astrosonic / forge

Forensics Oriented Reporting Group Under Encryption
GNU General Public License v3.0
0 stars 7 forks source link

No way to check directive integrity #4

Open gridhead opened 4 years ago

gridhead commented 4 years ago

The current way of checking integrity fails when DecryptionFailed exception occurs but what if an attacker replaces the existing message with the a new one after encrypting it with the target public key?