Isn't it much more important "Can NSA break RSA efficiently" or
even "Can they efficiently factor integers"?

AFAICT these are not known to be theoretically equivalent.

There were low exponent attack ($3$) IIRC.

Don't remember seeing X509 RSA cert with exponent other than
2^16+1 (or something like this) and this is not much bigger...

Reply via email to