20 ms·
Encryption is a necessity
- chrissem 11y agoI agree...and with services like Keybase.io it's getting easier to use.
- realusername 11y ago[EDIT: Thanks, I have one now :)]. Does anyone has an invite for Keybase by the way ? I've signed-up a while ago but the queue is probably to long. It seems a really promising service. On my case, I've just migrated my domains to use letsencrypt, even if it's just in beta, it's so so much easier compared to 100% manual previous solutions ! Even if it's not domains with a huge trafic, I feel I'm doing my part to help !
- aban 11y agoSure, I just sent you one to the email address on your profile.
- mattkrea 11y agoYou don't have another do you? I've been waiting for my invite for over a year now. :-/
- taylorwc 11y agoI just sent one to the address on your profile
- mattkrea 11y agoThanks so much
- deleted 11y ago[deleted]
- fuhrysteve 11y agoAny more?? I haven't been waiting a year - but I've been waiting eagerly if anyone has any!
- exo762 11y agoDone.
- aban 11y agoSorry I just saw your reply. Glad you got one. I still have a bunch more, if anyone else wants them.
- saganus 11y agoI could definitely use one. Thanks in any case!
- aban 11y agoSure, but I don't see any emails on your profile (the 'email' field is not public, if you want others to see your email, put it in the 'about' section as well).
- steeef 11y agoI've been itching to try Keybase. Mind sending one my way too?
- aban 11y agoSure, but I don't see your email on your profile (the 'email' field is not public, if you want others to see your email, put it in the 'about' section as well).
- blaenk 11y agoIf it's not too late and you still have some, any chance you can send me one? would appreciate it!
- deleted 11y ago[deleted]
- mynewtb 11y agoWell, why not massively fund Thunderbird with a focus on usability and end-to-end encryption then? :-( Or maybe invest in Signal to they can finally start to fix and improve at a remotely competitive pace?
- matwood 11y agoThunderbird works pretty well with S/MIME to encrypt/decrypt emails. It does not work as well as Mail.app on iOS/OSX, but it works.
- dijit 11y agoit's A) Not transparent and B) No longer supported by mozilla.[0] [0] - http://www.zdnet.com/article/mozilla-scraps-thunderbird-development-email-client-not-a-priority-anymore/# http://www.zdnet.com/article/mozilla-scraps-thunderbird-deve...!
- hackuser 11y agoWhy isn't it transparent? Isn't the code open source?
- dijit 11y agoNot transparent to the user. Good security is one you don't have to have a PhD to configure. How much encryption is in iMessage? (Lots) how much did you do to configure it (none) Transparent encryption (or, encryption for everyone even my mother) is the best way for it to be effective. So when I say transparent. I mean it should not be obvious to the end user and that user should not have to spend significant time configuring it.
- newjersey 11y agoAt the end of the day, we need a way to handle key management for asymmetric encryption like pgp. How do we allow people to share their private keys across multiple devices?
- throwaway23235 11y agoVideo on a Mozilla page isn't playing on Firefox. Just saying...
- majewsky 11y agoSame here. Pretty disappointing. It does work with `mpv --ytdl`, though.
- icebraining 11y agoAssuming you're talking about https://advocacy.mozilla.org/encrypt/ https://advocacy.mozilla.org/encrypt/, it works fine for me on FF 46, and they do have both MP4 and WebM sources.
- exodust 11y agoIt's a poor video, you're not missing much. Painfully, it suggests "public vs private" hinges on encryption. The implication is that without encryption, your co-workers will see everything you do! Public and private are distinct choices. Things can be private and unencrypted. Lack of encryption means lack of security in the event of a breach, it has nothing to do with choosing public vs private posts and web searches. Works fine in my FF. And for what it's worth, I think Apple should assist in revealing the contents of the phone if they can. I'm surprised people are defending Apple. My understanding is the request is about making the phone open to brute force attack, so it's not like encryption is under threat. It's poor password choice that's under threat. Apple does not need to compromise any other phone in doing this.
- icebraining 11y agoWithout encryption, anyone on the same network - including your coworkers - can certainly see everything you do. Tools like Firesheep make it dead-simple to do. What you're talking about is encryption of data at rest, which is a specific subset of encryption. And even then, what makes you think the breached data won't be available to your coworkers? The stuff on Ashley Madison certainly did.
- 11y ago
- userbinator 11y agoCompanies should be encouraged to aggressively strengthen the security of their products, rather than undermine that security. On the other hand, I think they should most certainly not be encouraged to secure products against their users: http://www.gnu.org/philosophy/right-to-read.en.html http://www.gnu.org/philosophy/right-to-read.en.html What worries me the most about this seemingly frantic push for more encryption is that it will accelerate the proliferation and acceptance of locked-down, user-hostile devices. Security is important but so is freedom, and I feel like we've already sacrificed too much of the latter for the former...
- kardos 11y ago> accelerate the proliferation and acceptance of locked-down, user-hostile devices. We're already there. Can you read the Windows 10 telemetry?
- newjersey 11y agoSome people said that Nexus phones that default to encrypt local storage was user hostile as there was a perceptible performance penalty. I don't think that is the case. GNU and fsf want freedom for the user. I fully support the freedoms. However, I also think that users do not have a right to force their wishes on vendors. I think it is fair to say if you don't like the options we give you then maybe you should fork the project and build it yourself.
- pjc50 11y agoOn that subject, I'm kind of surprised that it's been out for months and nobody's reverse-engineered it publicly yet.
- arca_vorago 11y agoYou know, someone saw this problem years ahead of the rest of the cs community and started a license to help encourage user freedom. Its just a shame that I see gpl shat on so much in that community. Personally I think RMS is a man ahead of his time, and that history will prove he has the correct view regarding user freedom.
- danielconde 11y agoEncryption and security has always been a balance between convenience and capability. Although HTPPS and such are mostly transparent to end-user, we can see that slow adoption of public key encryption (GPG) indicates that people either need to be educated or the user experience needs to improve drastically. It's taken many years but there's a long road ahead.
- CyberDildonics 11y ago> Encryption and security has always been a balance between convenience and capability. You could say the same thing about PCs and the internet, especially during their rise to prominence.
- SFjulie1 11y agoEncryption is a business. We need business for commercial transactions. What about the part of internet that is purely informative and requires no login, like accessing the corpus of laws and rules. Books, public domain, news, scientific papers, official publications, opening hours of business and schools, legal and commercial archives.... Mozilla is backing a FUD. They want YOU to change your behaviour by scaring you. Like MS in the past. At which point I wonder how much the Mozilla Corporation is taking up on Mozilla foundation (which governance does not represents non corporate open source interests) and if at some points the donation (and search engine revenues) are not used to generate a close to unethical transfer between the R&D of firefox & evengelization to support the income of Mozilla corporation or maybe the share holders (IBM/google/Cisco/RH/HP). Do we really need to redo the UI nightmares with firefox as a substitute for an heavy client? Is it really secure to think context of execution in firefox are more sandboxed than carefully coded application? Isn't it stupid to not be able to access the credential agents OS provides? Should we not prefer to chose our networks protocols to communicate rather than try to fit all in HTTP/Websockets? Is really the fact billions $ have been injected in JIT optimization in js to compensate for the lack of skills of developers a good way to have better devs? I sometimes think since XUL that firefox has at best something of a sect, but everybody seems to think these kind of "unifying" vision are good to provide a standard. As if the purpose of mozilla is empowering less skilled workers to increase the competition on the market, while pushing questionable practices (like not caring about resources) that favors sub level coders and companies at the detriment of customers. I find it really really special that mozilla foundation a non for profit organization has a marketing department. But yes, life is good for moz devs. I understand they want to be sure they will still employed in the next decade, even if it is at the cost of a lot of the freedom of choice of our tools to design applications and default search engines. Mozilla foundation just cares about people who gives money: search engines and the big corpo giving fat pay check. Remember that when people communicate they might have a less than idealistic goal in mind, especially when they put their balls in the hand of massive operational expenses. I think it is time to do free software again. Not free as in free beer for corporation, but free as in free speech fashion for the humanity and especially the poorest that may not be able to afford encryption.
- citizensixteen 11y agoIf you are not sure where you are with the subject of encryption, backdoors and privacy I suggest watching this video. It is also a great resource to share with people who are not so technical. This video is a production of the Washington DC Chapter of the Internet Society. It is meant to be a starting point for discussions about encryption, privacy, and cybersecurity. The Internet Exposed: Encryption, Backdoors and Privacy – and the Quest to Maintain Trust https://www.youtube.com/watch?v=F2D5dVtHXV8 https://www.youtube.com/watch?v=F2D5dVtHXV8