“The fix may not be all that difficult—the tainted part of the standard is a highly inefficient algorithm that security experts identified as a problem long ago. In fact, the biggest mystery, those experts say, is why the NSA thought any company or government agency would willingly use that particular algorithm to protect their data. Despite Dual_EC_DRBG’s known flaws, prominent tech companies including Microsoft, Cisco, Symantec and RSA include the algorithm in their product’s cryptographic libraries primarily because they need it to be eligible for government contracts, cryptographer Bruce Schneier says.”
https://www.scientificamerican.com/article.cfm?id=nsa-nist-encryption-scandal
Related posts:
JPMorgan: China's Potential Capital Outflows 'Practically Boundless'
UK role in torture and rendition after 9/11 revealed
Around the Bay Area, you're being watched
CIA rendition flights from rustic North Carolina called to account by citizens
Romney says he would replace Fed chief Bernanke
Leland cop suspended after arresting man for recording another arrest
NSA admits: Our analysts ‘willfully violated’ rules of surveillance system
Teen kills Alaska reality TV cops arresting his dad for revoked license
Bond investors will find out that PIGS can’t fly
Military Presentation Labels Evangelicals, Catholics as ‘Religious Extremism’
Officer kills family's dog while 'searching' across front yards
Mayor Bloomberg bankrolls $12 million gun control ad campaign
New report says there are still no federal safety standards for nation’s bioterror defense labs
China stock exchanges step up crackdown on short-selling
On Airbnb Rentals, California Cities Tax First and Regulate Later