I've gave a longer trial to gpg4win and it's very power full and easy to use !
Of course it's pointless to use such a nice tool on a none air-gaped Windows..
To summarize if I want to use the PDF built-in signing I will need to convert my OpenPGP into a X.509 cert
otherwise I can simply use the OpenPGP file signing
It will not be digest to send all what I use for you to see it (it will lead to TL;DR)
but here an elements (loaded with XHR that give the problem
html
So normally this element should be invalid and a CSS selector of :invalid should match. but it's not the case because the browser seem to not run the validation check on loaded elements... !?
if we edit manually the input , for example removing one character then the validation process kick-in and the CSS selector work etc..
@crystal@feddit.de I didn't know about GrapheneOS too bad it only work Pixel phones (that are also owned by Google ! ) So If I'm against Google for all what they do https://degooglisons-internet.org/en/ I'll certainly not give them money !
(Finding and importing a phone is something you have to do even when using the stock OS.)
True, but you will do it multiple time if the phone that your looking for doesn't have an available ROM somewhere..
OMG that too bad !
Lemmy that is federated and LOSS use github to track the bugs :/
Too bad I don't have an account. So anyone, feel free to report this bug.
Thanks.
If the computer of the Visitor is already compromised ! your simulation can stop there I think...
My scenario assume that the visitor computer is not compromised.
But let say his traffic get intercepted. Sure a hacker can send his PubKey (2)
but in (3) the visitor (should) have already the PubKey of one (or few) verification server. So it should not be possible for an hacker to interfer with the communication (3) right ?
The key ( it's hash ) is compared with at least two "verification" server , if they all return a positive match, the visitor can use the pub key to initiate.
The "verification servers" grab the public key directly from the Web server.
Something worth reading regarding Systemd https://www.devuan.org/os/announce/ Cheers.