Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

Yes.


I've just recently set up GPG for my family using 4096 bit keys. How long do I have, assuming no hole is found, before needing to change?


That's a better question for 'pbsd, but 4096 bit keys are infeasible to attack (outside of quantum computing) using any technique currently known to science.

I'm fond of saying that the thing that takes out RSA-2048 is likely to take out RSA altogether, so, over the medium term, look to Elliptic Curve instead of RSA. New systems should be designed with ECC instead of classical IFP/DLP crypto.


ECC is invulnerable to quantum attacks? According to pqcrypto.org, ECC is "dead, dead, dead."


Yes, ECC is vulnerable to quantum attacks; we aren't talking about quantum attacks on this subthread.


Is it unreasonable to call a thread that decidedly ignores quantum attacks worthless? I mean, absolutely speaking, given that quantum attacks really are or will be out there, is it not bad advice to suggest systems be built with quantum-vulnerable algos?



Assuming nothing changes, 4096-bit RSA has around 160 bits of security, roughly equivalent to 320-bit elliptic curves.

Depending on how Moore's law progresses and our understanding of the Universe, you may never need to change (ignoring all other possible ways your key can be acquired).


4096 is secure. Better to setup 256 bit ECDSA, just for thesmaller size however.


If you're interested in seeing how to implement it, the NSA apparently has a nifty guide:

http://www.nsa.gov/ia/_files/ecdsa.pdf




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: