How Advanced Is the NSA’s Cryptanalysis — And Can We Resist It? | Wired Opinion | Wired.com

[Very, very helpful in getting a sense of what a reasonable level of paranoia is. -egg]

The latest Snowden document is the US intelligence “black budget.” There’s a lot of information in the few pages the Washington Post decided to publish, including an introduction by Director of National Intelligence James Clapper. In it, he drops a tantalizing hint: “Also, we are investing in groundbreaking cryptanalytic capabilities to defeat adversarial cryptography and exploit internet traffic.”

Honestly, I’m skeptical. Whatever the NSA has up its top-secret sleeves, the mathematics of cryptography will still be the most secure part of any encryption system. I worry a lot more about poorly designed cryptographic products, software bugs, bad passwords, companies that collaborate with the NSA to leak all or part of the keys, and insecure computers and networks. Those are where the real vulnerabilities are, and where the NSA spends the bulk of its efforts.

via How Advanced Is the NSA’s Cryptanalysis — And Can We Resist It? | Wired Opinion | Wired.com.