Bruce Schneier writes an unsettling article about Dual_EC_DRBG. This is one of four recently NIST standardized random number generators. It was already the odd algorithm out, it being significantly slower, more complicated, etc. Turns out it has a backdoor. Schneier has a great summary of the issues and worries.
Posted: Nov 15, 2007 |
Tags:
security

