Cipher Preferences Ignored for Kyber keys?

Robert J. Hansen rjh at sixdemonbag.org
Tue Jul 28 14:48:54 CEST 2026


> 160 bits!) was a later optimization of ElGamal by NSA.  2. The RSA
> security conjecture had not yet accumulated enough evidence to be
> trusted, specifically there was no hard evidencethat breaking an RSA
> key was as NP-hard as the discrete logarithm problem.

Neither RSAP nor DLP are believed to be NP-Hard.



More information about the Gnupg-users mailing list