Live data from Hacker News

About the supposed factoring of a 4096 bit RSA key

blog.hboeck.de

11–20 of 37 posts

Re: About the supposed factoring of a 4096 bit RSA key

#11
post #8

Meanwhile, on the original post, the author is acting like HN was tampering with the ranking of the article because it started doing poorly after people realized that a real key wasn't factored: > "Update II : Amusingly enough, it seems Hacker News hand-diddled their story list to remove this discussion. Way to go Ydumbinator crew!" [0] [0]: http://trilema.com/2015/full-disclosure-4096-rsa-key-in-the-...

that's pretty much typical of mircea popescu.

Re: About the supposed factoring of a 4096 bit RSA key

#12
post #4

For anybody who wants to think about how such entry happened, it seems that the difference among the two presented numbers is in exactly 32 bytes (256 bits): 913ff626efddfb f8ae8f1d40da8d13 a90138686884bad1 9db776bb4812f7e3 b2 c37b8cca2eb4ac 1e889d1027bc1ed6 664f3877cd7052c6 db5567a3365cf7e2 c6 starting from the 162nd byte if I counted correctly, which means the first 5 * 32+1 (or 2 * 80+1) bytes are the same, then 3…

Is there any sort of statistical analyses which could give some idea of whether those bits were generated randomly, by a human, or perhaps came from some other key?

Re: About the supposed factoring of a 4096 bit RSA key

#13
post #4

For anybody who wants to think about how such entry happened, it seems that the difference among the two presented numbers is in exactly 32 bytes (256 bits): 913ff626efddfb f8ae8f1d40da8d13 a90138686884bad1 9db776bb4812f7e3 b2 c37b8cca2eb4ac 1e889d1027bc1ed6 664f3877cd7052c6 db5567a3365cf7e2 c6 starting from the 162nd byte if I counted correctly, which means the first 5 * 32+1 (or 2 * 80+1) bytes are the same, then 3…

Is there any sort of statistical analyses which could give some idea of whether those bits were generated randomly, by a human, or perhaps came from some other key?

They are just 256 bits. And if they come from a cypher they certainly can't be distinguished from the pure random bits or from the bits from any other key.

But if they come from some other key unmodified it would be possible to scan for the match, and it's a fast operation, as soon as we have the keys in which we'd like to search.

Re: About the supposed factoring of a 4096 bit RSA key

#14
post #4

For anybody who wants to think about how such entry happened, it seems that the difference among the two presented numbers is in exactly 32 bytes (256 bits): 913ff626efddfb f8ae8f1d40da8d13 a90138686884bad1 9db776bb4812f7e3 b2 c37b8cca2eb4ac 1e889d1027bc1ed6 664f3877cd7052c6 db5567a3365cf7e2 c6 starting from the 162nd byte if I counted correctly, which means the first 5 * 32+1 (or 2 * 80+1) bytes are the same, then 3…

Is there any sort of statistical analyses which could give some idea of whether those bits were generated randomly, by a human, or perhaps came from some other key?

Why the fuck would this be downvoted? You people sometimes...

Edit: further contributing to the discussion, more anonymous downvotes. Great.

Re: About the supposed factoring of a 4096 bit RSA key

#15
post #11
post #8

Meanwhile, on the original post, the author is acting like HN was tampering with the ranking of the article because it started doing poorly after people realized that a real key wasn't factored: > "Update II : Amusingly enough, it seems Hacker News hand-diddled their story list to remove this discussion. Way to go Ydumbinator crew!" [0] [0]: http://trilema.com/2015/full-disclosure-4096-rsa-key-in-the-...

that's pretty much typical of mircea popescu.

Does he have any claim to fame beyond very elaborate trolling? I've been trying to figure out what's up with him recently.

Re: About the supposed factoring of a 4096 bit RSA key

#16

I feel like everyone is being quick to write this off as "some random, harmless error", probably because the focus is that RSA is not broken, rather than asking what this was really about. "The only case where this could matter would be a broken implementation of the OpenPGP key protocol that does not check if subkeys really belong to a master key." I'd be curious to explore that further. This kernel developer has be…

If I wanted to poison HPA with a fake key, why would I create a degenerate one? A fake key with strong factors would have gone unnoticed, at least by this analysis.

Re: About the supposed factoring of a 4096 bit RSA key

#17
post #8

Meanwhile, on the original post, the author is acting like HN was tampering with the ranking of the article because it started doing poorly after people realized that a real key wasn't factored: > "Update II : Amusingly enough, it seems Hacker News hand-diddled their story list to remove this discussion. Way to go Ydumbinator crew!" [0] [0]: http://trilema.com/2015/full-disclosure-4096-rsa-key-in-the-...

It's worth noting that HN does adjust article rankings:

http://www.righto.com/2013/11/how-hacker-news-ranking-really...

Compare the gradual slide from the peak of other articles from the same time as the one in question:

http://hnrankings.info/9560839,9561606,9561693,9561599,95619...

Moderated forums aren't censored, but they do get... moderated. What else did you expect?

Re: About the supposed factoring of a 4096 bit RSA key

#18
post #15
post #11

Earlier quoted context omitted.

that's pretty much typical of mircea popescu.

Does he have any claim to fame beyond very elaborate trolling? I've been trying to figure out what's up with him recently.

Popescu is waging a pathetic little personal war against FetLife [1]. He's a textbook example of a self-deluded crypto-narcissist who, if there's any justice on this earth, will see his comeuppance. People like him always do.

[1] He's been scraping the profiles of young women (specifically) and posting links, names, and hometowns on his blog. Yes, as technologists, we know that this kind of indexing is trivial. That's no reason, as a decent human being, to terrorize innocent people.

Re: About the supposed factoring of a 4096 bit RSA key

#19
post #15
post #11

Earlier quoted context omitted.

that's pretty much typical of mircea popescu.

Does he have any claim to fame beyond very elaborate trolling? I've been trying to figure out what's up with him recently.

Wealth.

Most of the publicly known early adopters don't spend as much (or any) time trolling about (and getting trolled) on IRC.

http://search.bitcoin-assets.com/?q=from%3Amircea_popescu

Re: About the supposed factoring of a 4096 bit RSA key

#20
post #19
post #15

Earlier quoted context omitted.

Does he have any claim to fame beyond very elaborate trolling? I've been trying to figure out what's up with him recently.

Wealth. Most of the publicly known early adopters don't spend as much (or any) time trolling about (and getting trolled) on IRC. http://search.bitcoin-assets.com/?q=from%3Amircea_popescu

Do we know how much he's actually worth?
Post reply on HN