PGP Comment feature weakens remailer security

NetSurfer netsurf at pixi.com
Wed Nov 8 16:54:31 PST 1995



On Tue, 7 Nov 1995 anonymous-remailer at shell.portal.com wrote:

> to protect the privacy of communications.  PGP can bite you.
> The PGP comment feature lets you stick one (or more?) lines of comment
> into your encrypted messages, after the Version: line but before the
> encrypted message body.  If you use the PGP comment feature to say something

---- 8< snip

> 
> -----BEGIN PGP SIGNATURE-----
> Version: 2.7.1
> Comment: PGP available outside U.S.A. at ftp.ox.ac.uk
> 

You are using Viacrypt PGP, which has a release out which fixes the 
comment "feature" - contact them for an upgrade.

This was fixed in the freeware version some time ago as well.

-NetSurfer

#include <standard.disclaimer>

>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
==  =     = |James D. Wilson        |V.PGP 2.7:   512/E12FCD 1994/03/17 >
 "  "  o  " |P. O. Box 15432        |     finger for full PGP key        >
 "  " / \ " |Honolulu, HI  96830    |====================================>
\"  "/ G \" |Serendipitous Solutions|    http://www.pixi.com/~netsurf   >
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>







More information about the cypherpunks-legacy mailing list