Re: [aleph1@securityfocus.com] Implementation of Chosen-Ciphertext Attacks against PGP and GnuPG

2002-08-13 Thread Sidney Markowitz
[Perry message forwarded a notice of a paper on an attack against PGP and GnuPG] A posting on bugtraq in response said, in part: > From: "Werner Koch" <[EMAIL PROTECTED]> [...] > Countermeasures are defined in the OpenPGP drafts since October 2000. > > This MDC (Manipulation Detection Code) feat

[aleph1@securityfocus.com] Implementation of Chosen-Ciphertext Attacks against PGP and GnuPG

2002-08-13 Thread Perry E. Metzger
--- Begin Message --- Implementation of Chosen-Ciphertext Attacks against PGP and GnuPG K. Jallad, J. Katz, and B. Schneier We recently noted that PGP and other e-mail encryption protocols are, in theory, highly vulnerable to chosen-ciphertext attacks in which the recipient of the e-mail acts a