A Deterministic Random Bit Generator based on AES in Counter mode (AES-CTR-DRBG) as specified in NIST SP 800-90A written in Go.
-
Updated
Aug 22, 2026 - Go
A Deterministic Random Bit Generator based on AES in Counter mode (AES-CTR-DRBG) as specified in NIST SP 800-90A written in Go.
Browser-based NIST SP 800-90A demo — HMAC_DRBG, CTR_DRBG, and Hash_DRBG with state visualizers, seeding, reseeding, and live NIST SP 800-22 statistical tests. The correct-case companion to Corrupted Oracle.
Browser-based entropy failure demo — NIST SP 800-90B. DRBG Arena teaches how the generator works; this asks where the seed came from. Snapshot a VM, restore two copies, watch both emit the same session key from an honest, uncompromised, correct DRBG. Fork inheritance, silent reseed failure, and the upstream cause of every nonce-reuse attack.
To associate your repository with the nist-sp-800-90a topic, visit your repo's landing page and select "manage topics."