Research Article

Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators

Volume: 4 Number: 3 October 20, 2025
EN TR

Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators

Abstract

This study comprehensively examines security and performance-oriented selection and evaluation criteria for Random Number Generators (RNGs) used in cryptographic applications. The study analyzes the fundamental differences between Pseudo Random Number Generators (PRNGs) and True Random Number Generators (TRNGs). Within the scope of these analyses, entropy sources, statistical characteristics, and performance metrics, as well as their effects on security, are evaluated. The ability of TRNGs to meet high security requirements thanks to their hardware-dependent structures is compared with PRNGs, which offer software-based and low-cost solutions. The study evaluates various criteria ranging from minimum entropy tests to space and energy requirements. It also highlights the fundamental challenges encountered in the design and implementation of RNGs in cryptographic systems. Additionally, the fundamental security requirements encountered in RNG design and how these requirements can be met in practice are discussed in detail. In this context, PRNGs, TRNGs based on physical processes, and hybrid RNG designs are analyzed. The advantages and disadvantages of these different design paradigms are then presented in a comparative manner. In conclusion, this study delivers a framework that unifies security, performance, and design considerations for RNGs, setting a benchmark for future cryptographic research. As a result, this framework forms the foundation for the next generation of secure, efficient, and scalable cryptographic systems.

Keywords

Ethical Statement

“There is no conflict of interest with any person/institution in the prepared article”

References

  1. A. Saini, A. Tsokanos, and R. Kirner, “Quantum randomness in cryptography: A survey of cryptosystems, RNG-based ciphers, and QRNGs,” Information, vol. 13, no. 8, pp. 350–358, 2022.
  2. A. Karakaya, Y. Canbay, H. İ. Bülbül, T. Tuğlular, E. Irmak, E. Kavun, and H. Takçı, Cyber Security and Defense: Biometric and Cryptographic Applications. Ankara, Turkey: Nobel Academic Publishing, 2020.
  3. M. Tehranipoor, N. N. Anandakumar, and F. Farahmandi, Hardware Security Training, Hands-On!. Cham, Switzerland: Springer, 2023.
  4. L. Yao, X. Wu, and H. Zhang, “DCDRO: A true random number generator based on dynamically configurable dual-output ring oscillator,” Integration, vol. 93, p. 102053, 2023.
  5. A. Bikos, P. E. Nastou, G. Petroudis, and Y. C. Stamatiou, “Random number generators: Principles and applications,” Cryptography, vol. 7, no. 4, p. 54, 2023.
  6. Y. Yu, “Design and security analysis of TRNGs and PUFs,” Ph.D. dissertation, KTH Royal Inst. of Technology, Stockholm, Sweden, 2022.
  7. S. Yakut, “Random number generator based on discrete cosine transform based lossy picture compression,” NATURENGS, vol. 2, no. 2, pp. 76–85, 2021.
  8. O. Petura, “True random number generators for cryptography: Design, securing and evaluation,” Ph.D. dissertation, Univ. de Lyon, Lyon, France, 2019.

Details

Primary Language

English

Subjects

Software Engineering (Other)

Journal Section

Research Article

Publication Date

October 20, 2025

Submission Date

March 28, 2025

Acceptance Date

July 2, 2025

Published in Issue

Year 2025 Volume: 4 Number: 3

APA
Garıpcan, A. M., & Erdem, E. (2025). Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators. Firat University Journal of Experimental and Computational Engineering, 4(3), 505-523. https://doi.org/10.62520/fujece.1667526
AMA
1.Garıpcan AM, Erdem E. Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators. FUJECE. 2025;4(3):505-523. doi:10.62520/fujece.1667526
Chicago
Garıpcan, Ali Murat, and Ebubekir Erdem. 2025. “Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators”. Firat University Journal of Experimental and Computational Engineering 4 (3): 505-23. https://doi.org/10.62520/fujece.1667526.
EndNote
Garıpcan AM, Erdem E (October 1, 2025) Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators. Firat University Journal of Experimental and Computational Engineering 4 3 505–523.
IEEE
[1]A. M. Garıpcan and E. Erdem, “Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators”, FUJECE, vol. 4, no. 3, pp. 505–523, Oct. 2025, doi: 10.62520/fujece.1667526.
ISNAD
Garıpcan, Ali Murat - Erdem, Ebubekir. “Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators”. Firat University Journal of Experimental and Computational Engineering 4/3 (October 1, 2025): 505-523. https://doi.org/10.62520/fujece.1667526.
JAMA
1.Garıpcan AM, Erdem E. Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators. FUJECE. 2025;4:505–523.
MLA
Garıpcan, Ali Murat, and Ebubekir Erdem. “Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators”. Firat University Journal of Experimental and Computational Engineering, vol. 4, no. 3, Oct. 2025, pp. 505-23, doi:10.62520/fujece.1667526.
Vancouver
1.Ali Murat Garıpcan, Ebubekir Erdem. Security and Performance-Based Design and Evaluation Criteria for Cryptographic Random Number Generators. FUJECE. 2025 Oct. 1;4(3):505-23. doi:10.62520/fujece.1667526