pgpfan:oracle
Differences
This shows you the differences between two versions of the page.
Next revision | Previous revisionLast revisionBoth sides next revision | ||
pgpfan:oracle [2020/06/12 19:41] – created b.walzer | pgpfan:oracle [2022/09/25 12:03] – Clearer. b.walzer | ||
---|---|---|---|
Line 1: | Line 1: | ||
- | ======Oracle Attack Immunity====== | + | ======Oracle Attack Immunity====== |
An [[https:// | An [[https:// | ||
- | My single point here is that when PGP is used in a unidirectional application like email, oracle attacks are impossible simply because there is no response available. I suppose in theory | + | My single point here is that when PGP is used in a unidirectional application like email, oracle attacks are impossible simply because there is no response available. I suppose in theory |
This immunity to oracle attacks comes from the simplicity of PGP. There are no low level automated subsystems to interact with. You are always interacting with a person. | This immunity to oracle attacks comes from the simplicity of PGP. There are no low level automated subsystems to interact with. You are always interacting with a person. | ||
- | [[pgpfan: | + | This might seem to be a trivial observation and that I am giving PGP credit for something intrinsic to the application but this is a common source of confusion. It is often incorrectly assumed that oracle attacks applicable to online, connection oriented media are also relevant for the offline, non-connection oriented media where PGP is used. |
+ | |||
+ | [[pgpfan: | ||
+ | [[em: | ||
+ | [[: | ||
pgpfan/oracle.txt · Last modified: 2022/11/07 21:35 by b.walzer