4 ms·
I've covered this before, targeting the PHP community, but most likely generally applicable: https://paragonie.com/blog/2016/12/everything-you-know-about-public
by CiPHPerCoder 9y ago
I've covered this before, targeting the PHP community, but most likely generally applicable: https://paragonie.com/blog/2016/12/everything-you-know-about-public-key-encryption-in-php-is-wrong#how-rsa-goes-bad https://paragonie.com/blog/2016/12/everything-you-know-about...
The short of it is: If you're interoperating with anything in the real world, you're forced to use insecure modes. And even if you're not, the library you'll be working with probably has insecure defaults. Unless your job title rhymes with 'Cryptography Engineer', steer clear of it.