Skip to content

Comment on NIST removes Dual_EC_DRBGparent

Comments

There's NIST which publishes the definitions, and then there's FIPS which required the availability of Dual-EC DRBG.

Following FIPS is nontrivial. I've never heard of anyone doing it that wasn't the US government itself, or a contractor, or a stooge like RSA (which made Dual-EC their default crypto RNG).

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.