Looking through the GPG CVE list, it appears that GPG has a fantastic security record. This seems to jus Most of the recent vulnerabilities have been side-channel attacks.
Is it useful to use split-GPG with a hardware token to prevent side-channel attacks? Also, is it best to use one signing key per project one is working on? -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/CAJEMUN9e6RC%3Dgfsf5%2Bk3Y0RWMa9Cu%2BOuHhFyFN8-1pYpuV0a9w%40mail.gmail.com. For more options, visit https://groups.google.com/d/optout.
