soc.octade.net is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
RE: https://mstdn.social/@GnuPG/117325390897443867
Great to see RFC9980 support (which also implies RFC9580 support) landing in #GnuPG. Congratulations to the team on their hard work! 🚀
Unlike upstream GnuPG, the FreePG project does not encourage use of "LibrePGP Kyber", especially now that RFC9980 has been implemented. It is important to remember that there are no differences in the security properties between "LibrePGP Kyber" and RFC9980, but RFC9980 is interoperable with other OpenPGP software while "LibrePGP Kyber" is not.
There are several related changes to the compliance modes in this release which will have implications for FreePG, so there may be a longer delay than usual before we can release 2.5.24-freepg, but watch this space...
#GnuPG v2.5.24 has some security fixes, so #Gpg4win 5.1.1 is available for download as well.
Some support for RFC9980: "Post-Quantum Cryptography" is new, for those who need it because of governmental regulations. All others please stay on LibrePGP Kyber for some resistance against quantum computing based attacks.
https://dev.gnupg.org/T8425.html
https://lists.gnupg.org/pipermail/gnupg-announce/2026q3/000516.html
https://gpg4win.org/get-gpg4win.html
(There was GnuPG 2.5.23 for a blink, but 2.5.24 fixed a regression. ;))
#GnuPG v2.5.24 has some security fixes, so #Gpg4win 5.1.1 is available for download as well.
Some support for RFC9980: "Post-Quantum Cryptography" is new, for those who need it because of governmental regulations. All others please stay on LibrePGP Kyber for some resistance against quantum computing based attacks.
https://dev.gnupg.org/T8425.html
https://lists.gnupg.org/pipermail/gnupg-announce/2026q3/000516.html
https://gpg4win.org/get-gpg4win.html
(There was GnuPG 2.5.23 for a blink, but 2.5.24 fixed a regression. ;))
If you are using #Thunderbird with #GnuPG, see https://etaoinwu.com/en/blog/gpgme-2-workaround-for-thunderbird/ to make it work with the newer GpgME 2 stable releases and thus also with #Gpg4win 5.
Maybe our other hints and recommendations for https://wiki.gnupg.org/EMailClients/Thunderbird do interested you, too. ;-)
Zero days since it turned out that #GnuPG has arbitrarily changed behavior between versions in the name of "safe default", and required you to pass an additional option to make it behave properly in the rare cases it matters. Of course we still need to support old versions and alternative implementations without that option. And of course there is no clean way of checking whether it's available or not.
[demo] https://files.octade.net/
I drafted a prototype for a PHP server application that automatically hashes and signs files and presents visitors with verification archives containing digital signatures for offline verification. The site allows readers to view, download, hash, and verify signatures of files. Since I occasionally like to publish puzzles and bits of cryptology, I just had to make this to scratch the old itch.
The neat thing about this design is that the current version has zero JavaScript. It uses CSS3 hacks with anchors and URL probing to emulate JavaScript and AJAX functionalities for modal dialogs to present server-side JSON data as HTML text.
When I upload files or documents to the server, the interface automatically presents them to the user in a grid. So now all I have to do is upload files and documents and the server generates the site.
The reader can then click buttons to hash, sign, view, verify, and download files.
GnuPG and OpenSSL Signatures are generated automatically on user demand. The site visitors can download these signatures and the public keys to verify files.
What should I add / change in the application and its interface?
What accessibility components might be warranted?
Should the application parse and present EXIF data, or is that too much?
#PHP #CSS3 #HTML5 #WebDesign #UX #cryptology #cryptography #crypto #signatures #OpenSSL #GnuPG #GPG #PGP #encryption #papers #preprints #documents #SelfHosted #WebLord #WebMaster #WebSerf #NoJS #Apache #CyberSecurity
I see some people still using ancient PGP keys. GnuPG offers Linux repositories for updating to the latest versions of GnuPG with new expert features for key generation. Recent versions support both Kyber1024 and Goldilocks448 keys (and more).
Once installed run: :~$ gpg --full-generate-key --expert
New GnuPG Repositories for Debian, Ubuntu, and Devuan: Stable and Development Branches Available
https://www.gnupg.org/blog/20250827-new-repository.html
#PGP #GPG #PQC #GnuPG #Encryption #Cryptography #Privacy #Signatures #Kyber #Goldilocks #ED448 #Keys #PublicKey