[Cryptography] AES-256- More NIST-y? paranoia

Faré fahree at gmail.com
Mon Oct 7 10:32:23 EDT 2013


On Sun, Oct 6, 2013 at 9:10 PM, Phillip Hallam-Baker <hallam at gmail.com> wrote:
> I am even
> starting to think that maybe we should start using the NSA checksum
> approach.
>
> Incidentally, that checksum could be explained simply by padding prepping an
> EC encrypted session key. PKCS#1 has similar stuff to ensure that there is
> no known plaintext in there. Using the encryption algorithm instead of the
> OAEP hash function makes much better sense.
>
Wait, am I misunderstanding, or is the NSA recommending that people
"checksum" by leaving behind the key encrypted with a backdoor the NSA
and the NSA only can read? Wow.

—♯ƒ • François-René ÐVB Rideau •Reflection&Cybernethics• http://fare.tunes.org
Few facts are more revealing than the direction people travel
when they vote with their feet. — Don Boudreaux http://bit.ly/afZgx2


More information about the cryptography mailing list