ietf-openpgp
[Top] [All Lists]

Re: Anybody know details about Schneier's "flaw"?

2002-08-14 09:51:50

Rodney Thayer <rodney(_at_)tillerman(_dot_)to> writes:

I think it's got too many odd things in it to require compression.

Indeed.. As I said (perhaps incoherently), the attack only works if
you DO NOT compress.  If you compress the message then there is no way
to XOR against the message.

-derek

-- 
       Derek Atkins
       Computer and Internet Security Consultant
       derek(_at_)ihtfp(_dot_)com             www.ihtfp.com