Follow

Nitrokey Start – tool to extract its secret GPG key:

github.com/rot42/gnuk-extracto

– we didn't verify this tool (since we don't own a Nitrokey Start)
– the Nitrokey Start isn't tamper-resistant according to Nitrokey UG
– security tokens use PINs only for authorization of cryptographic operations, not for decryption of the private, secret GPG key
– the Nitrokey Start is the only Nitrokey with support for Ed25519 so far

@infosechandbook I'm glad my Librem Key is based on the Nitrokey Pro 2 and not the Nitrokey Start 😅

Sign in to participate in the conversation
Mastodon

mastodon.at is a microblogging site that federates with most instances on the Fediverse.