Curve25519 and ECC Security

The cluster focuses on debates about using Curve25519 and Ed25519 elliptic curves over RSA and NIST curves due to security concerns like NSA backdoors, implementation pitfalls, and djb's endorsements.

➡️ Stable 0.5x Security
2,541
Comments
18
Years Active
5
Top Authors
#7428
Topic ID

Activity Over Time

2009
2
2010
23
2011
13
2012
23
2013
166
2014
227
2015
217
2016
211
2017
188
2018
117
2019
181
2020
234
2021
228
2022
161
2023
168
2024
217
2025
151
2026
14

Keywords

e.g US ECDSA RSA NodeId ECDHE OMG safecurves.cr google.com ECC curve ecc curves nist rsa key implementation rfc public key 256

Sample Comments

dchest Feb 24, 2016 View on HN

So? Curve25519 provides secure parameters for ECC, why not use it everywhere? How's that not secure? Is RSA secure? Is it because there were 3 people involved?

TimTheTinker Mar 7, 2021 View on HN

ECC (curve 25519) would be preferable.

tptacek Aug 25, 2016 View on HN

A reason, and not the best one, to stop using RSA and conventional DH and switch to elliptic curves.

quickthrower2 Aug 29, 2017 View on HN

It does use the eliptical curve encryption with nsa magic numbers iirc

aberoham Sep 16, 2023 View on HN

Did you use elliptic curve instead of RSA?

diziet Feb 23, 2016 View on HN

Plus, Curve25519 and EdDSA have djb's stamp of approval.

watersb Sep 24, 2018 View on HN

Maybe their FIPS-140 certification prioritized the NIST curves? (speculation)

rmp33 Nov 17, 2019 View on HN

OMG. Is this an essay? There is X25519 with much shorter keys.

sova Sep 19, 2017 View on HN

Elliptic Curve Cryptography is the only standard I believe in :P

Diti Oct 18, 2017 View on HN

Is it definitely proven that elliptic curves are safer to use?