TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Provable Security of Linux-DRBG in the Seedless Robustness Model [pdf]

43 点作者 zx2c48 个月前

1 comment

colmmacc8 个月前
I love this work! but my heart breaks that this DRBG won&#x27;t see much use in many commercial and government environments. Businesses with Federal government customers are often required to use FIPS validated or at least FIPS compatible implementations, which the Blake &#x2F; ChaCha20 construction definitely isn&#x27;t. Businesses don&#x27;t want to maintain multiple versions, so in practice they just switch to the FIPS mode implementation and that&#x27;s what actually gets used.<p>This reflects a schism in the cryptography world; organizations that have to do what NIST says, which is basically AES, SHA2, SHA3, HMAC, and the new PQ suites, each the result of competitions and a lot of academic analysis, and open source cryptographers who prefer Blake, ChaCha20, 25519, and other algorithms that have been developed in the open and with a stronger emphasis on performance.<p>Even though this work is great and proves some of the DRBG security to the same extent as other DRBGs, I doubt we&#x27;ll see the DRBG added to the approve NISTs lists ever. Just not how it works.
评论 #41563098 未加载
评论 #41575152 未加载