AIUI, it's just a configurable brute-force tool, so good passwords (or
-phrases) are better.  But ISTR there are some issues with zip's
security that make foo.zip much less secure than foo.zip.gpg even with
the same symmetric password.

If you're using Ubuntu, why not just install the package?

