{"id":106073,"date":"2014-07-15T07:46:01","date_gmt":"2014-07-15T05:46:01","guid":{"rendered":"http:\/\/mybroadband.co.za\/news\/?p=106073"},"modified":"2014-07-15T07:49:23","modified_gmt":"2014-07-15T05:49:23","slug":"nsa-spying-through-coding-standards","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/106073-nsa-spying-through-coding-standards.html","title":{"rendered":"NSA spying through coding standards"},"content":{"rendered":"<p>U.S. government standards for software may enable spying by the National Security Agency through widely used coding formulas that should be jettisoned, some of the country\u2019s top independent experts have concluded.<\/p>\n<p>Such mathematical formulas, or curves, are an arcane but essential part of most technology that prevents interception and hacking, and the National Institute of Standards and Technology (NIST) has been legally required to consult with the NSA\u2019s defensive experts in approving them and other cryptography standards.<\/p>\n<p>But NIST\u2019s relationship with the spy agency came under fire in September after reports based on documents from former NSA contractor Edward Snowden pointed to one formula in particular as a Trojan horse for the NSA.<\/p>\n<p>NIST discontinued that formula, called Dual Elliptic Curve, and asked its external advisory board and a special panel of experts to make recommendations that were published on Monday alongside more stinging conclusions by the individual experts.<\/p>\n<p>Noting the partially obscured hand of the NSA in creating Dual Elliptic Curve &#8211; which Reuters reported was most broadly distributed by security firm RSA &#8211; the group delved into the details of how it and other NIST standards emerged. It found incomplete documentation and poor explanations in some cases; in others material was withheld pending legal review.<\/p>\n<p>As a whole, the panels recommended that NIST review its obligation to confer with the NSA and seek legal changes \u201cwhere it hinders its ability to independently develop the best cryptographic standards to serve not only the United States government but the broader community.\u201d<\/p>\n<p>They also urged NIST to weigh the advice of individual task force members who made more dramatic suggestions, such as calling for the replacement of a larger set of curves approved for authenticating users, in part because they were selected through unclear means by the NSA.<\/p>\n<p>\u201cIt is possible that the specified curves contain a back door somehow,\u201d said Massachusetts Institute of Technology professor Ron Rivest, a co-founder of RSA and the source of the letter R in its name. Though the curves could be fine, he wrote, \u201cit seems prudent to assume the worst and transition away.\u201d<\/p>\n<p>More broadly, Rivest wrote, \u201cNIST should ask the NSA for full disclosure regarding all existing standards&#8230; If NSA refuses to answer such an inquiry, then any standard developed with significant NSA input should be assumed to be tainted,\u201d absent proof of security acceptable to outsiders.<\/p>\n<p>In an email exchange, Rivest told Reuters that \u201cNIST needs to have a process whereby evidence is publicly presented\u201d about how the curves were chosen.<\/p>\n<p>The curves faulted on Monday had been questioned by outsiders after media reports in September said the NSA could break much widely used security software, without detailing which ones or how. \u201cThese curves are ubiquitous in commercial cryptography,\u201d Johns Hopkins University professor Matthew Green said in an interview. \u201cIf you connected to Google or Facebook today, you probably used one.\u201d<\/p>\n<p>Rivest\u2019s long association with RSA, now part of electronic storage maker EMC Corp, made his remarks more poignant. But prominent task force colleagues including Internet co-creator Vint Cerf and Ed Felten, former chief technologist at Federal Trade Commission, also gave strongly worded verdicts on the Department of Commerce unit.<\/p>\n<p>\u201cIt cannot be accepted that NIST\u2019s responsibilities should be co-opted by the NSA\u2019s intelligence mission,\u201d wrote Cerf, who now works at Google.<\/p>\n<p>While Rivest called the internal history of Dual Elliptic Curve a \u201csmoking gun\u201d with an \u201calmost certain\u201d NSA back door, Felten wrote that NSA might not remain alone in its ability to use it and other possible NIST-approved holes for spying.<\/p>\n<p>In each of three cases, including Dual Elliptic Curve and the more common curves faulted by Rivest, Felten said the suspected back door access \u201creduces the security of users against attack by other adversaries, including organised crime groups or foreign intelligence services.\u201d<\/p>\n<p>The NSA might have been able to generate curves that pass cursory security tests but are still breakable through the aid of sheer computing power, because it can try millions of curves and get a few that fit its goals. But a researcher working for another country could discover the flaw, Felten said.<\/p>\n<p>In the case of the curves approved under the FIPS 186 standard for authenticating digital signatures, NIST should start over and pick its own curves publicly rather than relying on the NSA, Felten and others said.<\/p>\n<p>Several experts said NIST had to hire more cryptographers and strengthen its internal processes to avoid relying on NSA.<\/p>\n<p>NIST acting Director Willie May agreed in a statement, saying his agency \u201cmust strengthen its in-house cryptography capabilities to ensure we can reach independent conclusions about the merits of specific algorithms or standards.&#8221;<\/p>\n<p>NIST did not respond to a Reuters email asking about the fate of the suspect curves.<\/p>\n<h3 class=\"my-4\">More security news<\/h3>\n<p><strong><a href=\"http:\/\/mybroadband.co.za\/news\/security\/106045-rights-group-takes-british-spy-agency-to-court.html\">Rights group takes British spy agency to court<\/a><\/strong><\/p>\n<p><strong><a href=\"http:\/\/mybroadband.co.za\/news\/security\/106011-apple-denies-iphone-national-security-threat.html\">Apple denies iPhone national security threat<\/a><\/strong><\/p>\n<p><strong><a href=\"http:\/\/mybroadband.co.za\/news\/security\/106007-snowden-slams-british-surveillance-plans.html\">Snowden slams British surveillance plans<\/a><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>U.S. government standards for software may enable spying by the National Security Agency through widely used coding formulas<\/p>\n","protected":false},"author":340871,"featured_media":72912,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[27],"tags":[36,25953,19915,23215,25951,10484],"class_list":["post-106073","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-active","tag-backdoor","tag-edward-snowden","tag-national-security-agency-nsa","tag-nist","tag-trojan"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/106073"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/340871"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=106073"}],"version-history":[{"count":0,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/106073\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/72912"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=106073"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=106073"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=106073"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}