You must log in or # to comment.
Tl;dr
It is likely 512 and 1024 bit diffie Hellman primes are within the NSA budget to predict. Move to at least 2048.
Or better yet move to an elliptic curve
The NSA paid RSA, to ‘backdoor’ the Dual Elliptic Curve Deterministic Random Bit Generator which was pushed as an industry standard for years.
I don’t see why they wouldn’t have done the same with more recent algorithms.
That was P256 Dual_EC_DRBG. x25519 has been the defacto replacement since 2015ish
This was written 10 years ago though for context.
It’s anyone’s guess what can be done with today’s computers.


