Laws like this should use wording like the Frye Standard for expert testimony, which says that scientific principles must be 'generally accepted' by the scientific community to be admissible in court.
Likewise, a law mandating cryptography should say that banks, and other organizations that deal in sensitive data, must use cryptography algorithms and practices that are 'generally accepted' by cryptographers as being secure.