Re: Alleged recovery of PS3 ECDSA private key from signatures



Tom St Denis wrote:

EC-DSA was broken in this case because they failed to seed their PRNG
correctly [at all, who knows]. It has nothing to do with algorithm
choice.

They reused the same nonce for every message. Doh!

cf. Console Hacking 2010 Part 3 (from the 5:30 mark)
http://www.youtube.com/watch?v=84WI-jSgNMQ
.