changing the default for --keyid-format [was: Re: getting an encrypted file to show what public key was used]

Sam Whited sam at samwhited.com
Tue May 29 20:05:18 CEST 2012


On Tue, May 29, 2012 at 1:47 PM, David Shaw <dshaw at jabberwocky.com> wrote:
> On May 29, 2012, at 11:51 AM, Daniel Kahn Gillmor wrote:
>
> What is your concern here, though - accidental or intentional collision?

Certainly both; while accidental collision isn't probable, 32-bit IDs
aren't exactly collision resistant either. This, coupled with the fact
that a nice GPGPU is now relatively inexpensive makes brute forcing
collisions not only possible, but relatively easy for a determined
attacker.

—Sam


-- 
Sam Whited
pub 4096R/FB39BCF7EC2C9934

SamWhited.com
sam at samwhited.com
404.492.6008



More information about the Gnupg-users mailing list