Plans for Post-Quantum Cryptography in GnuPG
Jakob Bohm
jb-gnumlists at wisemo.com
Tue Apr 14 14:28:09 CEST 2026
On 13/04/2026 11:20, Werner Koch via Gnupg-users wrote:
> On Sun, 12 Apr 2026 22:37, Robert J. Hansen said:
>
>> IMO, the necessary algorithms for PQC signing/certifying are not yet
>> ready for primetime. Dilithium is obviously the biggest component of a
> Right. Experience from 30 years showed that deploying a stable and
> secure signing system is much more challenging than an encryption
> system. Given that the claimed threat is store-now-maybe-decrypt-later
> the deployment of signatures is not yet not needed.
Another threat based on similar use of time as an attack tool is to
"fake signature later and pretend it is a long term contract signed
25 years earlier"
Enjoy
Jakob
--
Jakob Bohm, CIO, Partner, WiseMo A/S. https://www.wisemo.com
Transformervej 29, 2860 Søborg, Denmark. Direct +45 31 13 16 10
This public discussion message is non-binding and may contain errors.
WiseMo - Remote Service Management for PCs, Phones and Embedded
More information about the Gnupg-users
mailing list