The Snowden revelations, and in particular reports on Project Bullrun and the SIGINT Enabling Project, have indicated that Dual EC was part of a systematic effort by NSA to subvert standards.
This paper traces the history of Dual EC including some suspicious changes to the standard, explains how the back door works in real-life applications, and explores the standardization and patent ecosystem in which the standardized back door stayed under the radar.
Category / Keywords: foundations / Random-number generation, back doors, NSA, ANSI, NIST, ISO, RSA, Certicom, undead RNGs. Date: received 31 Jul 2015 Contact author: authorcontact-dualec at box cr yp to Available format(s): PDF | BibTeX Citation Version: 20150731:113025 (All versions of this report) Short URL: ia.cr/2015/767 Discussion forum: Show discussion | Start new discussion