BLU Discuss list archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Discuss] Good and Bad Crypto
- Subject: [Discuss] Good and Bad Crypto
- From: blu at nedharvey.com (Edward Ned Harvey (blu))
- Date: Wed, 23 Apr 2014 17:05:51 +0000
- In-reply-to: <20140423155249.GO3247@dragontoe.org>
- References: <14b5446b65314ece8402914040d7efb6@CO2PR04MB684.namprd04.prod.outlook.com> <5355DA7B.4070600@gmail.com> <53567FBD.4010101@gmail.com> <5356CDDB.2000506@gmail.com> <535705D7.1010203@gmail.com> <20140423155249.GO3247@dragontoe.org>
> From: discuss-bounces+blu=nedharvey.com at blu.org [mailto:discuss- > bounces+blu=nedharvey.com at blu.org] On Behalf Of Derek Martin > > Or... unless the NSA or some other organization has > paid off the vendor to intentionally include weaknesses for them to > exploit. If I give you a library that implements something like SHA1, it has a well defined deterministic behavior. For any given input, it must produce a predetermined output, deterministically. Please explain how it's possible to intentionally include a weakness into closed source implementation of this, and *not* equally possible to include such a weakness into an open source implementation. Please provide an answer which doesn't include "Everybody should read and compile everything for themselves."
- Follow-Ups:
- [Discuss] Good and Bad Crypto
- From: smallm at panix.com (Mike Small)
- [Discuss] Good and Bad Crypto
- References:
- [Discuss] Good and Bad Crypto
- From: blu at nedharvey.com (Edward Ned Harvey (blu))
- [Discuss] Good and Bad Crypto
- From: tmetro+blu at gmail.com (Tom Metro)
- [Discuss] Good and Bad Crypto
- From: richard.pieri at gmail.com (Richard Pieri)
- [Discuss] Good and Bad Crypto
- From: tmetro+blu at gmail.com (Tom Metro)
- [Discuss] Good and Bad Crypto
- From: richard.pieri at gmail.com (Richard Pieri)
- [Discuss] Good and Bad Crypto
- From: invalid at pizzashack.org (Derek Martin)
- [Discuss] Good and Bad Crypto
- Prev by Date: [Discuss] OpenBSD and LibreSSL
- Next by Date: [Discuss] Good and Bad Crypto
- Previous by thread: [Discuss] Good and Bad Crypto
- Next by thread: [Discuss] Good and Bad Crypto
- Index(es):