[LACNIC/Seguridad] US acts to restore faith in encryption standard after NSA backdoor revelation

Arturo Servin aservin en lacnic.net
Vie Sep 13 13:03:23 BRT 2013



On 9/11/13 1:48 PM, Fernando Gont wrote:
> Internal memos leaked by Snowden suggest the NSA was responsible for one
> of the random number generators used in the 2006 Dual EC DRBG Nist standard.

http://en.wikipedia.org/wiki/Dual_EC_DRBG

"In August 2007, Dan Shumow and Niels Ferguson discovered the algorithm
has a vulnerability which could be used as a backdoor. Given the wide
applications of PRNGs in cryptography, this vulnerability could be used
to defeat practically any cryptosystem relying on it. The algorithm uses
several constants which determine the output; it is possible these
constants are deliberately crafted in a way which allows the designer to
predict its output."

Slds
as



Más información sobre la lista de distribución Seguridad