How PGP Works Under the Hood
marcomanzoni.me
marcomanzoni.me
Um, this doesn't sound up to date. 1024 bit RSA isn't considered safe for a long term key. In fact, public (SSL) CAs aren't allowed to issue 1024 bit RSA certificates anymore.
http://www.keylength.com/en/3/
To get 80 bits of security, a level of security that is probably not acceptable against the global passive adversary, you need an RSA key larger than 1024 bits. 1024 bit RSA is believed to be crackable given a moderate financial investment, but hasn't publicly been cracked yet.
As an aside, I recently set up encrypted email for my Mac's desktop Mail client using the GPG Suite. I want to set up my friends with secure email, too, but none of us really use Mail; we prefer web mail. I haven't been able to find good browser plugins for GPG. (WebPG for Chrome looks promising except for a major bug that prevents messages from being sent; I reported this issue.)
Can anyone recommend good solutions for bringing GPG to Gmail in the browser? I want something that's easy enough my non-technical friends will be willing to use it for everyday conversations.
Disclaimer: I'm a member of E2E team.
alias rot13="tr '[A-Za-z]' '[N-ZA-Mn-za-m]'"
and still only getting gibberish out the other end of the pipe (lame pun intended). I thought you were talking about stuff like Xrrc lbhe ybirq bar cyrnfrq.[1] http://www.commandlinefu.com/commands/view/1792/rot13-using-...
https://help.riseup.net/en/security/message-security/openpgp...
Nowadays you would add a MAC[4] to the message or use an authenticated encryption scheme[5] instead of just an encryption mode to achieve message integrity. But PGP, like SSL, comes from the Bronze Age of cryptography and does not really adhere to modern best practices.
[1] https://en.wikipedia.org/wiki/Information_security#Integrity
[2] https://en.wikipedia.org/wiki/Block_cipher_mode_of_operation
[3] https://en.wikipedia.org/wiki/Avalanche_effect
[4] https://en.wikipedia.org/wiki/Message_authentication_code
I still wonder why anyone does anything with MD5 anymore, especially in an application like GPG... if it is known to be weak... It makes the argument why it is still safe in this situation much more subtle and involved. From all the crypto gurus, we hear 'MD5 is unsafe, do not use it anymore!!' and then in PGP/GPG, MD5 is still used because, well apparently for historic reasons and because one can. As a non-expert in these matters, this looks very odd. It seems to (needlessly) make matters more complicated and involved, more complex in terms of the necessary analysis, and on the other hand unnecessary complexity is (rightfully) despised by the same security people...
If they'd use SHA256 or similar, one could simply assume all of the properties of an unbroken cryptographic hashing function and throw out the MD5 code.
So in the end, the only valid excuse here would be history+inertia.
If we could ignore inertia and backwards compatibility we could collectively switch to some TextSecure style messaging over Tor with key distribution via DANE for universal end to end encryption with meta data protection. Alas, that is not how our world works…
It reports the 'virus' Sus/FBJack-A.
Still trying to find out exactly what that is...
Edit: http://www.sophos.com/en-us/threat-center/threat-analyses/su...
What firewall are you using?
I don't know if these same considerations apply to elliptic curve asymmetric encryption.