[openpgp] Re: multi-key collisions in OpenPGP

Falko Strenzke <[email protected]> Mon, 17 Nov 2025 10:38:09 +0100
Newsgroups gmane.ietf.openpgp
Organization MTG AG
Message-ID <[email protected]>
Am 14.11.25 um 18:34 schrieb Daniel Huigens:
> On Friday, November 14th, 2025 at 18:00, Daniel Huigens wrote:
>
>> Separately: I looked at the sage code for a multi-key collision against
>> GCM, and it seems to assume that both messages have the same nonce.
>> I tried to adapt it to use different nonces, but it didn't work;
>> but maybe I missed something. Do you know if this is required for
>> the attack to work?
> Never mind, I did get the code to work, so ignore the second half
> of my message :)

Great that you could verify it practically.

Falko

>
-- 

*MTG AG*
Dr. Falko Strenzke

Phone: +49 6151 8000 24
E-Mail: [email protected]
Web: mtg.de <https://www.mtg.de>

------------------------------------------------------------------------

MTG AG - Dolivostr. 11 - 64293 Darmstadt, Germany
Commercial register: HRB 8901
Register Court: Amtsgericht Darmstadt
Management Board: Jürgen Ruf (CEO), Tamer Kemeröz
Chairman of the Supervisory Board: Dr. Thomas Milde

This email may contain confidential and/or privileged information. If 
you are not the correct recipient or have received this email in error,
please inform the sender immediately and delete this email.Unauthorised 
copying or distribution of this email is not permitted.

Data protection information: Privacy policy 
<https://www.mtg.de/en/privacy-policy>

_______________________________________________
openpgp mailing list -- [email protected]
To unsubscribe send an email to [email protected]
smime.p7s (application/pkcs7-signature, 4.9 KB) - not displayed