|
|
Subscribe / Log in / New account

A new Dual EC DRBG flaw

A new Dual EC DRBG flaw

Posted Feb 2, 2014 10:25 UTC (Sun) by swisspgg (guest, #95325)
Parent article: A new Dual EC DRBG flaw

Mere denials do not restore confidence about a system where the "many eyes" policy is supposed to keep users secure against accidental or purposely injected security issues.

I (and many others) would prefer to see the people in charge explain how they plan to avoid this from happening in the future.

Confidence should be built on premises that users can trust - and this can only start with accountability (who did what, when, for which alleged reason - and who else endorsed the move, after which checks, done when, and for which alleged reasons).

Failure to do so will inevitably lead users from seeking alternate solutions, which is not the goal pursued here, I presume.


to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds