#openpgpjs

TechnoTenshi :verified_trans: :Fire_Lesbian:technotenshi@infosec.exchange
2025-06-10

Critical flaw in OpenPGP.js (CVE-2025-47934) lets attackers spoof valid signatures on arbitrary data, tricking verifiers into trusting malicious content. Patch available in v5.11.3 and v6.1.1.

codeanlabs.com/blog/research/c

#infosec #PGP #crypto #OpenPGPjs

2022-10-20

The German Sovereign Tech Fund supports the development, improvement and maintenance of open digital infrastructure.
The following projects will receive funding starting October 2022:
#OpenMLS, #curl, #OpenBGPd, #Bundler/ #RubyGems, #WireGuard, #OpenPGPjs/ #GopenPGP, #OpenSSH

Strengthening Digital Infrastructure and Open Source Ecosystems
in the Public Interest
sovereigntechfund.de/en.html

#SovereignTechFund #FreeSoftware

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst