Earlier quoted context omitted.
This is just about the most boring point you can raise about a NIST competition. It's right there on the label: "NIST". We get it. People don't like NIST, because of BULLRUN. The problem this argument has is that NIST competitions are legitimated by their participants. People trust NIST's hash competition because of who entered, and because the winning team has an unimpeachable record. For the most part, people will…
BULLRUN was done to NIST, not by them. It’s think it’s also an example of why NIST is so important. The subversion of the standard is a problem, but the real exploit using that subversion was the laziness and lack of skill that downstream practitioners demonstrated. People clicked next and installed that RSA BSAFE package without any configuration or reading of the manual. Without NIST, you’d have Crypto AG — much wo…
https://threatpost.com/nist-drops-weak-dual_ec-rng-from-offi...
It appears that BULLRUN was the name of the effort/program, not the faulty algorithm itself.
https://en.m.wikipedia.org/wiki/Dual_EC_DRBG
https://en.m.wikipedia.org/wiki/Bullrun_(decryption_program)