Sequoia PGP

@sequoiapgp
440 Followers
7 Following
50 Posts
We are working on a new OpenPGP implementation in Rust. It's cool. Check us out at https://sequoia-pgp.org .
Websitehttps://sequoia-pgp.org/

“Strong encryption strengthens the foundation of trust online and ensures that our digital spaces remain ones where individuals can live authentically and without fear.”

Shae Gardner from LGBT Tech explains why encryption is so important for the LGBTQ community 🏳️‍🌈

#PracticeSafeText 💬

#e2ee #encryption #lgbt #lgbtq #lgbtqia #privacy #security #queer #queercryption

Thanks to Uwe Kleine-König for bringing this to the attention of the Linux kernel developer community.

https://lore.kernel.org/keys/c7klbj6xvzcfx63gid5iancjg6cv4krgm2wk6wfijwebq7bxtr@songleund4fm/

Keys using SHA-1 in the kernel keyring - Uwe Kleine-König

*20* years ago SHA-1 was broken: researchers found a weakness that reduced its collision resistance from 2^80 to 2^69 hash operations. That's a long time ago.

NIST deprecated SHA-1 in 2011 and disallowed its use in signatures in 2013. That's a long time ago.

In 2020, the SHAmble authors showed that chosen prefix attacks against SHA-1 were feasible for 11 kUSD.

You can check your OpenPGP certificate using:

sq cert lint --cert FINGERPRINT

Add --fix to fix any issues.

https://en.wikipedia.org/wiki/SHA-1

SHA-1 - Wikipedia

Die Ausgabe des c't Open Source Spotlight mit dem Bericht über Sequoia und dem Interview mit @nwalfield ist leider nicht mehr online. Ich habe mit Keywan gesprochen und mit seiner Erlaubnis den Inhalt auf unsere Webseite gestellt.

https://sequoia-pgp.org/blog/2025/01/13/202501-ct-interview/

#pgp

c’t Open Source Spotlight interview with Neal

Sequoia is a modular OpenPGP implementation in Rust.

If you want to learn more about sq, @nwalfield will present it at @fosdem in the security dev room on Saturday at 13.00

https://fosdem.org/2025/schedule/event/fosdem-2025-6297-a-practical-introduction-to-using-sq-sequoia-pgp-s-cli/

#pgp

FOSDEM 2025 - A Practical Introduction to using sq, Sequoia PGP's CLI

@LWN has published a review of sq. From the article:

"The first 1.0 release of a project is sometimes a bit rough, but in Sequoia's case that does not appear to be the case. The tool supports all of the basic operations of an OpenPGP implementation, integrates well with existing software, and has a discoverable interface that makes it easy to come up to speed in a short time."

https://lwn.net/SubscriberLink/1003243/8e76a9243428af37/

#pgp

A look at the Sequoia command-line interface [LWN.net]

In der aktuellen Ausgabe des Open Source Spotlight Newsletter des @ct_Magazin wirft @ktn einen Blick auf sq 1.0, unuser CLI, und führt ein Interview mit mir (@nwalfield) über die Gründung von Sequoia PGP, was wir vorhaben und wohin die Reise geht.

Ihr könnt den Newsletter hier abonnieren und wenn ihr das bis zum 3.1. tut, erhaltet ihr auch den Bericht über Sequoia: https://www.heise.de/newsletter/anmeldung.html?id=ct-opensource&wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege/

#pgp

c't Open Source Spotlight

Innovative Software, spannende Projekte - erweitern Sie Ihre Möglichkeiten und werden Sie Teil der Open Source Community - jeden zweiten Freitag neu.

heise online

A Sapling Matures: Meet sq 1.0

The Sequoia PGP team is happy to announce the release of version 1.0 of sq. sq is a command-line tool for working with OpenPGP artifacts with a focus on usability, security, and robustness.

After seven years of development, this is sq’s first stable release. A notable change for existing users of sq is that we will no longer change sq’s CLI in an incompatible manner.

https://sequoia-pgp.org/blog/2024/12/16/202412-sq-1.0/

#pgp

Sequoia PGP: A Sapling Matures: Meet sq 1.0

Sequoia is a modular OpenPGP implementation in Rust.

Four years ago today, we released version 1.0 of sequoia-openpgp, our low-level OpenPGP library. 🥳

https://sequoia-pgp.org/blog/2020/12/16/202012-1.0/

#pgp

Sequoia PGP v1.0 Released: The Seedling's a Sapling

Sequoia is a modular OpenPGP implementation in Rust.

"Fedora 34 was the first version of Fedora to ship Sequoia PGP back in 2021 - a lot has happened since then. In this post, I’ll cover what’s new, and provide some hints for how to get started with some of the more advanced tools."