Slashdot Mirror


GnuPG's ElGamal Signing Keys Compromised

KjetilK writes "Werner Koch just sent an announcement saying that there is a severe bug in GnuPG >= 1.0.2 that makes it easy to compromise ElGamal keys used for signing. Note that such keys are not generated by GnuPG's standard setup, and should be relatively rare. Among the 850 public keys in my personal keyring, there were only one such public key (and a few subkeys). There is already a patch available to disable these keys."

1 of 144 comments (clear)

  1. It must be a troll... by fmaxwell · · Score: 0, Flamebait

    Why are there people who get moderator points and try to use them to punish those who express opinions with which the moderator does not agree? "Flamebait" and "Troll" do not mean "I disagree with the author." They refer to postings made to incite anger and start "flame wars." The posting I made was expressing a valid opinion and should not have been modded down as "troll" or "flamebait" -- as has been demonstrated by the fact that it was also modded up as "underrated" and "insightful."

    If you disagree with something said, then debate like an adult instead of using mod points to try to censor those with whom you disagree.