What Is Over 50 Years Old, And Still Used in Cybersecurity (But Now Banned)?

--

Well, one answer to this is the DES encryption method, and which was upgraded to the 3DES (Triple DES or TDES). For the sake of history, I have outlined a range of DES and 3DES applications:

https://asecuritysite.com/des/

Unfortunately, in 2017, NIST outlined that the use of Triple DES (aka TDEA/TDES) would be gone by the end of 2023. And, just the other day, the industry was put on a warning that DES and 3DES should be gone by the start of 2024 [here]:

But, the magical cipher still exists in smart cards for the banking industry, and in many other areas. The industry was told in 2019, that it would be deprecated throughout 2023 and disallowed after 31 December 2023. But, still, it exists, especially with smart cards. Overall, TDEA will still be allowed for the decryption, key unwrapping, and verification of MACs that have already been used to protect data.

But, for most applications, the migration is fairly easy, but in finance cryptography, we need to beware of disruptions, and so in the use of 3DES in finance, especially with smart bank cards, the advancement to AES has…

--

--

Prof Bill Buchanan OBE FRSE
ASecuritySite: When Bob Met Alice

Professor of Cryptography. Serial innovator. Believer in fairness, justice & freedom. Based in Edinburgh. Old World Breaker. New World Creator. Building trust.