Before anyone freaks out about "efail", realize that using it would be: 1) extremely easy to detect 2) archived in your target's email As an attacker, I could not care less about this technique. It's intellectually neat, but operationally stupid. https://efail.de/efail-attack-paper.pdf …
-
-
Don't confuse my distaste for the disclosure with advocacy for S/MIME, PGP, or encrypted email. You should: 1) use authenticated cryptography ffs! 2) stop using email and start using Signal if you need privacy
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Apparently GnuPG learned about this second hand from a copy of the paper provided to an MUA, which makes all the hate being thrown at GnuPG even weirder.
-
IMHO GnuPG deserves the hate.https://twitter.com/FiloSottile/status/996025829032431616 …
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.