Tag: National Institute of Standards and Technology

NIST to stop rating non-priority flaws due to volume increase
News

NIST to stop rating non-priority flaws due to volume increase

Because of the increasing volume of submissions, the National Institute of Standards and Technology will no longer assign severity levels to lower-priority vulnerabilities. Beginning on April 15, the service will only examine and offer supplementary information (such as product listings and severity ratings) for security vulnerabilities that satisfy particular standards pertaining to the risk they represent. All submitted vulnerabilities will still be listed in the National Vulnerability Database (NVD), however those deemed low priority will only receive a severity rating from the CVE Numbering Authority (CNA) that assessed and filed them. The non-regulatory federal agency stated in a statement this week that it will only offer more information on vulnerabilities that satisfy one...
NIST Standardizes Ascon Cryptographic Algorithm for IoT and Other Lightweight Devices
Risk, Security

NIST Standardizes Ascon Cryptographic Algorithm for IoT and Other Lightweight Devices

The Ascon family of authenticated encryption and hashing algorithms, which are intended for use in lightweight cryptographic applications, will be standardised, according to the U.S. National Institute of Standards and Technology (NIST). According to NIST, "the selected algorithms are meant to safeguard information created and transmitted by the Internet of Things (IoT), including its numerous small sensors and actuators." They are made for other tiny technologies as well, like medical implants, stress detectors for roads and bridges, and car keyless entry fobs. In other words, the goal is to use lightweight cryptography for security measures in systems read the complete article NIST Standardizes Ascon Cryptographic Algorithm for IoT and Other Lightweight Devices. Stay informed ...