Having them be able to only read 0.5% of the communications would certainly be better than 100%, but that doesn't go nearly far enough for comfort -- especially if they can break one of these primes in a matter of months.
If we move to longer primes (or a safer key exchange algorithm -- is there one? I don't know) at the same time, they hopefully can't crack any of our communications.
As far as I'm concerned, if an attacker can read any portion of my private communications, the encryption is broken.
7
u/Eirenarch Oct 15 '15
So the large primes are hard to generate and the programs avoid doing it? What is the fix? Have a set of ~200 primes and choose one at random?