Collisions on GPG signatures
I noticed that Full-Disclosure contained son discussion about a way to forge GPG key signatures.
- Forging key signatures with collisionsForging key signatures with collisions Georgi Guninski guninski at guninski.com Fri Jun 22 14:48:07 CEST 2012 Forging key signatures with...
- Forging key signatures with collisionsForging key signatures with collisions Georgi Guninski guninski at guninski.com Fri Jun 22 16:16:48 CEST 2012 This is getting stranger......
- This basically says that we could sign a GPG key and make it look as though it was trusted by Richard Matthew Stallman. ;)
- -seclists.org: (Full Disclosure: Potential gpg forging key signatures with collisions netsecu.org/#249) #security
- So now we all need to start thinking the way @earthmelon is...
- How does one verify a key revocation? crypto.stackexchange.com/questions/2904… #gpg #pgp #cryptography #security
- I'll keep you updated...

