At the https://gpg.fail talk and omg #39c3
Uncategorized
1
Posts
1
Posters
0
Views
-
At the https://gpg.fail talk and omg #39c3
You can just put a \0 in the Hash: header and then newlines and inject text in a cleartext message.
Won’t even blame PGP here. C is unsafe at any speed.
gpg has not fixed it yet.
-
undefined cybersecurity@poliverso.org shared this topic