R.B. Morris, Y. Tsuji, et al.
International Journal for Numerical Methods in Engineering
We describe a lattice attack on the Digital Signature Algorithm (DSA) when used to sign many messages, mi, under the assumption that a proportion of the bits of each of the associated ephemeral keys, yi, can be recovered by alternative techniques.
R.B. Morris, Y. Tsuji, et al.
International Journal for Numerical Methods in Engineering
Satoshi Hada
IEICE Transactions on Fundamentals of Electronics, Communications and Computer Sciences
Daniel J. Costello Jr., Pierre R. Chevillat, et al.
ISIT 1997
David Cash, Dennis Hofheinz, et al.
Journal of Cryptology