Interesting article on stealing encryption keys


I'm calling bullshit. All that thing can potentially measure is activity. In other words, you need to physically attach to it as it's decrypting something and presumably nog be doing anything else. Also, supposedly the attack can be thwarted in code since GnuPG has a patch for this which, given the description, is likely to add a few pauses in the process to level the activity again. If it works (if!) it's a neat trick but nothing useful in the real world.

