The issue raises concerns about the trustworthiness of encrypted communications relying on the library. “In order to spoof a message, the attacker needs a single valid message signature (inline or detached) as well as the plaintext data that was legitimately… Read More "Critical flaw in OpenPGP.js raises alarms for encrypted email services"
