Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yeah. PGP doesn’t offer forward secrecy. Solution? Use Age!! which also has no forward secrecy!

Apps like ProtonMail or Tutanota may have an impact on encrypted email. If both sides use ProtonMail, communication is end to end secure. That’s also the case with encrypted messaging. In both cases, copying outside an incompatible platform may be insecure. At least, email address is more private than phone number.



> If both sides use ProtonMail, communication is end to end secure.

If both sides use [the same provider], it's not mail anymore, it's something internal. That is the fundamental issue of ProtonMail/Tutanota/any service provider that pretends to solve end-to-end encryption in email: without standards, it's a proprietary system. Today the only viable path towards easy E2E encryption in email is Autocrypt. AFAIK only Posteo is working towards including it.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: