Michael Lee @mukimu of ZDNet writes about proof-of-concept code demonstrating the Dual_EC_DRBG random number generator vulnerability http://www.zdnet.com/nsa-encryption-backdoor-proof-of-concept-published-7000024793/ In December Theodore Ts'o approved a Linux kernel patch to initialize SHA starting value with the hardware RNG http://lkml.indiana.edu/hypermail/linux/kernel/1312.2/01593.html (apparently in spite of his earlier protests: https://lkml.org/lkml/2013/9/5/275 ) !crypto !surveillance