Live data from Hacker News

Lavabit abruptly shuts down

lavabit.com

431–440 of 671 posts

Re: Lavabit abruptly shuts down

#431
post #24

I'm in the process of moving any Saas offerings I use off USA-affiliated companies, but it's actually more difficult than I first thought. I believe there might even be a very profitable market in simply duplicating the functionality of Saas offerings at a higher price with security/privacy guarantees in Germany/HK/etc. Might be the next hot business to be in? You'd be surprised as to the number of people seeking alt…

> I'm in the process of moving any Saas offerings I use off USA-affiliated companies, but it's actually more difficult than I first thought. You should try finding a SSL cert retailer that's outside of the US. The only ones I could find that would actually sell me certs without a phone call charged at least $200 for a basic certificate. https://swisssign.com/en were the most sensible looking ones I could find.

There's StartCom (StartSSL) from Israel. Have you tried them? They even offer free SSL certs, by the way.

Re: Lavabit abruptly shuts down

#432
post #216

Earlier quoted context omitted.

The problem is that all of the people you correspond with use gmail, which participates in PRISM. No amount of transport encryption or storage encryption on your own end will stop Google from sharing that data with US authorities.

Well anything that hits an MTA or MDA and sits in a queue somewhere on rust is liable to be snagged. That's usually every host between you and the destination MUA. The whole protocol and mail delivery system is fucking hopeless. As an ex-ISP mail architect and ex-operations guy, I hope the whole existing email protocol suite and architecture dies in a fire.

The problem is that, left to market forces, we would end up with an email solution that looks like (or is) Facebook.

Re: Lavabit abruptly shuts down

#433
post #15

For the unfamiliar: Lavabit was a webmail service, that (claimed to) encrypt emails in such a way that they literally did not have access to the content stored on their own servers. The linked email would lend some credence to those claims. It was originally designed in contrast to gmail scanning your email for targeted advertising, but my imperfect memory says that their system should also have been resilient to "we…

"encrypt emails in such a way that they literally did not have access to the content stored on their own servers"

how is that possible? I'm curious to know as to how they achieved that technically. I mean if the user is reading an email in their browser, then it would've had to have been created on the server first.

Re: Lavabit abruptly shuts down

#434
post #234

Earlier quoted context omitted.

I wonder if there is some historical regularity here. After all, my own country, "Das Land der Dichter und Denker" turned on its "Dichter und Denker" when it was at (or close to) the apex of intellectual achievement.

Yes, there is a strong parallel between pre-Nazi Germany and current USA. Of course, Americans will not literally follow Nazi ideology. What we see in America is an increasing merger between industry and government. Finance is the most regulated sector; hence "too big to fail" and all the exploits pulled by big banks. Telecom is almost completely government controlled (through the graning of regulatory monopolies). T…

"Finance is the most regulated sector; hence "too big to fail" and all the exploits pulled by big banks."

The problem with finance is that we didn't have the right regulations in place because big banks lobbied to get them taken off the books. Canada's financial industry is heavily regulated and they haven't had a banking crisis in 150 years.

http://www.youtube.com/watch?v=a21n_VzHI_o

"American Progressive movement occurred in parallel, but to a must greater extent, in Weimar Germany. American Neo-conservativism is Progressivism in a right-wing flavor. The modern USA is Weimar Germany all over again."

This just reeks of ignorance. Progressivism and fascism are on the opposite sides of the political spectrum. In fact, fascists tried to overthrow widely celebrated progressive Franklin Roosevelt.

http://en.wikipedia.org/wiki/Business_Plot

Just because progressives think that we shouldn't have laissez-faire capitalism, doesn't mean they support a surveillance state.

Re: Lavabit abruptly shuts down

#435
post #348

Earlier quoted context omitted.

> we're taking anti-corrective action instead of corrective action at every step That's not true. The Congress almost defunded the NSA recently. It was a far closer thing than anyone in the establishment suspects. In the end, we are a country that values it's privacy, values small government, and we'll assert that sooner or later. It may be later. But hey, it took a long time for us to figure out slavery, women's rig…

Maybe there will be a turnaround, but given that the education system has long been (and continues to be) controlled by Progressives, it doesn't seem that likely to me. But yes, the USA is the only nation founded on the principles of individual freedom, and many people remember that, so there is a chance.

Education is controlled by corporate interest and always will be. In fact the education system was founded by wealthy industrialists so they could churn out great factory workers. To learn more about this read Seth Godin's Linchpin. It's not profitable to have a smart populous.

George Carlin sums it up here: http://www.youtube.com/watch?v=AMqJvhmD5Yg

Re: Lavabit abruptly shuts down

#436
post #216

Earlier quoted context omitted.

The problem is that all of the people you correspond with use gmail, which participates in PRISM. No amount of transport encryption or storage encryption on your own end will stop Google from sharing that data with US authorities.

Well anything that hits an MTA or MDA and sits in a queue somewhere on rust is liable to be snagged. That's usually every host between you and the destination MUA. The whole protocol and mail delivery system is fucking hopeless. As an ex-ISP mail architect and ex-operations guy, I hope the whole existing email protocol suite and architecture dies in a fire.

Your username combined with your claimed former work experience is utterly hilarious--thank you for the levity in this dark time.

Re: Lavabit abruptly shuts down

#437

This is infuriating, and the worst part is that a clear solution isn't in sight. Sure, we can fight this in the courts, and a few secret programs might get shut down, but operations will just continue under a different name. We can encrypt our data, move our services and data offshore, but that just paints a big target on our heads - doesn't actually address the fundamental issue. This is supposed to be a democracy,…

People aren't using the first amendment while they can -- and by that I mean that they 1) do not engage each other on politics nearly enough; 2) when they do, they are generally not very honest or rational.

In short -- on average and with exceptions, we deserve what we are getting.

Re: Lavabit abruptly shuts down

#438
post #368

Earlier quoted context omitted.

Political change on it's own won't work. They will still keep the infrastructure in case they need to spy on someone(with a court order). But if they have the infrastructure , conceptually it's just a press of button again to full blown illegal surveillance.

there has been infrastructure to read snail mail contents for 200 years. Doesn't matter, the US Gov isn't routinely reading snail mail because of politics. I think he's right, make it a political issues. Actually, more: make it political issue, encryption issue, hosting issue, social issue (denied nsa contracting recently based on Snowden), I mean total war - make their life as difficult as possible using all means p…

Mass reading of snail-mail has traditionally been a question of manpower. You don't just flip the switch on that without anybody noticing.

Re: Lavabit abruptly shuts down

#439
post #15

For the unfamiliar: Lavabit was a webmail service, that (claimed to) encrypt emails in such a way that they literally did not have access to the content stored on their own servers. The linked email would lend some credence to those claims. It was originally designed in contrast to gmail scanning your email for targeted advertising, but my imperfect memory says that their system should also have been resilient to "we…

"encrypt emails in such a way that they literally did not have access to the content stored on their own servers" how is that possible? I'm curious to know as to how they achieved that technically. I mean if the user is reading an email in their browser, then it would've had to have been created on the server first.

It's just how encryption works; you don't store the plain passwords or keys the users submit to decrypt their stuff, thus you have no way to access it.

Re: Lavabit abruptly shuts down

#440
post #63

I really would want to donate to them. But you know I kind of feel weary now connecting my PayPal Account with them. I hope some kind of organisation is standing up for them. Like EFF or something. Not because I don't trust them. But because I don't trust the NSA. They might flag me as a terrorist or something. Then again I'm probably already on this list for having some technical involvment with something the US gov…

They need to set up a Bitcoin address.

Things like this remind me of the importance of anonymous (or pseudonymous) payment.

Post reply on HN