Happy Birthday to the GnuPG team and community. GnuPG turns 10 today! For those caught unaware, GnuPG was designed to be a Free Software implementation of PGP, removing the patented algorithms, such as RSA and IDEA, and replacing them with Free Software algorithms, such as Blowfish and ElGamal. Being a strong advocate of GnuPG and cryptography in general, this is great news. Werner Koch mailed the GnuPG-Announce mailing list, giving a brief history of the project. Worth a read for anyone who uses GPG.
-
Home
-
Meta
-
Subscribe
Pages
-
Categories
-
Archives
- July 2008
- June 2008
- May 2008
- April 2008
- March 2008
- February 2008
- January 2008
- December 2007
- November 2007
- October 2007
- September 2007
- August 2007
- July 2007
- June 2007
- May 2007
- April 2007
- March 2007
- February 2007
- January 2007
- December 2006
- November 2006
- October 2006
- September 2006
- August 2006
- July 2006
- June 2006
- May 2006
- April 2006
- March 2006
- February 2006
- January 2006
- December 2005
- November 2005
- October 2005
- September 2005
{ 2 } Comments
gnugpg should implement better coding style. it is a shame how many security updates it generates and even current state is quite dubious. See for example the fefe auditing that gave no response of Werner Koch.
Under GPG’s response to CVE-2006-6235, Werner Koch writes:
And another place, he says
So, it looks to me like he is responsive and even proactively changing things (e.g. stack- to heap-based).
The only announcment I found of the fefe patch was on the full disclosure mailing list and it isn’t clear that he actually notified Werner Koch with a copy of the patch.
Post a Comment