Tags: mt19937 crypto ecdsa lattice 

Rating:

TL;DR: lattice attack on biased nonce ECDSA + MT19937 prediction for ECDSA nonces

Full writeup at [https://org.anize.rs/SECCON-2021/crypto/signwars](https://org.anize.rs/SECCON-2021/crypto/signwars)

Original writeup (https://org.anize.rs/SECCON-2021/crypto/signwars).