The technique is practical against 1,024-bit RSA keys, which are already deprecated. It also lowers the estimated security of ...