Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I guess I'm not reading it that way. In fact, a FOIA request is going after official records, which I wouldn't expect would contain outright bribery.

Yes, DJB brings up their known bribing of RSA wrt to the whole Dual-EC thing. But my read of that bit of info was the more general 'here's evidence that the NSA actively commits funding towards infecting standards' rather than 'the NSA's playbook just contains outright bribery and that's what we expect to find in the FOIA requests given to NIST'.



The FOIA issue is 100% legitimate. NIST is required to comply with FOIA.


You don’t get it clearly. They’re playing dirty. At best the FOIA will receive a document made on the fly with nothing of value. The rules don’t apply to the NSA. You can do exactly nothing. But NIST, you can do something about - reject any standard they approve. It’s your choice what algorithm you use, and we know NIST will select a broken algorithm for the NSA, so just ignore their ‘standard’. The best solution is using layers of crypto, trusting no single algorithm.


You should tell Bernstein that! Your logic implies he's wasting his time with the suit.


"You shouldn't fight because the baddies are strong!" is a horrible argument in my book. Discouraging and disparaging other people's attempts is even worse.


I’m not saying don’t fight. I’m saying don’t let your opponent define the rules of the game.


he is




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: