Researchers have discovered a novel classical computing attack on RSA that enables signature forgery without factoring keys, reducing computational requirements by orders of magnitude. While immediately impractical against widely-deployed implementations, the method brings 1024-bit RSA attacks into feasibility and degrades security of larger keys below acceptable thresholds.