3 ms·
My point is that selling encryption software as "secure" is a difficult position, since nobody can really guarantee the security, even with open source code. T
by giuolioN 5y ago
My point is that selling encryption software as "secure" is a difficult position, since nobody can really guarantee the security, even with open source code.
Therefore the decision to choose a particular "secure" software relies 50% on sound cryptographic practices, and 50% on reputation. Yes, reputation.
Just like I wouldn't use a NSA "secure random" algorithm [1], or a product that advertises 32768 bit key encryption, I wouldn't use a product that advertises "100% pure Swiss security" on its home page. It's a negative reputation signal.
[1] https://en.wikipedia.org/wiki/Dual_EC_DRBG https://en.wikipedia.org/wiki/Dual_EC_DRBG
- soziawa 5y agoFair enough, but it looks like you are misquoting them. They never say anything about "100% pure Swiss security". Their messaging seems to revolve much more around an anti Silicon Valley proposition where you could substitute Swiss for European. Is Switzerland actually known to screw these kinds of things up more than other countries?