GnuPG Gpg4win Logo
  • Comments
  • Immutable Page
  • Menu
    • Navigation
    • RecentChanges
    • FindPage
    • Local Site Map
    • Help
    • HelpContents
    • HelpOnMoinWikiSyntax
    • Display
    • Attachments
    • Info
    • Raw Text
    • Print View
    • Edit
    • Load
    • Save
  • Login

Navigation

  • RecentChanges
  • FindPage
  • HelpContents

Upload page content

You can upload content for the page named below. If you change the page name, you can also upload content for another page. If the page name is empty, we derive the page name from the file name.

File to load page content from
Page name
Comment
Get the password from https://wiki.gnupg.org/UnlockRegistration

Revision 1 as of 2014-06-05 10:18:07
  • Gpg4win
  • ImprovingSecurity

TODO

What additional means can be taken to improve the security of Gpg4win?

Given more budget/development power what measures should be taken, ranked effectiveness.

There is an article http://www.dwheeler.com/essays/heartbleed.html

More automatic tests

Especially more negative tests, more fuzzing.

Map out the security requirements of the Gpg4win components.

.. the components and their role during usage should be examined. Best would be a fault or attack tree analysis. It will not be feasable to do the same level of examinations on all components, some are big (Qt for Kleopatra), some are quite small like the core implementatio of ECC.

  • This site is hosted by Intevation GmbH
  • |
  • Datenschutzerklärung und Impressum
  • |
  • Privacy Policy and Imprint