2 ms·
I think this is dangerous to use for many of the use cases that it would appear useful for, especially for any form of backups. By design, it protects the confi
by voidmain 5y ago
I think this is dangerous to use for many of the use cases that it would appear useful for, especially for any form of backups. By design, it protects the confidentiality of encrypted files but not the integrity, and in almost every real threat model this is a serious flaw. The authors are not interested in changing this (they have closed various issues asking for it and clearly documented their position) so you should probably not use it unless you understand the issues well enough to be confident that is safe for you or can solve the problem using a second tool for signing (which will also cost you streaming).
I am not any kind of expert in this field, so you are not obligated to listen to me... but I am still right.