Never forget GPG

Never forget GPG

...

The Web of Trust is practically dead and can be considered a failure. The question arises on how the trust in PGP keys can be restored. Some people argue the community should look at mobile messenger services.

...

“We’ve known for a decade this attack is possible. It’s now here and it’s devastating” rjh

...

The spam signatures and also those of the sister of your friends - are no longer imported into the local keychain. This doesn’t affect manually imported keys.

This solves the signature spam abuse for GPG users. But it comes with a hefty price tag.

...

https://inversegravity.net/2019/web-of-trust-dead/