Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • Home
  • SEARCH
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 3405726
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: May 18, 20262026-05-18T05:32:27+00:00 2026-05-18T05:32:27+00:00

Recently the State Department has released a document saying that AES and DES are

  • 0

Recently the State Department has released a document saying that AES and DES are unsafe for classified material. This statement from the State Department may be alluding to an attack against these algorithms that is not publicly known.

Under no circumstances should DES- or
AES-equipped radios be used for the
transmission of classified
information, as defined by Executive
Order 12958.

AES and 3DES are still on the list of approved algorithms by NIST. However, so is SHA-1, in the case of SHA-1 this is probably because even though it is very broken no one has generated a collision.

So what should a security conscious developer use instead of AES? Why should someone use this algorithm? Are there regulations that govern this alternative (HIPAA,PCI-DSS…)?

  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. Editorial Team
    Editorial Team
    2026-05-18T05:32:27+00:00Added an answer on May 18, 2026 at 5:32 am

    I think you’ve misunderstood what the document is talking about. It doesn’t say the algorithms are weak. It says that the equipment is not strong enough to protect top secret information. This doesn’t mean, though, that AES is not secure anymore. Actually, some weaknesses of AES were known from the very beginning although they were not disclosed widely. It’s just a question of time and efforts needed to attack the information. Often rubber-hose cryptanalysis proves to be much more effective, than cracking the algorithm. And this is exactly why the same document says

    “All DES/AES radio equipment in
    storage or maintenance channels must
    be zeroized of all key codes. If not
    equipped with a zeroize feature, a
    randomly produced key code must be
    loaded in order to overwrite the
    mission’s actual operational code.”

    . I.e. the point is to protect the keys from being extracted from portable hardware, not to claim weakness in AES.

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

Recently I've been thinking about finite state machines (FSMs), and how I would implement
Recently I worked on FindBugs warnings about exposing internal state, i.e. when a reference
Recently Jeff has posted regarding his trouble with database deadlocks related to reading. Multiversion
Recently our site has been deluged with the resurgence of the Asprox botnet SQL
I have recently moved our ASP.NET session state from InProc to a Sql Server
I've recently read about the boost::statechart library (finite state machines) and I loved the
I recently sent an email to my colleagues explaining that I need to make
Did anybody know more information about this attack ? I recently got this script
Let me set the stage here. I'm a very junior developer who's recently made
Recently I have been investigating the possibilities of caching in ASP.NET. I rolled my

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.