“The fix may not be all that difficult—the tainted part of the standard is a highly inefficient algorithm that security experts identified as a problem long ago. In fact, the biggest mystery, those experts say, is why the NSA thought any company or government agency would willingly use that particular algorithm to protect their data. Despite Dual_EC_DRBG’s known flaws, prominent tech companies including Microsoft, Cisco, Symantec and RSA include the algorithm in their product’s cryptographic libraries primarily because they need it to be eligible for government contracts, cryptographer Bruce Schneier says.”
https://www.scientificamerican.com/article.cfm?id=nsa-nist-encryption-scandal
Related posts:
Orgies, devil men, knife-wielding maniacs: A history of cannabis in California
Man held at Guantánamo for 13 years a case of mistaken identity: officials
3 big revelations from the newly leaked NSA documents
School districts pay dearly for bonds
So far, D.C. feeling little pain from sequester's bite
Fresh sanctions will freeze big foreign oil projects in Russia
Officer Convicted In Shooting Death Becomes Police Chief
E.P.A. Broke Law With Social Media Push for Water Rule
Plans for Political Union Unravel in Europe
Airlines made windfall profits after EU freeze on carbon taxes
Judge approves use of 'truth serum' on accused Aurora shooter James Holmes
$3.3 billion of pork: The 5 most surprising provisions in the debt deal
Do You Want the Government Buying Your Data From Corporations?
Stossel: Bitcoin revolution
Missouri Republican Wants To Make It A Felony For His Fellow Lawmakers To Propose Gun Laws