Firsthand account of NSA sabotage of Internet security standards

Yes, but that’s not sufficient. As Schneier and Gillmore suspected and Snowden basically confirmed, there are open standards out there which are actually crackable by the NSA. They might not be 20 years ahead of us like they were in the late '70s, but they’re still ahead in theory and in practice. It will take a lot of care to unfuck even existing open source code; for starters, lots of innuendo and accusations about programs like OpenSSH and OpenBSD made in the last 15 years don’t look that outlandish now, and they are the gold standard of open source security and key infrastructure for everyone else.

However you look at it, it’s another case of the worst possible scenario actually being confirmed as true.

1 Like