“The fix may not be all that difficult—the tainted part of the standard is a highly inefficient algorithm that security experts identified as a problem long ago. In fact, the biggest mystery, those experts say, is why the NSA thought any company or government agency would willingly use that particular algorithm to protect their data. Despite Dual_EC_DRBG’s known flaws, prominent tech companies including Microsoft, Cisco, Symantec and RSA include the algorithm in their product’s cryptographic libraries primarily because they need it to be eligible for government contracts, cryptographer Bruce Schneier says.”
https://www.scientificamerican.com/article.cfm?id=nsa-nist-encryption-scandal
(Visited 21 times, 1 visits today)
Related posts:
Supreme Court rules city councils can't arrest people they disagree with
Kerry: U.S. has firm evidence sarin gas was used in Syria attack
Nestlé unveils European youth jobs scheme
Microsoft is using your data to target political ads on Xbox Live
Proposed Iraqi law would legalize marital rape, child marriage
State Department has hired agents with criminal records, memo reveals
US secretly sent plane with $400 million in cash to Iran
U.S., UK government websites infected with crypto-mining malware
Proposal to split California into three states makes November ballot
Mexico next to fire back in Trump's trade war against U.S. allies
Gorbachev urges US-Russia deal on Syria
More Americans support torture than Afghans, Iraqis and South Sudanese
Starbucks Pays $15.4 Million Corporation Tax, Closes Stores Amid British Backlash
Trump warns UK that banning him would be an economic mistake
Ron Paul: Chemical Weapons 'a False Flag'