NSA compromised Dual EC DRBG never actually worked in OpenSSL
marc.info
marc.info
Like most open-source stuff, things that matter get eyes on it.
Try to read the articles sometimes.
I have previously pointed this out as a bug in the FIPS spec. The need to prevent matching pairs in random numbers by 4.8.2 in FIPS 140-2 reduces the entropy.
The requirement in 4.8.2 applies to all SP800-90 DRBGs, not just the Dual EC DRBG.
I submitted this as part of my comments to the re-opened SP800-90 comment period.