I wrote a long post about the Efail disclosure to stop myself from tweeting about it anymore. Also it says mean things about PGP which I will regret for months.https://blog.cryptographyengineering.com/2018/05/17/was-the-efail-disclosure-horribly-screwed-up/ …
But... It isn't. GPG has been using MDCs for a long time, and has been hard failing on decryption if they're missing for years. MIME-only vectors and stupid error checking bugs aside, Efail only works on very old PGP messages, using obsolete crypto before MDCs were mandatory.
-
-
Ah. Didn’t realize that. When it MDCs become mandatory?
-
GPG has been using MDCs since 2002 or so, and the lack of an MDC with Twofish and AES (which should always have one since they were introduced after MDCs) became a hard fail in gpg 2.1.9 (released in 2015). So for gpg since 2015, only messages pre-2002 are malleable.
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.