MIT Tech Review on user error

Johan Wevers johanw at vulcan.xs4all.nl
Fri Dec 25 15:57:14 CET 2015


On 17-12-2015 21:29, Robert J. Hansen wrote:

> http://www.technologyreview.com/news/544516/user-error-compromises-many-encrypted-communication-apps/

Signal assumes TOFU, and warns if the key is changed. That can have a
ligitimate reason (new installation), or indicate an attempted mitm
attack. Which one it is can not be determined in the application itself.

-- 
ir. J.C.A. Wevers
PGP/GPG public keys at http://www.xs4all.nl/~johanw/pgpkeys.html




More information about the Gnupg-users mailing list