[cryptography] regarding the NSA crypto "breakthrough"

Alan Braggins alan.braggins at gmail.com
Sat Sep 7 04:41:29 EDT 2013

On 06/09/13 21:21, Tony Arcieri wrote:
> There are curves not selected by e.g. NIST with a published rationale
> for their selection, like Curve25519. Is there any reason why such
> curves can't be evaluated retroactively?
> http://cr.yp.to/ecdh/curve25519-20060209.pdf

"Curve25519 is y^2=x^3+486662x^2+x mod 2^255-19. Nothing random; all
details justified in the paper. Vatican hasn't complained about the

More information about the cryptography mailing list