An attack exploiting preservation of an algebraic operation by encryption or signing. The textbook RSA cryptosystem has , so unprotected ciphertexts can be modified multiplicatively. Authentication must be verified before accepting a modified message.
New to topics? Read the docs here!