3 ms·
This puts your email in everyone's hands, it's just encrypted so it probably can't be read without the key (yet). Regular email does not do this.
by ugexe 13y ago
This puts your email in everyone's hands, it's just encrypted so it probably can't be read without the key (yet). Regular email does not do this.
- qznc 13y agoSo its "everyone" for p2p vs "many secret services" for SMTP. On the upside, it gives every user a good incentive to use good encryption.
- Karunamon 13y agoOn the positive side, it's unlikely "everyone" who isn't a government agency with billions of dollars of taxpayer money to waste has the time, storage, and compute resources to mount the kind of attack you're talking about. I know NSA is the topic of the day, but they're kind of a special case here. They're the single most powerful and well funded adversary the average crypto user will face.
- tedunangst 13y agoUntil you break up and your ex decides to publish your key in revenge. Unlike a password, you can't change a key and revoke access.
- Karunamon 13y agoWhy on earth would you let someone who is not you anywhere near your private key? No security system in the world can fix user fail.
- ugexe 13y agoThe difference is when your ex releases your key and you are using this system then everybody can read your email instead of just the NSA and the recipient.
- 18pfsmt 13y agoSo, what you are saying is that nobody else, but you, should ever have access to your private key, right? I'm pretty sure that's PKI 101, which I think was Karunamon's point; and, I'm pretty sure the solution to your proposed 'weakness' in this system is not technical.
- ugexe 13y agoHe edited his post and my reply doesn't make sense in context now
- tedunangst 13y agoSince people share passwords with (at the time) trusted people quite frequently, it seems like a scenario one should plan for.