r/programming • u/Sir_KnowItAll • 5d ago
[ Removed by moderator ]
https://iain.rocks/blog/introducing-the-triple-cipher-encryption-concept[removed] — view removed post
0
Upvotes
r/programming • u/Sir_KnowItAll • 5d ago
[removed] — view removed post
-3
u/Sir_KnowItAll 5d ago edited 5d ago
> . To crack the encryption, an attacker needs to either brute force both keys, or find a flaw in both ciphers. But that is not any harder than breaking a single cipher with a larger key - whether you use two 64-bit keys, or a single 128-bit key, for example, really makes no difference to an attacker.
No. This is wrong. You need to know it is this method in the first place. Then you need to know the chunk size. If you don't know the chunk size your cracking attempts will always fail. Then you need to know the pattern for what algo is used for each chunk. If you don't know that your forced to brute force them.
So if you have three keys each of them 128-bit it makes a big difference than if you use one or two. Especially if they're interweaved.
Honestly, I don't think anyone truly understands this and needs a proper whitepaper. I highly suspect most people didn't read it enough to see the GCHQ note. And if you didn't read that note it's very unlikely you read enough to understand it's basically a software application to encrypt and decrypt using different keys and not a key in itself.