[Cryptography] The Trust Problem

Thierry Moreau thierry.moreau at connotech.com
Tue May 20 14:19:50 EDT 2014


On 2014-05-20 14:50, Jerry Leichter wrote:

> What should you demand to be convinced that you can use some software safely?

Please demand nothing from this vendor.

Simply ask yourself how you can share encrypted data "with the people 
you trust." If this undertaking made a breakthrough in this area, help 
us learn about their scientific publication explaining it (that would 
disclose a novel encryption key management scheme).

Nice mobile app packaging is evidence of nothing.

>  What should someone offering secure software put out there that would help you reach a decision?

Your decision should have been made long ago. It's about symmetric 
encryption key management, public key cryptography assisted or not, and 
remote party authentication, the way you like it.

Regards,

- Thierry Moreau


More information about the cryptography mailing list