NSA's SIGINT Enabling Project includes sabotaging cryptographic standards

(nsa.2026.action.cr.yp.to)

14 points | by rasengan 13 hours ago ago

3 comments

  • londons_explore 6 hours ago

    Even here in HN, some obviously true statement like "if one wants better resistance to flaws in hashing algorithms, one should XOR the results together of different algorithms, since then to break the whole every individual part must be broken", gets serious pushback as being unnecessary.

    I suspect that pushback comes from NSA shills who don't want to see it becoming standard practice to stack encryption or hashing in a way which makes it harder to break.

    If you had stacked MD5 and SHA1, it wouldn't be broken today!

    • general1465 3 hours ago

      And that's why I am so skeptical of new post-quantum protocols. They are much more complex than current protocols which creates much bigger surface vector for somebody trying to sabotage them or just unexpected mistake.

  • turtleyacht 13 hours ago

    NIST to Review Standards After Cryptographers Cry Foul Over NSA Meddling (2013):

    https://www.propublica.org/article/nist-to-review-standards-...