Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> The starkest example of the risks inherent in the NSA’s approach involved an encryption-system component known as Dual Elliptic Curve

Only example perhaps.

What other back doors have they done?

Literal secret rooms where they tap data, these are not conventionally called backdoors. Nor are unpatched zero days the supplier originally didn't know about.

I don't think any country can install literal backdoors on products without getting caught. Backdoors seem like a Hollywood thing straight out of WarGames.

Why attack the Chinese or visa versa when you'd be basically working for them by damaging your own companies when you get caught.



Some of the numerous Cisco vulnerabilities have all the hallmarks of government persuasion.

Not to mention the wholesale hacking of their products bound for export:

https://www.infoworld.com/article/2608141/snowden--the-nsa-p...


> Some of the numerous Cisco vulnerabilities have all the hallmarks of government persuasion.

Is there a write up of the code analysis?

It's interesting because I think it would be very hard to do without being caught retroactively.

Easy to insert, but hard to cover up the fact it was inserted when specifically looked at.

It would have to hide from fuzzers for instance. Easy to do, but hard to hide the fact your were hiding a bug.


Crypto AG and paying RSA come to mind.


I didn't know much about Crypto AG. Thanks, that's interesting. Also through encryption weaknesses. It's an interesting way to backdoor.

https://en.wikipedia.org/wiki/Crypto_AG




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: