Re: ANNOUNCE: Leopard10 CSPRNG

From: Mrsjunecarey (mrsjunecarey@aol.com)
Date: 03/20/03


From: mrsjunecarey@aol.com (Mrsjunecarey)
Date: 20 Mar 2003 18:00:10 GMT

Hi again John :)

>Why do you think it's a "Cryptographically Secure" (CS) PRNG?
>

I think it's crypto secure because:

(a) It's based on ARC4 which as I'm sure we all know was meant to be a CSPRNG,
although some might say its just a PRNG :)

and

(b) As far as I can tell there's no way to deduce the internal state from any
amount of its results. I tried to improve every aspect of the ARC4 design
including its security (or lack thereof).

and

(c) Robert Jenkins had a look over L9 and couldn't find a way to break it. L10
has higher security than L9.

As I've already mentioned: Peer review and attacks on L10 are welcome.

Cheers,
Robin.