PGP ADK Exploit
Unauthorized administrative keys can be inserted into an unsuspecting certificate. When the compromised certificate is imported by a user, subsequent encrypted files will be exposed to decryption by the holder of the unauthorized ADK Private Key.
Exploit Details
Name: PGP ADK Exploit
Versions: PGP 5.5.x through PGP 6.5.3
Protocols/Services: Encryption
Written by: Travis Mander
Protocol Description
The term protocol here does not use the conventional definition of protocol that is used when discussing computers. Instead of message protocols, such as those used on the Internet, the term protocol here relates to Cryptographic Protocols. These protocols help manage the logical keys used in a cryptosystem. The cryptosystem is an ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access