PGP技术有着众多的问题,已经过时。
替换方案如下表:
| 类别 | 工具名称 | 备注 |
|---|---|---|
| 加密文件 | age | 支持后量子加密 (PQC) |
| rage | age 的 Rust 实现版本 | |
| 私人通信 | Signal | 端到端加密通讯 |
| Wire | 端到端加密通讯 | |
| 签署 Git | SSH Signatures | 使用 Ed25519 算法 |
| 文件传输 | Magic Wormhole | 两台电脑之间加密传输 |
| SSH + rsync | 云服务器上更常用 | |
| 加密备份 | Tarsnap | 通常建议 |
| Borg | 使用了合理的加密技术 |
请勿使用任何形式的邮件加密
Email is insecure. Even with PGP, it’s default-plaintext, which means that even if you do everything right, some totally reasonable person you mail, doing totally reasonable things, will invariably CC the quoted plaintext of your encrypted message to someone else (we don’t know a PGP email user who hasn’t seen this happen). PGP email is forward-insecure. Email metadata, including the subject (which is literally message content), are always plaintext.