Hacker News new | ask | show | jobs
by worried_citizen 3821 days ago
I expect dual_ec to live with us for quite a bit longer, despite the fact that the NIST stopped recommending it. It's just a matter of applying the right leverage to US companies.

"Meets all NIST SP800-90 standards"

"Meets all NIST SP800-90A standards"

Can you spot which product has the back door?

1 comments

Yes: the ones that use Dual EC. It's not that hard to spot.

If nobody is going to take the time to pull apart the firmware, it really doesn't matter what the vendor says. They can say one thing and do another. That's what happened here.