Live data from Hacker News

NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

blog.cr.yp.to

171–180 of 494 posts

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#171

Why is the submission URL using http instead of https? That just seems... bizarre.

Just FYI, On my Firefox its saying "Connection Secure (upgraded to https)", its actually using ECDHE CHACHA20 SHA256.

Note: I have "Enable HTTPS-Only Mode in all windows" on by default.

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#172

Earlier quoted context omitted.

It follows: entire industries were required to deploy DES and the goal was to create one thing that was “strong enough” to narrow the field. Read the blog post carefully about the role of NBS, IBM, and NSA in the development of DES. It’s hard to accept because the implications are upsetting and profound. The evidence is clear and convincing. Lots of people try to muddy the waters, don’t help them please.

They had a privately known way to weaken DES that effectively shortens the key length. They could have pretended to allow a longer key length while secretly retaining their privately known attack that lets them shorten it (without also acting to strengthen DES against it). They knew this in the 70s 20 years before it would become publicly known. They actively strengthened DES against this while not revealing the expl…

You’re making a lot of assumptions and guesses to imply they helped overall when we know they weakened DES by reducing the key size such that it was practically breakable as a hobby project. At the time of DES creation, Hellman remarked that this was a bad enough problem to fix it by raising the key size. NSA and IBM and others ignored the cryptographers who were not compromised. Any benefit against DC attacks seems clearly like a hedge against DES being replaced sooner and against known adversary capabilities. When did the Russians learn that technique? Probably before the public did, I would wager.

The longer DES stays, the longer NSA retain their capabilities. Any design changes made by NSA are for their benefit first. That’s the primary lesson from my perspective.

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#173

Flippo valrosida and Matthey green aren't too happy. https://twitter.com/matthew_d_green/status/15556838562625208...

Filippo Valsorda seems to be happy to ignore the fact that NIST already let an NSA backdoor in, as recently as 2014:

https://wikipedia.org/wiki/Dual_EC_DRBG

is he really just going to ignore something from 8 years ago?

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#174
post #32

I may believe almost all of this is overblown and silly, as like a matter of cryptographic research, but I'll say that Matt Topic and Merrick Wayne are the real deal, legit the lawyers you want working on something like this, and if they're involved, presumably some good will come out of the whole thing. Matt Topic is probably best known as the FOIA attorney who got the Laquan McDonald videos released in Chicago; I'v…

> "I may believe almost all of this is overblown and silly, as like a matter of cryptographic research ..."

Am I misunderstanding you, or are you saying that you believe almost all of DJB's statements claiming that NIST/NSA is doctoring cryptography is overblown and silly? If that's the case, would you mind elaborating?

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#175

Flippo valrosida and Matthey green aren't too happy. https://twitter.com/matthew_d_green/status/15556838562625208...

Dismissing this lawsuit as a conspiracy theory is embarrassing for both of them.

There is ample evidence to document malfeasance by the involved parties, and it’s reasonable to ask NIST to follow public law.

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#176

Earlier quoted context omitted.

If you spend all day making bagels do you go home and make bagels for dinner? It's a static text blog, not a bank

> It's a static text blog, not a bank I want those delivered by https most, because http leaks the exact page I've visited, rather than just the domain.

If you care about preventing those kinds of leaks, do not use mainstream browsers (they are likely to leak even your https URLs to the browser company), and do not access those pages directly using your home connection (there may be mitms between you and the page).

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#177

Flippo valrosida and Matthey green aren't too happy. https://twitter.com/matthew_d_green/status/15556838562625208...

Dismissing this lawsuit as a conspiracy theory is embarrassing for both of them. There is ample evidence to document malfeasance by the involved parties, and it’s reasonable to ask NIST to follow public law.

> Dismissing this lawsuit as a conspiracy theory is embarrassing for both of them.

They are not dismissing the lawsuit.

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#179

I just want to say, the problem here is worldwide standards bodies for encryption need to be trustworthy. It is incredibly hard to know what encryption is actually real without a deep mathematics background and even then, a choir of peers must be able to present algorithms, and audits of those algorithms with a straight face. Presenting broken-by-design encryption undermines public confidence in what should be one of…

how could NIST possibly be "one of our most sacrosanct institutions" after the NSA already fucked them with Dual_EC_DRBG?

whoever wants to recommend standards at any point since 2015 needs to be someone else

https://en.wikipedia.org/wiki/NIST_SP_800-90A for this who have forgotten.

Re: NSA, NIST, and post-quantum crypto: my second lawsuit against the US government

#180
post #32

I may believe almost all of this is overblown and silly, as like a matter of cryptographic research, but I'll say that Matt Topic and Merrick Wayne are the real deal, legit the lawyers you want working on something like this, and if they're involved, presumably some good will come out of the whole thing. Matt Topic is probably best known as the FOIA attorney who got the Laquan McDonald videos released in Chicago; I'v…

No post body was provided.
Post reply on HN