Skip to content

Better encryption algorithms #7411

@m3thm4th

Description

@m3thm4th

Describe feature

Trilium encrypts protected notes with AES-CBC-128.
There is no reason for staying with AES-128 when AES-256 is more secure for minimal computation cost.

Speaking of which, it would be much better to switch to XChaCha20-Poly1305 with Argon2id, which is considered the best for security and it's also lighter and faster than AES on devices that don't have AES-NI instructions set, like smartphones, tablets, all Apple silicon devices, all Snapdragon devices and all ARM and RISC-V based devices and SBCs like the Raspberry Pi.

Additional Information

No response

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions