[wrong] Publicly Signed Messages was Re: age

Undiscussed Horrific Abuse, One Victim & Survivor of gmkarl at gmail.com
Thu Jan 27 02:24:20 PST 2022


AGE-SECRET-KEY-1WURJSN9F7EH4AZCSS9ZGJKC3Y0KJLZ0CH734LTVEQUFPECLRYWDSCEZL8S

You can sign messages to this key via:

cat > message
sha256sum message | age --armor -r $(echo
AGE-SECRET-KEY-1WURJSN9F7EH4AZCSS9ZGJKC3Y0KJLZ0CH734LTVEQUFPECLRYWDSCEZL8S
| age-keygen -y) > signature

This encrypts the hash of the message to the secret key and stores it
in the file "signature". Maybe if we made a norm of this, the
surveillance systems would get used to it, and let us switch to real
signatures.

You can verify one of these signatures this way:
sha256sum -c <(age -i <(echo
AGE-SECRET-KEY-1WURJSN9F7EH4AZCSS9ZGJKC3Y0KJLZ0CH734LTVEQUFPECLRYWDSCEZL8S)
-d < signature)

This cryptographically verifies that the signature was made with age's
encryption scheme.

This is of course quite wrong. Why would anybody ever sign their
messages? Don't they trust their neighborhood to have no crime?
-------------- next part --------------
A non-text attachment was scrubbed...
Name: message
Type: application/octet-stream
Size: 716 bytes
Desc: not available
URL: <https://lists.cpunks.org/pipermail/cypherpunks/attachments/20220127/323ec229/attachment.obj>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature
Type: application/octet-stream
Size: 442 bytes
Desc: not available
URL: <https://lists.cpunks.org/pipermail/cypherpunks/attachments/20220127/323ec229/attachment-0001.obj>


More information about the cypherpunks mailing list