Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. I'm just a girl, incrementing the counter on the number of times I have been sent a plaintext email from a Protonmail user telling me that the message is encrypted.

I'm just a girl, incrementing the counter on the number of times I have been sent a plaintext email from a Protonmail user telling me that the message is encrypted.

Scheduled Pinned Locked Moved Uncategorized
49 Posts 36 Posters 63 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • justinderrick@mstdn.caJ justinderrick@mstdn.ca

    @CAWguy @wcbdata @evacide Most eMail is encrypted in transit across the network/internet. SMTPS (SSL/TLS encrypted mail delivery using certificates for verifying identities & negotiating encryption keys) has been a thing for a long time.

    It's the eMail provider that's the issue. Once the message is received, the server itself has a plain-text copy, even if the backend storage has filesystem-level encryption.

    The real solution is for all eMail clients to have PGP/GPG, with a directory server that publishes public keys.

    That way you can query the directory server with my eMail address, receive my public key, then encrypt your message with that key, and then it traverses all of the internet plumbing in an encrypted format that only the intended recipient can decrypt.

    The percentage of people who do this is very, very small in the context of the entire internet.

    cawguy@mstdn.caC This user is from outside of this forum
    cawguy@mstdn.caC This user is from outside of this forum
    cawguy@mstdn.ca
    wrote last edited by
    #39

    @JustinDerrick Thanks for the long description. So would this small percentage of people using this setup be due to a network effect/getting friends to comply issue, or do most people simply not care about privacy?

    justinderrick@mstdn.caJ 1 Reply Last reply
    0
    • cawguy@mstdn.caC cawguy@mstdn.ca

      @JustinDerrick Thanks for the long description. So would this small percentage of people using this setup be due to a network effect/getting friends to comply issue, or do most people simply not care about privacy?

      justinderrick@mstdn.caJ This user is from outside of this forum
      justinderrick@mstdn.caJ This user is from outside of this forum
      justinderrick@mstdn.ca
      wrote last edited by
      #40

      @CAWguy You'd have to get everyone you know to leave their webmail providers, and only receive eMail with specific physical devices (phone / laptop / desktop). I haven't been able to get anyone I know to give up their webmail accounts, even by offering them free hosting and vanity addresses on my mail server.

      cawguy@mstdn.caC 1 Reply Last reply
      0
      • justinderrick@mstdn.caJ justinderrick@mstdn.ca

        @CAWguy You'd have to get everyone you know to leave their webmail providers, and only receive eMail with specific physical devices (phone / laptop / desktop). I haven't been able to get anyone I know to give up their webmail accounts, even by offering them free hosting and vanity addresses on my mail server.

        cawguy@mstdn.caC This user is from outside of this forum
        cawguy@mstdn.caC This user is from outside of this forum
        cawguy@mstdn.ca
        wrote last edited by
        #41

        @JustinDerrick Those are definitely many steps too far! I merely suggested using Signal at a small non-profit where I volunteer, and I could see the eye rolls at me.

        justinderrick@mstdn.caJ 1 Reply Last reply
        0
        • cawguy@mstdn.caC cawguy@mstdn.ca

          @JustinDerrick Those are definitely many steps too far! I merely suggested using Signal at a small non-profit where I volunteer, and I could see the eye rolls at me.

          justinderrick@mstdn.caJ This user is from outside of this forum
          justinderrick@mstdn.caJ This user is from outside of this forum
          justinderrick@mstdn.ca
          wrote last edited by
          #42

          @CAWguy Yeah, many years ago, I presented info about Signal to a nearby non-profit. Their President still sends stuff through SMS, even after having made it a requirement for their entire team to start using Signal.

          The inertia of bad habits is very difficult to overcome.

          1 Reply Last reply
          0
          • evacide@hachyderm.ioE evacide@hachyderm.io

            I'm just a girl, incrementing the counter on the number of times I have been sent a plaintext email from a Protonmail user telling me that the message is encrypted.

            larsrohr@noc.socialL This user is from outside of this forum
            larsrohr@noc.socialL This user is from outside of this forum
            larsrohr@noc.social
            wrote last edited by
            #43

            @evacide rot26-encrypted

            1 Reply Last reply
            0
            • futureisfoss@fosstodon.orgF futureisfoss@fosstodon.org

              @jjacobsson @evacide

              "Military grade encryption" is another one 😂 Actually anything "military-grade" is almost always used as a marketing term, not just in tech products.

              Personally I always try to use noncommercial alternatives where I can, like Mastodon for example. It's so much saner when they're not trying to sell you something, like the listings here - https://www.directory.trade-free.org

              And people should donate to these good projects to support them.

              N This user is from outside of this forum
              N This user is from outside of this forum
              nicolas17@social.treehouse.systems
              wrote last edited by
              #44

              @futureisfoss @jjacobsson @evacide A friend is in the US navy and told me "military grade" means "outdated, hard to use, developed by the lowest bidder contractor".

              1 Reply Last reply
              0
              • evacide@hachyderm.ioE evacide@hachyderm.io

                I'm just a girl, incrementing the counter on the number of times I have been sent a plaintext email from a Protonmail user telling me that the message is encrypted.

                masek@infosec.exchangeM This user is from outside of this forum
                masek@infosec.exchangeM This user is from outside of this forum
                masek@infosec.exchange
                wrote last edited by
                #45

                @evacide This message reaches you encrypted with the devilish rot0 algorithm.

                1 Reply Last reply
                1
                0
                • evacide@hachyderm.ioE evacide@hachyderm.io

                  I'm just a girl, incrementing the counter on the number of times I have been sent a plaintext email from a Protonmail user telling me that the message is encrypted.

                  mainframed767@infosec.exchangeM This user is from outside of this forum
                  mainframed767@infosec.exchangeM This user is from outside of this forum
                  mainframed767@infosec.exchange
                  wrote last edited by
                  #46

                  @evacide @zarchasmpgmr if we all believe hard enough maybe it will come true

                  1 Reply Last reply
                  0
                  • evacide@hachyderm.ioE evacide@hachyderm.io

                    I'm just a girl, incrementing the counter on the number of times I have been sent a plaintext email from a Protonmail user telling me that the message is encrypted.

                    nuintari@mastodon.bsd.cafeN This user is from outside of this forum
                    nuintari@mastodon.bsd.cafeN This user is from outside of this forum
                    nuintari@mastodon.bsd.cafe
                    wrote last edited by
                    #47

                    @evacide Be a large pile of nickels by now, huh?

                    1 Reply Last reply
                    0
                    • xenogon@sunny.gardenX This user is from outside of this forum
                      xenogon@sunny.gardenX This user is from outside of this forum
                      xenogon@sunny.garden
                      wrote last edited by
                      #48

                      @riverpunk

                      Same problem with Tuta.

                      for email, I pretty much settle for 'not automatically surveilled', and use something else if it needs to be better than that.

                      1 Reply Last reply
                      0
                      • evacide@hachyderm.ioE This user is from outside of this forum
                        evacide@hachyderm.ioE This user is from outside of this forum
                        evacide@hachyderm.io
                        wrote last edited by
                        #49

                        @riverpunk You have come to the correct conclusion, yes. In the meantime, I do need to come up with suggestions for what people should do about sensitive email and I have to cut through a lot of misleading advertising claims in order to do it.

                        1 Reply Last reply
                        0
                        Reply
                        • Reply as topic
                        Log in to reply
                        • Oldest to Newest
                        • Newest to Oldest
                        • Most Votes


                        • Login

                        • Login or register to search.
                        • First post
                          Last post
                        0
                        • Categories
                        • Recent
                        • Tags
                        • Popular
                        • World
                        • Users
                        • Groups