GnuPG 2.1.0 "modern" released
GnuPG 2.1.0 "modern" released
Posted Nov 13, 2014 21:58 UTC (Thu) by raven667 (subscriber, #5198)In reply to: GnuPG 2.1.0 "modern" released by epa
Parent article: GnuPG 2.1.0 "modern" released
> whatever your preferred fantasy scenario is
Just to point out that in a post Snowden world we know that wholesale surveillance, where everyone is subjected to attack by a dedicated well-resourced agencies, is the new normal and not a fantasy.
> isn't in a position to judge whether MD5 is strong enough
Sure we are, MD5 is known to be insufficient for any cryptographic purpose at this time, it is not best practice to use it anymore for anything new, new tools don't need to include it, only tools which may have to deal with legacy data and legacy formats. I linked elsewhere to an instance of someone creating two different JPEG images without visible artifacts that MD5 to the same value, it only cost $0.67 on Amazon with GPU compute.
> there might be practical attacks against SHA256 being executed right now by NSA cryptographers, just that we don't know about them
Sure, anything is possible, but it is not likely and we have no evidence, not even sketchy evidence, that this is the case. Assurance is about probabilities and is never black and white, yes and no, secure or insecure. Or to put it another way, security is a fantasy, technically you are always insecure and we can only argue about how much is acceptable risk.
> if there is a reason for 1.4 to exist and a reason for it to continue supporting the older keys, perhaps that's because there is a legitimate need to keep using these older cryptographic mechanisms
Having a separate supported tool for legacy data and not supporting it in the current tool is a valid migration strategy, and valid software development practice. What is the practical problem with having two different versions of the tool for different eras of cryptographic support?
