Hacker News new | ask | show | jobs
by mpyne 3996 days ago
Have the secret backdoor keys for Dual EC DRBG leaked yet? Nuclear launch codes and authenticators?

Analogies are useful but don't get carried away, especially when talking about something as broad as "the government" (as if it were one singular thing). The fact that a BLM federal officer lost his firearm doesn't instantly mean that all of our Tomahawk cruise missiles are next to be stolen.

4 comments

What the hell are you on about?

The closest thing to the proposed encryption backdoor is the clipper chip proposal of the 90s, and that did have severe vulnerabilities that the authors completely overlooked.

And I'd recommend you watch John Oliver's segment about nuclear launch codes to recalibrate your trust in those officials. We've come scarily close to Armageddon multiple times over the last few decades, which was prevented only by sheer dumb luck. Just because it's the scariest thing known to man doesn't mean the people responsible for it aren't incompetent.

Why do we think they haven't been stolen? Why do we think that the OPM was the first or the biggest or the most valuable attack, and not just the biggest one that happened to be noticed?

The fact that a BLM officer lost his firearm doesn't instantly mean that all the cruise missiles are next, but yes, the fact that the USG is unable to maintain sensitive records of twenty million cleared personnel does say something about their ability to keep secret information safe.

These would be the nuclear launch codes that were set to 00000000?

http://gizmodo.com/for-20-years-the-nuclear-launch-code-at-u...

No thanks.

I think the decrypted data would probably be an easier target.