[OTR-users] OTR mentioned in Snowden documents?

The Doctor drwho at virtadpt.net
Thu Sep 12 13:21:45 EDT 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 09/10/2013 11:16 PM, Paul Wouters wrote:

> Perhaps the NSA counts Mannings OTRed logged conversastions as
> "broken into"? :)

What about a vulnerability in the IM client (not the OTR plugin) that
allows an attacker to grab messages post-decryption or pre-encryption
(ala Skype surveillanceware)?  That would neatly evade the crypto
while allowing access to the plaintext.

- -- 
The Doctor [412/724/301/703] [ZS]
Developer, Project Byzantium: http://project-byzantium.org/

PGP: 0x807B17C1 / 7960 1CDC 85C9 0B63 8D9F  DD89 3BD8 FF2B 807B 17C1
WWW: https://drwho.virtadpt.net/

"You and the chief are the only ones in this section whose bodies
don't come with a warranty."

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.20 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/

iEYEARECAAYFAlIx+CkACgkQO9j/K4B7F8HqwgCg1JKx70r3z2yE6+c5ClhJgy8G
Q6sAn1zCwEBuZVrqbQMs841A9PprFDug
=n0OC
-----END PGP SIGNATURE-----



More information about the OTR-users mailing list