3 ms·
Ask HN: Audit or proof of NSA's ssh decryption?
From the NYT, http://www.nytimes.com/interactive/2013/09/05/us/unlocking-private-communications.html
Is there any evidence or proof as to the attack vectors on ssh as listed in the article?
- ballard 13y agoNope, the diagram is just hand-waving FUD. It's an enumeration of which "technologies" people rely upon in case they didn't already know. Gotta laugh if people think Skype isn't backdoored.
- foolrush 13y agoIt sure feels like a bit of hyperbole, but that said, it seems that ssh was mentioned in the documents. Still curious what the vectors might be, or if higher level insecure bit depths might be to blame.
- ballard 13y agoThe fundamental motives are good... TLS/SSL is extremely complex (per 'cperciva) But without hand audits and active research, it's peeing into the wind without knowing which way its blowing.
- ReallyNotTheNSA 13y agoSSH extremely insecure. I highly suggest you install these patches on your computer: http://www.nsa.gov/ia/mitigation_guidance/security_configuration_guides/operating_systems/microsoft_windows.shtml http://www.nsa.gov/ia/mitigation_guidance/security_configura...