Possible crypto backdoor in RFC-2631 Diffie-Hellman Key Agreement Method

Georgi Guninski guninski at guninski.com
Sat Sep 5 06:31:31 PDT 2015

On Sat, Sep 05, 2015 at 11:45:07AM +0000, Peter Gutmann wrote:
> The real question though is, why would anyone use parameters they didn't
> generate themselves?  All DSA implementations I've seen (apart from some

What about MITM in DH -- where do you get the keys from
in this case?

