{"entities":{"Q1412249":{"pageid":1422989,"ns":120,"title":"Item:Q1412249","lastrevid":48195553,"modified":"2026-01-03T22:28:44Z","type":"item","id":"Q1412249","labels":{"en":{"language":"en","value":"The insecurity of the elliptic curve digital signature algorithm with partially known nonces"}},"descriptions":{"en":{"language":"en","value":"scientific article; zbMATH DE number 2001974"}},"aliases":{},"claims":{"P31":[{"mainsnak":{"snaktype":"value","property":"P31","hash":"fd5912e4dab4b881a8eb0eb27e7893fef55176ad","datavalue":{"value":{"entity-type":"item","numeric-id":56887,"id":"Q56887"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","id":"Q1412249$404C61B4-838B-4916-9494-C3C75EE6E926","rank":"normal"}],"P159":[{"mainsnak":{"snaktype":"value","property":"P159","hash":"fcf9b323738310dc2f8a4c4a83bbb6c370f1b611","datavalue":{"value":{"text":"The insecurity of the elliptic curve digital signature algorithm with partially known nonces","language":"en"},"type":"monolingualtext"},"datatype":"monolingualtext"},"type":"statement","id":"Q1412249$B79E3164-9B46-4405-A016-17179B39F21B","rank":"normal"}],"P225":[{"mainsnak":{"snaktype":"value","property":"P225","hash":"55f235c571c143985997588c6f944f3cdcf08f4b","datavalue":{"value":"1039.94008","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$E5CE6352-84AB-487D-8473-041C1D3834FB","rank":"normal"}],"P27":[{"mainsnak":{"snaktype":"value","property":"P27","hash":"6a0a2e5d5f04bb097788a952329ac0a7d04bda1d","datavalue":{"value":"10.1023/A:1025436905711","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$5A3A11FC-8065-4ACE-99A4-3126A67B8EF0","rank":"normal"}],"P16":[{"mainsnak":{"snaktype":"value","property":"P16","hash":"ef702ea29fef5481550e392fb1558cc03ae07df9","datavalue":{"value":{"entity-type":"item","numeric-id":1015358,"id":"Q1015358"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","id":"Q1412249$440DFF03-799C-492C-8007-86D482E4E54D","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P16","hash":"165c8921a441245575fe00da025ab28703ff633a","datavalue":{"value":{"entity-type":"item","numeric-id":240100,"id":"Q240100"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","id":"Q1412249$C4718899-E29A-4310-9E8E-3B27C862E94A","rank":"normal"}],"P200":[{"mainsnak":{"snaktype":"value","property":"P200","hash":"fb34abbf39f11094509111953e4c62a22b1e3897","datavalue":{"value":{"entity-type":"item","numeric-id":115940,"id":"Q115940"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","id":"Q1412249$1FF336F7-247D-4E3A-8715-F1F980E0AD89","rank":"normal"}],"P28":[{"mainsnak":{"snaktype":"value","property":"P28","hash":"bdcbbe6751005b5a25abaf14031c72afec06c29d","datavalue":{"value":{"time":"+2003-11-10T00:00:00Z","timezone":0,"before":0,"after":0,"precision":11,"calendarmodel":"http://www.wikidata.org/entity/Q1985727"},"type":"time"},"datatype":"time"},"type":"statement","id":"Q1412249$889BD7D8-7E3B-49B8-BE23-E0FE91782FAD","rank":"normal"}],"P1448":[{"mainsnak":{"snaktype":"value","property":"P1448","hash":"ccecf8ab454ec9fa66a9b28a870391dfe858ea3a","datavalue":{"value":"This paper contains the first provable polynomial-time attack against the elliptic curve digital signature algorithm, when the nonces are partially known. The ``nonces'' are the random integers used to disguise the contribution of the secret key in the digital signature. \\textit{N. Howgrave-Graham} and \\textit{N. Smart} [Des. Codes Cryptography 23, 283--290 (2001; Zbl 1006.94022)] proposed several heuristic attacks against DSA assuming that a certain (not too small) number of bits of the nonces are known. \\textit{P. Q. Nguyen} and \\textit{I. E. Shparlinski} [J. Cryptology 15, 151--176 (2002; Zbl 1009.94011)] obtained provable polynomial-time attacks to DSA when the nonces are partially known, based on a generalization of the work of Boneh-Venkatesan on the hidden number problem. In this paper these ideas are extended to the case of ECDSA, building on results on the distribution of ECDSA signatures, based on bounds of exponential sums valuated on \\(x\\)-coordinates of elliptic curves over finite fields.","type":"string"},"datatype":"string"},"type":"statement","id":"Q1412249$C42FA7D0-2985-46F9-AFE0-3EB55A07C3F8","rank":"normal"}],"P1447":[{"mainsnak":{"snaktype":"value","property":"P1447","hash":"b25e89c1c52cd760089948413b178d8783565e1a","datavalue":{"value":{"entity-type":"item","numeric-id":591450,"id":"Q591450"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","id":"Q1412249$0157DF9C-CFC7-4725-B8AC-42B9E51D210A","rank":"normal"}],"P226":[{"mainsnak":{"snaktype":"value","property":"P226","hash":"b71b42e4e887bf125b7436fe1334aef39047fb5c","datavalue":{"value":"94A62","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$8A33710B-6949-4024-B542-1E50F1E9BC50","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P226","hash":"dcefd1e200eae54420c5080733f6b5a349da9f6a","datavalue":{"value":"11T71","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$6557BD88-D71D-4ED1-AEDB-D74A432D5638","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P226","hash":"cca64e508302ab539d0532c0150adbc19b564bb9","datavalue":{"value":"11T23","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$D98FF919-7999-4834-B885-B7968BBFCFFC","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P226","hash":"f00aec7b2c940e365c27808f50e4aeed90366677","datavalue":{"value":"14H52","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$9D12C5E1-5C4F-4E21-80D6-E386A326F6B4","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P226","hash":"b3f5570531d36cdad95fcc8cba24a2dabc5fbbbf","datavalue":{"value":"94A60","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$D2A3CE86-63A6-4E61-8131-77BC09199F07","rank":"normal"}],"P1451":[{"mainsnak":{"snaktype":"value","property":"P1451","hash":"e56af2f15451b8ce539b6bc54b55b03d59856077","datavalue":{"value":"2001974","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$6AD453A2-B9F1-4C18-BA05-81A8BE9CD521","rank":"normal"}],"P1450":[{"mainsnak":{"snaktype":"value","property":"P1450","hash":"d4fb50d049eba6ae5d08aff15670fbfe5f6959b1","datavalue":{"value":"ECDSA","type":"string"},"datatype":"string"},"type":"statement","id":"Q1412249$F96FBDE2-1883-4881-87AC-8668EB8956B8","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P1450","hash":"564664e04ed8722ea9a8797361f6b33443e431ed","datavalue":{"value":"provable security","type":"string"},"datatype":"string"},"type":"statement","id":"Q1412249$E70F0CBB-1FC7-408D-B4BE-6D1FC50F01B2","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P1450","hash":"152a3a8a7275b37d6dbe5f1a44038a85372ab00c","datavalue":{"value":"elliptic curve","type":"string"},"datatype":"string"},"type":"statement","id":"Q1412249$85166F70-6B18-4CBE-888A-8B04F80B1AEB","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P1450","hash":"b05c5a74cc052582e2cca37ae8e91129483570df","datavalue":{"value":"digital signature","type":"string"},"datatype":"string"},"type":"statement","id":"Q1412249$8A921EF9-F251-4E6B-85B3-5887030F82F1","rank":"normal"}],"P1460":[{"mainsnak":{"snaktype":"value","property":"P1460","hash":"57f7fea50d2ce1b39b695c4a1313582eed405e38","datavalue":{"value":{"entity-type":"item","numeric-id":5976449,"id":"Q5976449"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","id":"Q1412249$48ED69DA-9388-4373-B344-CC7E5094BFD6","rank":"normal"}],"P205":[{"mainsnak":{"snaktype":"value","property":"P205","hash":"cde4fa4191c66ddb3e4c869ce6c1e001ab1c0915","datavalue":{"value":"https://doi.org/10.1023/a:1025436905711","type":"string"},"datatype":"url"},"type":"statement","id":"Q1412249$59F15559-FEB9-4F12-9AAC-338A0F6425EC","rank":"normal"}],"P388":[{"mainsnak":{"snaktype":"value","property":"P388","hash":"276b8696e558804e1b3178db5e4ca34634a4e3ed","datavalue":{"value":"W1485287820","type":"string"},"datatype":"external-id"},"type":"statement","id":"Q1412249$8AA930FC-3757-4CC9-BF5D-CC7D5D6BEB57","rank":"normal"}],"P1643":[{"mainsnak":{"snaktype":"value","property":"P1643","hash":"a6140d428e27a79dcb0a9f35319b7b90fbc26bc8","datavalue":{"value":{"entity-type":"item","numeric-id":1849602,"id":"Q1849602"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","qualifiers":{"P1659":[{"snaktype":"value","property":"P1659","hash":"9371fb9dd6fb77f6bb9d81b65a26a4cba99fe683","datavalue":{"value":{"amount":"+0.8900828957557678","unit":"1"},"type":"quantity"},"datatype":"quantity"}],"P1660":[{"snaktype":"value","property":"P1660","hash":"a327a09ea0305e98d5cf33bd4036320e19f2aed0","datavalue":{"value":{"entity-type":"item","numeric-id":6821328,"id":"Q6821328"},"type":"wikibase-entityid"},"datatype":"wikibase-item"}]},"qualifiers-order":["P1659","P1660"],"id":"Q1412249$C40F36A3-6EC8-40DF-843E-D7732E29BDB5","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P1643","hash":"855e22c6ded2309a57ff52afe38462051d672f90","datavalue":{"value":{"entity-type":"item","numeric-id":3404409,"id":"Q3404409"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","qualifiers":{"P1659":[{"snaktype":"value","property":"P1659","hash":"02b3bb1d07503c7877a01ef4bcbd66ebe0936eec","datavalue":{"value":{"amount":"+0.8783692121505737","unit":"1"},"type":"quantity"},"datatype":"quantity"}],"P1660":[{"snaktype":"value","property":"P1660","hash":"a327a09ea0305e98d5cf33bd4036320e19f2aed0","datavalue":{"value":{"entity-type":"item","numeric-id":6821328,"id":"Q6821328"},"type":"wikibase-entityid"},"datatype":"wikibase-item"}]},"qualifiers-order":["P1659","P1660"],"id":"Q1412249$C79ED243-EBF6-49B5-AB32-2D3C69708453","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P1643","hash":"6a6cb4749d01dc53064585e59d1276f994a48f79","datavalue":{"value":{"entity-type":"item","numeric-id":4787202,"id":"Q4787202"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","qualifiers":{"P1659":[{"snaktype":"value","property":"P1659","hash":"5fd56be4f9f01c7e230ea30055d2533124cef6e1","datavalue":{"value":{"amount":"+0.856115460395813","unit":"1"},"type":"quantity"},"datatype":"quantity"}],"P1660":[{"snaktype":"value","property":"P1660","hash":"a327a09ea0305e98d5cf33bd4036320e19f2aed0","datavalue":{"value":{"entity-type":"item","numeric-id":6821328,"id":"Q6821328"},"type":"wikibase-entityid"},"datatype":"wikibase-item"}]},"qualifiers-order":["P1659","P1660"],"id":"Q1412249$899DC6F5-DC7C-4AF0-917E-B788004A97CB","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P1643","hash":"357798be61de71170707108b9808d9a2a78b1510","datavalue":{"value":{"entity-type":"item","numeric-id":4414718,"id":"Q4414718"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","qualifiers":{"P1659":[{"snaktype":"value","property":"P1659","hash":"6722c3713a2ec7ba87884462d377fb90dcad7a79","datavalue":{"value":{"amount":"+0.8548458218574524","unit":"1"},"type":"quantity"},"datatype":"quantity"}],"P1660":[{"snaktype":"value","property":"P1660","hash":"a327a09ea0305e98d5cf33bd4036320e19f2aed0","datavalue":{"value":{"entity-type":"item","numeric-id":6821328,"id":"Q6821328"},"type":"wikibase-entityid"},"datatype":"wikibase-item"}]},"qualifiers-order":["P1659","P1660"],"id":"Q1412249$646CBD7F-0A16-4CB1-94A1-5891F1B02545","rank":"normal"},{"mainsnak":{"snaktype":"value","property":"P1643","hash":"7f045c079472ffe132805074ec4e8aa02fc378fd","datavalue":{"value":{"entity-type":"item","numeric-id":429782,"id":"Q429782"},"type":"wikibase-entityid"},"datatype":"wikibase-item"},"type":"statement","qualifiers":{"P1659":[{"snaktype":"value","property":"P1659","hash":"376c8147e046ccc9e7ec85768d1c302069312b67","datavalue":{"value":{"amount":"+0.8250880241394043","unit":"1"},"type":"quantity"},"datatype":"quantity"}],"P1660":[{"snaktype":"value","property":"P1660","hash":"a327a09ea0305e98d5cf33bd4036320e19f2aed0","datavalue":{"value":{"entity-type":"item","numeric-id":6821328,"id":"Q6821328"},"type":"wikibase-entityid"},"datatype":"wikibase-item"}]},"qualifiers-order":["P1659","P1660"],"id":"Q1412249$50F8095B-83F1-48C2-A5BE-F152E67D02CC","rank":"normal"}]},"sitelinks":{"mardi":{"site":"mardi","title":"Publication:1412249","badges":[],"url":"https://portal.mardi4nfdi.de/wiki/Publication:1412249"}}}}}