[Cryptography] How to prove Wikileaks' emails aren't altered

John Levine johnl at iecc.com
Mon Oct 24 23:03:47 EDT 2016


>This means that in a case where someone has hacked a system, if they have the email stores, they probably also have the DKIM signing key. If they have
>the DKIM signing key they can create whatever messages they want and sign them, with backdating and anything else they want.

In this case it's well documented that bad guys phished John Podesta
and took over his account to download all of his mail.  There is no
evidence of a compromise at gmail itself.


More information about the cryptography mailing list