top | item 41008316

(no title)

frenchy | 1 year ago

Isn't this what the NSA is for? Also, I think we have plenty of reason to believe they regularly try to penetrate powerful companies, they just don't necessarily tell us when they do.

discuss

order

Buttons840|1 year ago

I've never heard anything about the NSA telling a company they have a security vulnerability. Have you?

kyboren|1 year ago

I don't have citations on hand, but it's commonly held that NSA fixed the S-boxes in IBM's "Lucifer" cipher design for DES to improve its resistance to (then publicly-unknown) differential cryptanalysis.

Of course they also crippled the key length to 56 bits...

zavec|1 year ago

They absolutely have bugs up their sleeve, but if they tell the companies to allow them to fix them then they can't use the bugs for spying (or at least, not as effectively)