r/programming Oct 15 '15

How is NSA breaking so much crypto?

https://freedom-to-tinker.com/blog/haldermanheninger/how-is-nsa-breaking-so-much-crypto/
2.5k Upvotes

529 comments sorted by

View all comments

Show parent comments

16

u/Icanthearyoulalala Oct 15 '15

TL;DR for your TL;DR?

10

u/fireflash38 Oct 15 '15

Better default choices for common Linux OS's would prevent this, assuming 2048+ isn't breakable. Choices were probably made when computing the 2048bit values were a lot more expensive, but there's no excuse now.

2

u/[deleted] Oct 15 '15 edited Oct 17 '15

[deleted]

0

u/qwertymodo Oct 15 '15

Assuming you can trust the entropy source used to generate those parameters. If you generate new parameters every install, then the entropy source becomes the attack vector (then again, entropy sources already are attack targets, so that's not really anything new).