home.social

#pgpsignature — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #pgpsignature, aggregated by home.social.

fetched live
  1. Quick reminder that the best way to verify yourself and your content is with PGP signatures. Relying on 3rd parties to verify yourself is a bad practice as it introduces another attack vector. Attackers have impersonated "verified" accounts Twitter, YouTube, & Facebook.

    This toot is signed using PGP. An attacker would need to have access to my private PGP key to impersonate me. If my private key is exposed, I could easily retire the key with a message like "this key has been exposed". No need to wait for a big tech social media support team to investigate. I made a little app to post PGP signatures on sites with limited character counts too (pgp.clar.ke/P).

    #PGP #PGPSignature #Privacy #Verified

  2. Quick reminder that the best way to verify yourself and your content is with PGP signatures. Relying on 3rd parties to verify yourself is a bad practice as it introduces another attack vector. Attackers have impersonated "verified" accounts Twitter, YouTube, & Facebook.

    This toot is signed using PGP. An attacker would need to have access to my private PGP key to impersonate me. If my private key is exposed, I could easily retire the key with a message like "this key has been exposed". No need to wait for a big tech social media support team to investigate. I made a little app to post PGP signatures on sites with limited character counts too (pgp.clar.ke/P).

    #PGP #PGPSignature #Privacy #Verified