[ home / rules / faq / search ] [ overboard / sfw / alt ] [ leftypol / edu / labor / siberia / lgbt / latam / hobby / tech / games / anime / music / draw / AKM / ufo / 420 ] [ meta ] [ wiki / shop / tv / tiktok / twitter / patreon ] [ GET / ref / marx / booru ]

/tech/ - Technology

"Technology reveals the active relation of man to nature" - Karl Marx
Name
Options
Subject
Comment
Flag
File
Embed
Password(For file deletion.)

Check out our new store at shop.leftypol.org!


File: 1784543440823-6.png (11.11 KB, 500x658, GnuPG-Logo.svg.png)

 

are you aware of the blatant FUD campaign happening
against PGP?

people are bringing irrelevant and wrong facts up about PGP just to call it insecure

somehow most (if not all) of them shill signal at the same time, some of them even suggesting whatsapp instead of PGP.

signal is a centralized IM app that requires your fucking phone number to register. they have huge aversion against 3rd party appstores and don't want any custom fork / implementation of "open source" signal client. somehow this is much better than PGP encrypted email over an anonymous network.

(taking gnupg as reference)

"it's old therefore it's bad"

it's continuously updated / modernized and uses a separate library for all crypto operations anyway. it even supports PQ crypto

"it's complex and error prone"

the main idea is very simple. you can read RFC4880 all yourself and understand it

"it has shootguns bla bla"

it is literally not possible to do a mistake and publish your private key onto internet without passing several confirmation dialogs and warnings yet people claim this is a serious issue about PGP.

any proper client should (and they do) restrict sending plaintext messages when PGP is selected as encryption method.

"no perfect forward secrecy bla bla"

perfect forward secrecy is implemented for an entirely different usecase and it doesn't even add a meaningful security. private key compromise implies all unencrypted messages resting on your device are compromised too.

"it does so many things bla bla"

this is what makes it good. a single program to manage your keys, sign and encrpyt. nobody would willingly use 500 different small programs to do one task.

"efail, bla bla"

fake incident

https://articles.59.ca/doku.php?id=start


Unique IPs: 1

[Return][Go to top] [Catalog] | [Home][Post a Reply]
Delete Post [ ]
[ home / rules / faq / search ] [ overboard / sfw / alt ] [ leftypol / edu / labor / siberia / lgbt / latam / hobby / tech / games / anime / music / draw / AKM / ufo / 420 ] [ meta ] [ wiki / shop / tv / tiktok / twitter / patreon ] [ GET / ref / marx / booru ]