Salta al contenuto
0
  • Home
  • Piero Bosio
  • Blog
  • Mondo
  • Fediverso
  • News
  • Categorie
  • Recenti
  • Popolare
  • Tag
  • Utenti
  • Home
  • Piero Bosio
  • Blog
  • Mondo
  • Fediverso
  • News
  • Categorie
  • Recenti
  • Popolare
  • Tag
  • Utenti
Skin
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Predefinito (Nessuna skin)
  • Nessuna skin
Collassa

Piero Bosio Social Web Site Personale Logo Fediverso

Social Forum federato con il resto del mondo. Non contano le istanze, contano le persone
  1. Home
  2. Categorie
  3. Senza categoria
  4. 🔐 Every unencrypted email is readable by 10+ entities and stored forever.

🔐 Every unencrypted email is readable by 10+ entities and stored forever.

Pianificato Fissato Bloccato Spostato Senza categoria
webkeydirectorywkdemailencryptionprivacyinfoseccryptographyopenpgp
44 Post 12 Autori 0 Visualizzazioni
  • Da Vecchi a Nuovi
  • Da Nuovi a Vecchi
  • Più Voti
Rispondi
  • Topic risposta
Effettua l'accesso per rispondere
Questa discussione è stata eliminata. Solo gli utenti con diritti di gestione possono vederla.
  • Nicola Fabianoundefined Nicola Fabiano

    @seecurity @Fr333k You’re right that nothing in email crypto is ever “simple” — WKD doesn’t change the complexity of OpenPGP itself. However, it does solve a particular problem that has long blocked adoption: key discovery.

    That doesn’t contradict the analogy with HTTPS — it’s about lowering friction, not erasing complexity.
    And yes, S/MIME can be smoother in some contexts, but WKD gives domains a way to make OpenPGP more usable in practice.

    Sebastian Schinzelundefined Questo utente è esterno a questo forum
    Sebastian Schinzelundefined Questo utente è esterno a questo forum
    Sebastian Schinzel
    scritto ultima modifica di
    #41

    @nicfab @Fr333k Email crypto is extremely complex and because of this, has plenty of attack surface. We published close to 10 papers in the last seven years attacking email and email encryption with OpenPGP and S/MIME.

    I am at the point where I find recommending email encryption to be actively harmful. Metadata leaks all over the place, crypto from the '90s, plaintext fallbacks everywhere, user hate it, in particular the gnupg devs are very toxic, mail client developers lack time and (too often) expertise to implement it properly.

    Just use Signal. If you got budget, build an app on top of Signal. Heck, just use WhatsApp. Just don't even try to send sensitive information with email encryption.

    Nicola Fabianoundefined 1 Risposta Ultima Risposta
    • Sebastian Schinzelundefined Sebastian Schinzel

      @nicfab @Fr333k Email crypto is extremely complex and because of this, has plenty of attack surface. We published close to 10 papers in the last seven years attacking email and email encryption with OpenPGP and S/MIME.

      I am at the point where I find recommending email encryption to be actively harmful. Metadata leaks all over the place, crypto from the '90s, plaintext fallbacks everywhere, user hate it, in particular the gnupg devs are very toxic, mail client developers lack time and (too often) expertise to implement it properly.

      Just use Signal. If you got budget, build an app on top of Signal. Heck, just use WhatsApp. Just don't even try to send sensitive information with email encryption.

      Nicola Fabianoundefined Questo utente è esterno a questo forum
      Nicola Fabianoundefined Questo utente è esterno a questo forum
      Nicola Fabiano
      scritto ultima modifica di
      #42

      @seecurity @Fr333k

      It’s true: email crypto has flaws and decades of technical debt. But saying “just use Signal or WhatsApp” trades one problem for another — centralized silos controlled by single entities, which is even worse for long-term resilience, governance, and privacy.

      WKD won’t magically fix email, but it removes real barriers and raises the baseline. Abandoning open, federated protocols entirely in favor of walled gardens is not a sustainable path.

      1 Risposta Ultima Risposta
      • Nicola Fabianoundefined Nicola Fabiano

        🔐 Every unencrypted email is readable by 10+ entities and stored forever.

        Web Key Directory (WKD) changes this: automatic encryption using your domain name. No manual keys. No central servers. Just cryptographic certainty.

        WKD makes encrypted email as simple as HTTPS made web browsing secure.

        https://www.nicfab.eu/en/posts/wkd2/

        #WebKeyDirectory #WKD #EmailEncryption #Privacy #InfoSec #Cryptography #OpenPGP

        ⁉️undefined Questo utente è esterno a questo forum
        ⁉️undefined Questo utente è esterno a questo forum
        ⁉️
        scritto ultima modifica di
        #43

        @nicfab I already have a webserver for my website using my own domain name, do I need a second one or is it possible to combine this somehow?

        Really interesting, first I hear of it. Thanks for sharing it!

        Nicola Fabianoundefined 1 Risposta Ultima Risposta
        • ⁉️undefined ⁉️

          @nicfab I already have a webserver for my website using my own domain name, do I need a second one or is it possible to combine this somehow?

          Really interesting, first I hear of it. Thanks for sharing it!

          Nicola Fabianoundefined Questo utente è esterno a questo forum
          Nicola Fabianoundefined Questo utente è esterno a questo forum
          Nicola Fabiano
          scritto ultima modifica di
          #44

          @chiefbongo WKD is for a single domain name only. They cannot be combined, but you can have multiple WKD configurations for numerous domain names on the server.

          1 Risposta Ultima Risposta
          Rispondi
          • Topic risposta
          Effettua l'accesso per rispondere
          • Da Vecchi a Nuovi
          • Da Nuovi a Vecchi
          • Più Voti


          • 1
          • 2
          • 3
          Feed RSS
          🔐 Every unencrypted email is readable by 10+ entities and stored forever.

          Gli ultimi otto messaggi ricevuti dalla Federazione
          • Paolo Amorosoundefined
            Paolo Amoroso

            @psychotimmy We long lost that innoncence.

            per saperne di più

          • Snow  :gnu: :tux: :debian:undefined
            Snow :gnu: :tux: :debian:

            @glitch Ho studiato.😉

            https://www.digitalocean.com/community/tutorials/how-fail2ban-works-to-protect-services-on-a-linux-server

            per saperne di più

          • quinta - Stefano Quintarelliundefined
            quinta - Stefano Quintarelli

            Trump (aka “Donnie Trumpeone”) says Microsoft should fire its global affairs president Lisa Monaco | Reuters https://blog.quintarelli.it/2025/09/trump-says-microsoft-should-fire-its-global-affairs-president-lisa-monaco-reuters/

            per saperne di più

          • julianundefined
            julian

            shmok@mastodon.bsd.cafe yes, ATProto (commonly referred to by its main implementor, BlueSky), and Nostr.

            Those are the two main ones that are often discussed.

            per saperne di più

          • quinta - Stefano Quintarelliundefined
            quinta - Stefano Quintarelli

            Disorders in “War ravaged Portland” https://blog.quintarelli.it/2025/09/disorders-in-war-ravaged-portland/

            per saperne di più

          • Ibrahim Rabah🇵🇸✌🏻undefined
            Ibrahim Rabah🇵🇸✌🏻

            @Majden12

            Pray for us and for our children.
            We hope that this cursed war, which has spared neither people, nor trees, nor stones, will come to an end💔🙏🏻

            per saperne di più

          • Elena Brescacinundefined
            Elena Brescacin

            @Em0nM4stodon @_elena Remember. Smart glasses, for a blind user, are a partial replacement of sight. With no doubt, less "invasive" than hands (touching people is UNPOLITE!) but I honestly think I'm surrounded by creeps. I can't prove whether or not men around me are looking at my breasts or my backside while I'm walking. If they silently lick their lips, etc, without any kind of consent from me. Then, am I the creep because I wear glasses to see the world? [random swearwords]

            per saperne di più

          • omarundefined
            omar

            @stefano yay o/

            per saperne di più
          Mastodon
          Powered by NodeBB Contributors
          Post suggeriti
          • Redhotcyberundefined

            🔥 SONO UFFICIALMENTE APERTE LE ISCRIZIONI!

            Seguito Ignorato Pianificato Fissato Bloccato Spostato Senza categoria redhotcyber formazione cybersecurity darkweb cyberthreatintelligenc ethicalhacking infosec intelligence
            1
            1
            0 Votazioni
            1 Post
            0 Visualizzazioni
            Nessuno ha risposto
          • AV :tux: :linuxmint:undefined

            https://ppc.land/microsoft-cant-protect-french-data-from-us-government-access/#microsoft #MicrosoftAzure #privacy

            Seguito Ignorato Pianificato Fissato Bloccato Spostato Senza categoria microsoft microsoftazure privacy
            1
            0 Votazioni
            1 Post
            0 Visualizzazioni
            Nessuno ha risposto
          • Em :official_verified:undefined

            I know there's a general "cause fatigue" with the current state of the world, and I feel it too.

            Seguito Ignorato Pianificato Fissato Bloccato Spostato Senza categoria chatcontrol privacy democracy humanrights masssurveillance stopscanningme eupol ukpol
            1
            0 Votazioni
            1 Post
            3 Visualizzazioni
            Nessuno ha risposto
          • Nicola Fioretti :gnu: :linux:undefined

            🇪🇪 L’#Estonia dice NO alla proposta danese di “chat control” in #UE.

            Seguito Ignorato Pianificato Fissato Bloccato Spostato Senza categoria estonia privacy
            1
            1
            0 Votazioni
            1 Post
            5 Visualizzazioni
            Nessuno ha risposto
          • Accedi

          • Accedi o registrati per effettuare la ricerca.
          • Primo post
            Ultimo post