Published January 1, 2026 | Version v1
Journal article Open

Observations on NIST SP 800-90B entropy estimators

  • 1. Middle East Tech Univ, Dept Math, TR-06800 Ankara, Turkiye
  • 2. TOBB ETU, Dept Math, TR-06560 Ankara, Turkiye
  • 3. Natl Inst Stand & Technol, Comp Secur Div, Gaithersburg, MD 20899 USA
  • 4. Atilim Univ, Dept Math, TR-06830 Ankara, Turkiye

Description

Random numbers play a crucial role in cryptography since the security of cryptographic protocols relies on the assumption of the availability of uniformly distributed and unpredictable random numbers to generate secret keys, nonce, salt, etc. However, real-world random number generators sometimes fail and produce outputs with low entropy, leading to security vulnerabilities. The NIST Special Publication (SP) 800-90 series provides guidelines and recommendations for generating random numbers for cryptographic applications and describes 10 black-box entropy estimation methods. This paper evaluates the effectiveness and limitations of the SP 800-90 methods by exploring the accuracy of these estimators using simulated random numbers with known entropy, investigating the correlation between entropy estimates, and studying the impacts of deterministic transformations on the estimators.

Files

bib-797819a0-92db-4757-9519-ea19eccd5c62.txt

Files (221 Bytes)

Name Size Download all
md5:9189bc0941d9edddee21c971e1e37d6b
221 Bytes Preview Download