The gpg.fail aftermath: On responsible disclosure, GPG, and the state of security in 2026
The gpg.fail aftermath: On responsible disclosure, GPG, and the state of security in 2026
In 2025, I found and disclosed a bunch of vulnerabilities in GPG, the most used PGP implementation, and held a talk at 39c3 about it. **S...
GnuPG is one of those tools I never got around to use. How could something designed for human communication be so utterly cumbersome and confusing ?
I use it for git commit signing.
You can now use SSH keys if you so wish.
If you ignore most of it, it’s actually fine.
Very interesting talk, thanks for sharing!
The collar/padlock is such a good look for a cryptography talk