:kitty-cri-screm: :cia

  • viva_la_juche [they/them, any]
    ·
    edit-2
    3 years ago

    man only way you can really know for certain something is secure is to build it yourself

    and even then... lol

    • PorkrollPosadist [he/him, they/them]
      ·
      3 years ago

      I feel like by the time you're running an email box which is in your physical custody and have it tunneled through TOR to some public domain/proxy purchased by a straw-buyer, your data at rest may be very secure but you're throwing up hella smoke signals.

    • Alaskaball [comrade/them]M
      ·
      3 years ago

      I reckon the only secure method is building a completely alien os system with your own original code then keep it isolated from the main global systems aka make all your own shit from scratch.

      At that point I think training messenger pidgin would be a cheaper, faster and more secure system because nobody expects you to use fucking pidgins of all thingd in this day and age

    • SolidaritySplodarity [they/them]
      ·
      3 years ago

      Yes but even then email, as a technology, can't be fully built securely yourself.

      3 examples:

      1. ISPs block the port used for sending emails. You therefore need to have a third party do it for you, sending your emails through them. Only e2e-encrypted emails will be nominally safe in that arrangement.

      2. As part of spam-fighting efforts (supposedly), the big email providers will tend to block IPs that are sending emails if they aren't already part of a "trusted" set. So even if you could pay your ISP to open the port you want, you'd probably get banned by Gmail, etc. This restricts the set of providers you can use as well.

      3. Email is only as secure as the other parties that can read them. If you send an email to a buddy, even e2e encrypted, but they decide to forward their emails to Gmail (very common), well now Google can see everything and be subpoenaed.

      • viva_la_juche [they/them, any]
        ·
        3 years ago

        Hmm If I was sending sensitive illegal emails I would simply make them impossible to be read by the feds by making all the subjects “feds not allowed to read this pls”

        • SolidaritySplodarity [they/them]
          ·
          3 years ago

          The feds can't prosecute you if you put "are you a cop?" at the end of all your emails and they never reply, "yes"