@Tutanota will you finally implement autocrypt with their V2 ? PFS and PQC ? i know your own already do this but pgp support would allow us to talk to other people securely not only tuta user or the incredibly not convenient password.
#autocrypt #interoperability #encryption #email #security #eu
Unverschlüsselte E-Mails von Behörden sind Einbahnstraßen.
Der Staat schreibt mir unverschlüsselt. Ich soll vertrauen. Ich soll reagieren. Ich soll unterscheiden, ob das echt ist oder Phishing.
Technisch ist das nichts weiter als eine Postkarte mit Briefkopf. Jeder auf der Strecke kann mitlesen, kopieren, archivieren. Authentizität: Glückssache. Vertraulichkeit: Hoffnung. Haftung: natürlich beim Bürger.
Hinschreiben darf ich. Antworten auch. Aber einen geschlossenen Kommunikationskreis gibt es nicht. Inbound unsicher, outbound optional. Eine Einbahnstraße – mit Gegenwind.
Dass dabei Phishing explodiert, ist kein Unfall. Es ist Systemlogik.
Die Ironie: Lösungen existieren. Offene. Funktionierende. Autocrypt wäre benutzbar. PGP wäre möglich. Aber offen heißt: nicht kontrollierbar. Also politisch unerwünscht.
Stattdessen: Schulterzucken. „De-Mail ist tot.“ „Wir arbeiten an einer Lösung.“ Seit Jahren.
Man kann keine sichere Kommunikation verlangen, wenn man selbst nur Postkarten verschickt.
#ITSecurity #Behörden #Email #Verschlüsselung #Autocrypt #Einbahnstraße #Fediverse
Autocrypt Announces Product Release of Post-Quantum PKI Product, Pioneering PQC-enabled Solutions for Automotive OEMs
https://laotiantimes.com/2025/12/08/autocrypt-announces-product-release-of-post-quantum-pki-product-pioneering-pqc-enabled-solutions-for-automotive-oems/
#Infosec #Security #Cybersecurity #CeptBiro #Autocrypt #PostQuantum #PKIProduct #PQCenabledSolutions #AutomotiveOEM
Wer noch nicht mit Mail-Verschlüsselung arbeitet, könnte langsam mal darüber nachdenken, wenn jetzt der Bundeskanzler von "präventiver Telekommunikationsüberwachung" spricht (riecht nach einem neuen Branding für die Chatkontrolle).
Früher hätte ich jetzt erklärt, wie man PGP mit Thunderbird nutzt. Stattdessen empfehle ich seit einigen Jahren der Usability und Portabilität nur noch
https://delta.chat/de/
Installieren (für alle geläufigen mobilen und Desktop Systeme verfügbar), vorhandene Emailadresse eintragen, fertig.
Die Verschlüsselung ist voll automatisiert nutzbar (man kann weiterhin den bereits existierenden PGP Key verwenden).
Probiert es mal aus, kinderleicht!
@delta
#deltachat #Verschlüsselung #Email #PGP #autocrypt #EinsteigerFreundlich
Regarding @thunderbird, that is applicable to you too. In https://support.mozilla.org/en-US/kb/openpgp-thunderbird-howto-and-faq#w_does-thunderbird-support-autocrypt it is claimed: "Thunderbird does not support the Autocrypt philosophy that encryption should be fully automatic" Well, what is the advantage of an email non-being encrypted, always that the two senders support OpenPGP (and share the public keys) or whatever common encryption method? Of course, if one does not have a public key, I understand it is impossible to make automatic encryption.
Further, I have another question: in the link above claims: 'At this time, Thunderbird doesn't support the "Gossip" feature.'
However, on the Autocrypt webpage, it appears a table where it seems thunderbird supports gossip. (https://docs.autocrypt.org/dev-status.html). Then?
South Korea’s IPO market sees Autocrypt debut on KOSDAQ, with three firms opening retail subscriptions and three others launching institutional bookbuilding this week.
#YonhapInfomax #Autocrypt #KOSDAQ #IPO #RetailSubscription #Bookbuilding #Economics #FinancialMarkets #Banking #Securities #Bonds #StockMarket
https://en.infomaxai.com/news/articleView.html?idxno=71849
@a32 Ich sehe #autocrypt als die realistischste form von email Verschlüsselung die bei vielen Leuten ankommen kann. #DeltaChat basiert darauf, und zeigt das alles was man früher in einem 45min Crypto-Talk zum Verschlüsseln mit Enigmail und Thunderbird machen sollte fast vollständig weg-automatisiert werden kann. Breit aufgestellter software support ist bis eben auf DeltaChat Fehlanzeige. Leider.
South Korea’s IPO market sees GFC Life Science and NewN AI debut on KOSDAQ, while Autocrypt opens retail subscriptions and four firms set IPO prices via institutional bookbuilding.
#YonhapInfomax #IPO #KOSDAQ #GFCLifeScience #NewNAI #Autocrypt #Economics #FinancialMarkets #Banking #Securities #Bonds #StockMarket
https://en.infomaxai.com/news/articleView.html?idxno=69811
NuEn AI and Daishin Value REITs launch retail IPO subscriptions this week, while Autocrypt sets its offering price via institutional bookbuilding amid active South Korean capital markets.
#YonhapInfomax #NuEnAI #DaishinValueREITs #IPO #Autocrypt #Bookbuilding #Economics #FinancialMarkets #Banking #Securities #Bonds #StockMarket
https://en.infomaxai.com/news/articleView.html?idxno=68647
Kistron, a bimetal wire manufacturer, will list on South Korea's KOSDAQ on June 2, while vehicle software firm Autocrypt begins institutional bookbuilding for its IPO, highlighting robust activity in the country's capital markets.
#YonhapInfomax #Kistron #KOSDAQ #IPO #Autocrypt #InstitutionalBookbuilding #Economics #FinancialMarkets #Banking #Securities #Bonds #StockMarket
https://en.infomaxai.com/news/articleView.html?idxno=65721
The point is that DeltaChat didn't invent a new protocol, start something from scratch and write the software for it from the first line. As there is a saying:
Good programmers write programs from scratch. Great programmers find an already existing program and use it as a base.
#DeltaChat didn't invent #Email, #PGP, #autocrypt or new technology for #webxdc. Even WebXDC's real time channels don't use a technology invented by DC.
In 2014 @matthew_d_green wrote "What's the matter with PGP?" https://blog.cryptographyengineering.com/2014/08/13/whats-matter-with-pgp/
We'd like to humbly report completion of its main suggestions. Better late than never! :)
- Key management is automatic through #securejoin and #autocrypt protos
- #chatmail relays form an end-to-end encrypted email enclave interoperable with any e-mail address using proper end-to-end encryption.
- RFC 9580 "cryptorefresh" is rolled out in current releases and will be activated soon.
One to go? ;)
@lns Should but they never will, with good reason. They don't really need to, for email encryption at least there's #DeltaChat that non-technical people have a better chance of learning. Yes, it only uses a subset of #PGP called #Autocrypt, but if you really want to use PGP, there are much better tools than #GPG like: #Thunderbird, #Mailvelope and #Kleopatra. I know some of these are front-ends for GPG.
@qgustavor @adbenitez you can add as many profiles/accounts as you like, some of them can be classic email accounts that can email everyone that uses email, even if they don't support encryption. If they have a client with #autocrypt support (or deltachat), then the conversation is encrypted as soon as they answer you (outgoing messages contain your pubkey, there is no key server).
Go to the profile switcher -> Add Profile -> new profile -> use different server -> classical email login
@sardon not that we know off. As far as we know thunderbirds current extension model does not allow even an #autocrypt compliant plugin let alone all the rest that delta offers. #enigmail used to offer full autocrypt support but when thunderbird changed the plugin model and integrated openpgp into thunderbird they went back to the old idea of "users have to consciously manage their encryption keys" ... An unfortunate old tradition. We aim for modern usable security like signal delivers.
看起來 #mailvelope 對 #pgp #autocrypt 的支援還是不行,我看起來 S/MIME encrypt-subject 也都沒有支援?
官網沒有講得很清楚,但 s/mime 的 issue 開著,官網也直接寫不支援加密主旨。
autocrypt 則是寫有做,但又標沒有 web mail provider 支援, autocrypt.org 也沒有列,不太懂是什麼情況,可能要實際用一次。
如果只是 autocrypt header 沒做,金鑰有發布的話還能靠 mailvelope 自家的 key server 找,但不支援 s/mime 的話 autocrypt 也不可能了。
畢竟 mailvelope 是基於 web-mail ,不能直接讀 header,很多功能做不到。
如果有 mailvelope 使用者歡迎補充。
@ryanleesipes still #autocrypt support 🙃
@hund @coffe I think #DeltaChat using #Autocrypt and #Securejoin may have solved many of the usability issues with #pgp.
People seem to have forgotten (or simply weren't around at the time) that #decentralized #e2ee has been available to the public since the early 90's. It's just that it was too complicated to use for most people. That's where #autocrypt and #delta.chat come in. You can build all the #decentralized and #distributed solutions you want, unless an entity cannot (economically) afford to block it, it will be blocked, no matter what you believe. So stick with #email #smtp #imap and build on that.