Earlier quoted context omitted.
So the employees of their "support centers in [California]"[0] can't be blackmailed and gagged? Or do they not have access to the systems? [0] https://protonmail.com/about
They can be blackmailed but can't be gagged as any request for a person's data (including access to it) from a Swiss company MUST go through Swiss court. And even gag orders can't compel someone to break the law. Same situation as three letter agencies requesting EU data from Microsofts' datacenter in Ireland, which whilst it is an American company (and thus they are obliged to deliver by law) is illegal under EU and…
Lavabit Reloaded
171–180 of 240 posts
Re: Lavabit Reloaded
#172Re: Lavabit Reloaded
#173Re: Lavabit Reloaded
#174Earlier quoted context omitted.
So the employees of their "support centers in [California]"[0] can't be blackmailed and gagged? Or do they not have access to the systems? [0] https://protonmail.com/about
They can be blackmailed but can't be gagged as any request for a person's data (including access to it) from a Swiss company MUST go through Swiss court. And even gag orders can't compel someone to break the law. Same situation as three letter agencies requesting EU data from Microsofts' datacenter in Ireland, which whilst it is an American company (and thus they are obliged to deliver by law) is illegal under EU and…
Laws are a high latency side-chain of authority; a guide perhaps; and for some a business opportunity.
And then we have Organised Crime, moles, plants; informants, sympathesiers, casual snitches, quadruple agents, the desperate, and machine learning eating meta-data for breakfast.
If you've got something to hide "it's not legal for support staff to [whatever]" is most definitely not a security measure.
Re: Lavabit Reloaded
#175Sensible choices in a nutshell: If you live in a 5-eyes nation, don't use or buy services hosted or operated from a 5 eyes nation. If you don't live in a 5 eyes nation, only use services hosted and operated from Iceland or Switzerland.( Nation states are the #1 threat, and your own nation is always the most dangerous one. )
Schweiz is in the EU. We are subject to its data-retention laws. Consider Norway.
Re: Lavabit Reloaded
#176If you NEED encryption, don't use email. From: https://blog.fastmail.com/2016/12/10/why-we-dont-offer-pgp/ What's the tradeoff? If the server doesn't have access to the content of emails, then it reverts to a featureless blob store: Search isn't possible Previews can't be calculated If you lose your private key, we can't recover your email Spam checking on content isn't possible To access mail on multiple devices, th…
>Spam checking on content isn't possible How does encrypted spam work? Spammers encrypt message with your public key?
Theoretically, a spammer could scan the public keyservers for email addresses and public PGP keys and then send encrypted spam to all of those people. If ever a well targeted spam mailshot was sent, that would be it. But would you really want to get on the bad side of thousands of tech nerds?
Re: Lavabit Reloaded
#177Earlier quoted context omitted.
> The server stores an encrypted index, and the client walks it (requesting parts as needed). It's going to little slower, and a lot more complex but it's doable. Going on a tangent, but do you know of any services that offer such a thing?
https://cryptag.org
Re: Lavabit Reloaded
#178Earlier quoted context omitted.
They can be blackmailed but can't be gagged as any request for a person's data (including access to it) from a Swiss company MUST go through Swiss court. And even gag orders can't compel someone to break the law. Same situation as three letter agencies requesting EU data from Microsofts' datacenter in Ireland, which whilst it is an American company (and thus they are obliged to deliver by law) is illegal under EU and…
You seem to have a lot of faith in the law and legal process, and assume everyone else does. Laws are a high latency side-chain of authority; a guide perhaps; and for some a business opportunity. And then we have Organised Crime, moles, plants; informants, sympathesiers, casual snitches, quadruple agents, the desperate, and machine learning eating meta-data for breakfast. If you've got something to hide "it's not leg…
Re: Lavabit Reloaded
#179Earlier quoted context omitted.
They can be blackmailed but can't be gagged as any request for a person's data (including access to it) from a Swiss company MUST go through Swiss court. And even gag orders can't compel someone to break the law. Same situation as three letter agencies requesting EU data from Microsofts' datacenter in Ireland, which whilst it is an American company (and thus they are obliged to deliver by law) is illegal under EU and…
You seem to have a lot of faith in the law and legal process, and assume everyone else does. Laws are a high latency side-chain of authority; a guide perhaps; and for some a business opportunity. And then we have Organised Crime, moles, plants; informants, sympathesiers, casual snitches, quadruple agents, the desperate, and machine learning eating meta-data for breakfast. If you've got something to hide "it's not leg…
Re: Lavabit Reloaded
#180Sensible choices in a nutshell: If you live in a 5-eyes nation, don't use or buy services hosted or operated from a 5 eyes nation. If you don't live in a 5 eyes nation, only use services hosted and operated from Iceland or Switzerland.( Nation states are the #1 threat, and your own nation is always the most dangerous one. )
Schweiz is in the EU. We are subject to its data-retention laws. Consider Norway.