Crowdfunding USB Security Key for Email- and Data-Encryption - Nitrokey Storage

Jan Suhr jan at nitrokey.com
Sat Nov 21 09:00:55 CET 2015


Hi Malte!

Am 20.11.2015 11:26, schrieb Malte:
> Hi,
> 
> very nice!
> 
> Two questions/remarks, though:
> 
> On Thursday 19 November 2015 22:37 Jan Suhr wrote:
>> The firmware and hardware of Nitrokey Storage have already been 
>> verified
>> by Cure59, a professional third-party security auditor.
> 
> How do you deal with the findings of the audit?

All serious findings are fixed already. Look for the "Note" at the end
of each issue description.

> (https://cure53.de/pentest-report_nitrokey.pdf and
> https://cure53.de/pentest-report_nitrokey-hardware.pdf, for the
> inclinded reader. And yes, it is
> cure53.)
> 
> 
>> Nitrokey is made entirely in Germany […]
> 
> Can we _please_, for the love of all that is dear to us, stop 
> advertising with
> nation-states as quality property? It might sell more sticks, but it 
> fosters a
> sense of trust where there must be none.

This can be a hard requirement for enterprises and government
institutions. So it makes sense to inform about it. Whether this matters
to personal users is up to each individual decision.

Regards,
Jan

> 
> Sincerely,
> 
> Malte
> 
> _______________________________________________
> Gnupg-users mailing list
> Gnupg-users at gnupg.org
> http://lists.gnupg.org/mailman/listinfo/gnupg-users





More information about the Gnupg-users mailing list