ietf-openpgp
[Top] [All Lists]

Re: [openpgp] Spoofing OpenPGP and S/MIME Signatures in Emails

2019-05-04 06:08:30
Hi,

thanks a lot for your great work!

Just an additional question regarding the “GPG Api” attacks – can we assume that all 
applications using gpgme (like Balsa, <https://pawsa.fedorapeople.org/balsa/>) to talk to gpg are 
not vulnerable regarding this attack class, as the lib handles cases G1 and G2 properly?

Thanks,
Albrecht.

On 30.04.19 14:29, ilf wrote:
https://github.com/RUB-NDS/Johnny-You-Are-Fired
https://raw.githubusercontent.com/RUB-NDS/Johnny-You-Are-Fired/master/paper/johnny-fired.pdf

Attachment: pgp9Qr9YhAS_y.pgp
Description: PGP signature

_______________________________________________
openpgp mailing list
openpgp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/openpgp
<Prev in Thread] Current Thread [Next in Thread>