A team of computer scientists has cracked the encryption API used in the SecurID 800 token. The attack works by repeatedly exploiting a tiny weakness in the wrapper until its contents are converted into plaintext. RSA has now explained why the situation isn’t quite as bad it sounds in a blog post on their website. The same attack also works on plenty of other devices, including electronic ID cards carried by Estonian citizens and other companies provided by other companies, including the Aladdin eTokenPro and iKey 2032.”]
Source: https://gizmodo.com/computer-scientists-crack-rsas-ironclad-secure-id-800-t-5921325

