Possible crypto backdoor in RFC-2631 Diffie-Hellman Key Agreement Method

Alfonso De Gregorio alfonso.degregorio at gmail.com
Sat Sep 5 01:10:50 PDT 2015

On Sat, Sep 5, 2015 at 8:07 AM, Georgi Guninski <guninski at guninski.com> wrote:
> IMHO I haven't demonstrated attack against DH yet
> (believe it is possible).
> The current examples are against DSA, not DH.

Correct. I have the same feeling. I hope further research will prove
both to be wrong about this.


-- Alfonso

