","year":"1997"},{"issue":"no. 9","key":"10.1016\/S1363-4127(99)80085-5_BIB17","doi-asserted-by":"crossref","DOI":"10.1049\/el:19850269","article-title":"How to forge RSA key certificates","volume":"vol. 21","author":"Gordon","year":"1985","journal-title":"Electronic Letters"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB18","series-title":"Advances in eryptology EUROCRYPT'90","first-page":"465","article-title":"Precautions taken against various attacks in ISO\/IEC DIS 9796","author":"Guillou","year":"1991"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB19","series-title":"The SSL Protocol","author":"Hickman","year":"1995"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB20","series-title":"Information technology \u2014 Security techniques - Digital signature scheme giving message recovery, Part 1: Mechanisms using redundancy","author":"ISO\/IEC 9796","year":"1999"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB21","series-title":"Information technology \u2014 Security techniques - Digital signature scheme giving message recovery, Part 2: Mechanisms using a hash function","author":"ISO\/IEC 9796-2","year":"1997"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB22","series-title":"Information technology \u2014 Security techniques - Hash-functions; Part 2: Hash functions using an n-bit block-cipher algorithm","author":"ISO\/IEC 10118-2","year":"1994"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB23","series-title":"Advances in eryptology CRYPTO'85","first-page":"18","article-title":"Attacks on some RSA signatures","author":"de Jonge","year":"1986"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB24","series-title":"Computer security-ESORICS'98","first-page":"85","article-title":"On the security of some variants of the RSA signature scheme","author":"Michels","year":"1998"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB25","series-title":"Advances in eryptology CRYPTO'97","first-page":"221","article-title":"A multiplicative attack using LLL algorithm on RSA signatures with redundancy","author":"Misarsky","year":"1997"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB26","series-title":"Lecture notes in computer science 1431","doi-asserted-by":"crossref","first-page":"14","DOI":"10.1007\/BFb0054011","article-title":"How (not) to design RSA signature schemes, Public-key cryptography","author":"Misarsky","year":"1998"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB27","article-title":"Secure hash standard","author":"National Institute of Standards and Technology","year":"1994","journal-title":"FIPS publication 180-1"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB28","series-title":"Internet activities board","article-title":"RFC 7321: The MD5 message-digest algorithm","author":"Rivest","year":"1992"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB29","doi-asserted-by":"crossref","first-page":"120","DOI":"10.1145\/359340.359342","article-title":"A method for obtaining digital signatures and public-key cryptosystems","volume":"vol. 2\u201321","author":"Rivest","year":"1978","journal-title":"Communications of the ACM"},{"key":"10.1016\/S1363-4127(99)80085-5_BIB30","series-title":"PKCS # 1: RSA cryptography specifications","author":"RSA Laboratories","year":"1998"}],"container-title":["Information Security Technical Report"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S1363412799800855?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S1363412799800855?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2019,4,23]],"date-time":"2019-04-23T18:25:21Z","timestamp":1556043921000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S1363412799800855"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[1999,1]]},"references-count":30,"journal-issue":{"issue":"4","published-print":{"date-parts":[[1999,1]]}},"alternative-id":["S1363412799800855"],"URL":"https:\/\/doi.org\/10.1016\/s1363-4127(99)80085-5","relation":{},"ISSN":["1363-4127"],"issn-type":[{"value":"1363-4127","type":"print"}],"subject":[],"published":{"date-parts":[[1999,1]]}}}