logoalt Hacker News

tptacekyesterday at 4:00 PM0 repliesview on HN

I think this is a really good question, for what it's worth. Best I can come up with is that, at the time, our block cipher blocks were mostly 8 bytes wide, which doesn't leave a lot of headroom for CTR.