# Cryptographic Excitement

DevFeed: [Cryptographic Excitement](<https://devfeed.tech/articles/cryptographic-excitement-36740.md>)

Original publisher: [Read original article](<https://shostack.org/blog/cryptographic-excitement/>)

Author: Adam

Published: 2020-01-16T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [Cryptography](<https://devfeed.tech/topics/cryptography.md>), [Security, Privacy and Abuse Prevention](<https://devfeed.tech/topics/security-privacy-and-abuse-prevention.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Windows](<https://devfeed.tech/topics/windows.md>), [certificates](<https://devfeed.tech/topics/certificates.md>), [trust](<https://devfeed.tech/topics/trust.md>)

Tags: [certificates](<https://devfeed.tech/tags/certificates.md>), [cryptography](<https://devfeed.tech/tags/cryptography.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [git](<https://devfeed.tech/tags/git.md>), [trust](<https://devfeed.tech/tags/trust.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [windows](<https://devfeed.tech/tags/windows.md>)

## AI overview

This commentary discusses two cryptography-related developments: practical SHA-1 breaks affecting PGP and Git, and improper cryptographic certificate validation in Windows. It argues that these issues demonstrate the risks to software update channels and public trust in the NSA.

## Source excerpt

A couple big stories in the realm of cryptography that got me excited.