This article claims that PGP is dead. Is it really though? I checked EFAIL mitigation page, and nowhere does it support their claims about the tech being dead? And if it is so insecure as claimed by the article, then why is it still being used to sign Git commits or encrypt emails even today? Why did Skiff conveniently ignore the part to inform the reader that the standard was being updated?

  • stifle867@programming.dev
    link
    fedilink
    arrow-up
    6
    arrow-down
    1
    ·
    8 months ago

    It seems you completely misinterpreted the intention of the article (willingly or ignorantly).

    At Skiff, we take an authoritative position that PGP is no longer useful, long outdated by better encryption protocols, encumbered by unneeded complexity, and hard to use even from the start.

    Except for “no longer useful” the rest is pretty much unanimously agreed upon within the community.