Entropy Attacks
blog.cr.yp.to
blog.cr.yp.to
(I like the name of the IETF's randomness mailinglist dsfjdssdfsd https://www.ietf.org/mailman/listinfo/dsfjdssdfsd)
edit: I think I understand. The attack DJB proposes would be almost impossible to detect unlike changing results completely. Although the latter is probably undetectable in practice IMO.