|
|
Message-ID: <3a6f6d97-90f0-41a1-9b33-3bd98cc6accb@e13.dev>
Date: Mon, 29 Dec 2025 18:51:15 +0100
From: Max Jonas Werner <max@....dev>
To: oss-security@...ts.openwall.com
Subject: Re: Best practices for signature verifcation
On 29.12.2025 6:21 PM, Steffen Nurpmeso wrote:
[...]
>
> I know a gentle and forgiving Russian who said (since "crypto
> saves the world" simply quoting all this shamelessly)
>
> Years ago I started to recommend age
> (https://age-encryption.org/) for file encryption and
> "ssh-keygen -Y" for making ed25519 signatures. But both of them
> do not support post-quantum cryptographic algorithms. [.]
age does support pq encryption:
https://github.com/FiloSottile/age?tab=readme-ov-file#post-quantum-keys
/max
Download attachment "OpenPGP_signature.asc" of type "application/pgp-signature" (666 bytes)
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.