asciilifeform: e. People were stunned. In those days the NSA representatives at standards meetings would sit quietly and hardly say a word. No one had expected such a direct and unambiguous statement from the NSA. The ECC standards were approved.'
asciilifeform: 'The nontechnical industry representatives on the ANSI committee were impressed by the RSA argument. As the heated debate continued, the NSA representative left to make a phone call. When he returned, he announced that he was authorized to state that the NSA believed that ECC had sufficient security to be used for secure communications among all U.S. government agencies, including the Federal Reserv
asciilifeform: as untested and based on esoteric mathematics. '
asciilifeform: 'The first time the NSA publicly and decisively gave support to ECC occurred at a meeting of the American National Standards Institute (ANSI) in December 1995. The backers of RSA at the meeting were casting doubt on the safety of ECC-based protocols; in the mid-1990s a page called “ECC Central” on the RSA website carried statements by leading personalities in cryptography that characterized ECC
asciilifeform: they choke ~because~ it has no crud padding
asciilifeform: in ~those~ days they had to actually run on the x86 cores.
asciilifeform: BUT this was before the 'nsa core' was added to intel cpu.
asciilifeform: it showed a quite 'amateur hour' telltale delta, given as the hypervisor can't move the wall clock ~on the fucking wall~ and you can see that it slows the box.
asciilifeform: old nyooz, the key bit is the part with the timing analysis
asciilifeform: whereas healthy brain each has own theorems.
asciilifeform: because they tend to fall into sync with mass idiocies
asciilifeform: but actually i find that rotten brains are very - at least externally - similar
asciilifeform: 'Then, in Dec 2011, Asheesh, a Debian dev particularly fond of his key ID, found a way to create a new RSA 4096 key with that ID (and a bug in GnuPG handling of duplicate keys) [2]. He highlighted the disruptive potential of that and decided not to release the code. Bummer.