OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-disclosure] A new way to hide from Google and Yahoo

From: Denis Jedig (seclistssyneticon.de)
Date: Wed Jul 05 2006 - 16:17:35 CDT


Valdis.Kletnieksvt.edu wrote:

> (Personally, I wouldn't want to be using 2048 bit RSA for the actual
> stream encryption - that's something that IDEA or similar is much better for.

Using asymmetric cryptography based on primes (*especially* RSA) for the
exchange of actual data is a reliable way to break the security of
communications. They are susceptible to the "known plaintext" class of
attacks unless random padding is used to mitigate this issue. Anyway, it
is rather a waste - symmertic ciphers are significantly more efficient.

Denis

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/