January 8, 2002
Practical Aspects of Modern Cryptography
The Hastad Attack
•
Given
•
E
1
(
x
) =
x
3
mod n
1
•
E
2
(
x
) =
x
3
mod n
2
•
E
3
(
x
) =
x
3
mod n
3
•
one can easily compute
x
.