3 ms·
There is a reason they mostly don't exist, at least in the US. After Lavabit was so publicly shut down, it's going to be a losing proposition for anyone to put
by CoryG89 10y ago
There is a reason they mostly don't exist, at least in the US. After Lavabit was so publicly shut down, it's going to be a losing proposition for anyone to put so much time and effort into it, just to then be given a choice between providing a backdoor or shutting down as soon as the government realizes they can't break your service.
If your going to start such a service, it needs to be in a country that will respect free speech. And there aren't many.
- mixedCase 10y agoLavabit didn't do E2E or at least stored the user's keys; since the owner did in fact have the keys needed to unencrypt the Snowden e-mails (and sent them to the FBI in paper using infinitely small character size, apparently).
- CoryG89 10y agoIIRC, they did not store user's keys. What they wanted was for Lavabit to turn over their SSL key, which would have compromised security for the entire service, rather than just targeting Snowden specifically. Presumably they did not have the ability to turn over the emails themselves, so they wanted Lavabit to provide a vector to do a man in the middle attack.