sigmoid.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A social space for people researching, working with, or just interested in AI!

Server stats:

595
active users

#pgp

4 posts4 participants0 posts today
Bernie<p>There's a new <a href="https://mstdn.io/tags/PasswordStore" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PasswordStore</span></a> app in <a href="https://mstdn.io/tags/FDroid" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FDroid</span></a>:<br><a href="https://f-droid.org/en/packages/app.passwordstore.agrahn/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">f-droid.org/en/packages/app.pa</span><span class="invisible">sswordstore.agrahn/</span></a></p><p>It's a recent fork of the original Android Password Store, which hasn't seen new releases since 2021.</p><p>However, this new app isn't in Google Play Store. Furthermore, instead of using OpenKeyChain, it wants to import a copy of the private <a href="https://mstdn.io/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> key from a file (or generate a new one).</p><p>I'm very reluctant to copy my private key into multiple apps, it's poor key management practice. Why this change?? 🤨</p>
Bruce Walzer 🇨🇦<p><span class="h-card" translate="no"><a href="https://mastodon.social/@gerowen" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>gerowen</span></a></span> I guess the Debian switch to Sequoia <a href="https://mstdn.ca/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> is OK as long as V6 signatures don't end up sneaking in there. That would make such signatures unusable for implementations conforming to the well established RFC4880 and LibePGP.</p>
Marcus Adams<p>apt now uses <a href="https://mastodon.social/tags/Sequoia" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Sequoia</span></a> <a href="https://mastodon.social/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> to verify signatures.</p>
Tux :fckafd:<p>Meine Datenschutz und Privatsphäre Übersicht 2025, für alle 🔐 :mastodon: </p><p>als PDF Datei:</p><p><a href="https://cryptpad.digitalcourage.de/file/#/2/file/8U95QSABpeqI+C-LJREL8I2l/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">cryptpad.digitalcourage.de/fil</span><span class="invisible">e/#/2/file/8U95QSABpeqI+C-LJREL8I2l/</span></a></p><p><a href="https://digitalcourage.social/tags/DSGVO" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DSGVO</span></a> <a href="https://digitalcourage.social/tags/TDDDG" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TDDDG</span></a> <a href="https://digitalcourage.social/tags/unplugtrump" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>unplugtrump</span></a> <br><a href="https://digitalcourage.social/tags/Datenschutz" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Datenschutz</span></a> <a href="https://digitalcourage.social/tags/Privatsph%C3%A4re" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Privatsphäre</span></a> <a href="https://digitalcourage.social/tags/sicherheit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sicherheit</span></a> <a href="https://digitalcourage.social/tags/Verschl%C3%BCsselung" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Verschlüsselung</span></a> <a href="https://digitalcourage.social/tags/Adguard" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Adguard</span></a><br><a href="https://digitalcourage.social/tags/encryption" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>encryption</span></a> <a href="https://digitalcourage.social/tags/WEtell" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WEtell</span></a> <a href="https://digitalcourage.social/tags/SoloKey" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SoloKey</span></a> <a href="https://digitalcourage.social/tags/NitroKey" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NitroKey</span></a> <a href="https://digitalcourage.social/tags/Email" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Email</span></a> <a href="https://digitalcourage.social/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://digitalcourage.social/tags/Pixelfed" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Pixelfed</span></a> <a href="https://digitalcourage.social/tags/Massen%C5%B1berwachung" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Massenűberwachung</span></a> <a href="https://digitalcourage.social/tags/Leta" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Leta</span></a><br><a href="https://digitalcourage.social/tags/Google" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Google</span></a> <a href="https://digitalcourage.social/tags/Metadaten" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Metadaten</span></a> <a href="https://digitalcourage.social/tags/WhatsApp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WhatsApp</span></a> <a href="https://digitalcourage.social/tags/Threema" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Threema</span></a> <a href="https://digitalcourage.social/tags/Cryptpad" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cryptpad</span></a> <a href="https://digitalcourage.social/tags/Signal" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Signal</span></a><br><a href="https://digitalcourage.social/tags/Hateaid" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hateaid</span></a> <a href="https://digitalcourage.social/tags/Cyberstalking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cyberstalking</span></a> <a href="https://digitalcourage.social/tags/Messenger" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Messenger</span></a> <a href="https://digitalcourage.social/tags/Browser" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Browser</span></a> <a href="https://digitalcourage.social/tags/Youtube" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Youtube</span></a> <a href="https://digitalcourage.social/tags/NewPipe" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NewPipe</span></a> <a href="https://digitalcourage.social/tags/Chatkontrolle" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Chatkontrolle</span></a> <a href="https://digitalcourage.social/tags/nichtszuverbergen" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nichtszuverbergen</span></a> <a href="https://digitalcourage.social/tags/%C3%9CberwachungsKapitalismus" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ÜberwachungsKapitalismus</span></a> <a href="https://digitalcourage.social/tags/Microsoft" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Microsoft</span></a> <a href="https://digitalcourage.social/tags/Apple" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Apple</span></a> <a href="https://digitalcourage.social/tags/Windows10" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Windows10</span></a> <a href="https://digitalcourage.social/tags/Linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Linux</span></a> <a href="https://digitalcourage.social/tags/Matrix" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Matrix</span></a> <a href="https://digitalcourage.social/tags/Mastodon" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Mastodon</span></a> <a href="https://digitalcourage.social/tags/Friendica" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Friendica</span></a> <a href="https://digitalcourage.social/tags/Fediverse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Fediverse</span></a> <a href="https://digitalcourage.social/tags/Mastodir" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Mastodir</span></a> <a href="https://digitalcourage.social/tags/Loops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Loops</span></a> <a href="https://digitalcourage.social/tags/2FA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>2FA</span></a> <a href="https://digitalcourage.social/tags/Ransomware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Ransomware</span></a> <a href="https://digitalcourage.social/tags/Foss" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Foss</span></a> <a href="https://digitalcourage.social/tags/VeraCrypt" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>VeraCrypt</span></a> <a href="https://digitalcourage.social/tags/HateAid" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>HateAid</span></a> <a href="https://digitalcourage.social/tags/Coreboot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Coreboot</span></a> <a href="https://digitalcourage.social/tags/Volksverpetzer" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Volksverpetzer</span></a> <a href="https://digitalcourage.social/tags/Netzpolitik" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Netzpolitik</span></a> <a href="https://digitalcourage.social/tags/endof10" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>endof10</span></a> <a href="https://digitalcourage.social/tags/OpenAndroidInstaller" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpenAndroidInstaller</span></a> <a href="https://digitalcourage.social/tags/Nobara" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nobara</span></a><br><a href="https://digitalcourage.social/tags/Digitalisierung" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Digitalisierung</span></a> <a href="https://digitalcourage.social/tags/FragdenStaat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FragdenStaat</span></a> <a href="https://digitalcourage.social/tags/Shiftphone" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Shiftphone</span></a>&nbsp;&nbsp;<a href="https://digitalcourage.social/tags/OpenSource" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpenSource</span></a> <a href="https://digitalcourage.social/tags/GrapheneOS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GrapheneOS</span></a> <a href="https://digitalcourage.social/tags/CCC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CCC</span></a> <a href="https://digitalcourage.social/tags/Mail" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Mail</span></a> <a href="https://digitalcourage.social/tags/Mullvad" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Mullvad</span></a> <a href="https://digitalcourage.social/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> <a href="https://digitalcourage.social/tags/GnuPG" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GnuPG</span></a> <a href="https://digitalcourage.social/tags/DNS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DNS</span></a> <a href="https://digitalcourage.social/tags/Gaming" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Gaming</span></a> <a href="https://digitalcourage.social/tags/linuxgaming" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linuxgaming</span></a> <a href="https://digitalcourage.social/tags/Lutris" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Lutris</span></a> <a href="https://digitalcourage.social/tags/Protondb" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Protondb</span></a> <a href="https://digitalcourage.social/tags/CLOUDAct" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CLOUDAct</span></a> <a href="https://digitalcourage.social/tags/Enshittification" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Enshittification</span></a> <br><a href="https://digitalcourage.social/tags/Bloatware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Bloatware</span></a> <a href="https://digitalcourage.social/tags/TPM" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TPM</span></a> <a href="https://digitalcourage.social/tags/Murena" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Murena</span></a>&nbsp;&nbsp;<a href="https://digitalcourage.social/tags/LiberaPay" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LiberaPay</span></a> <a href="https://digitalcourage.social/tags/GnuTaler" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GnuTaler</span></a> <a href="https://digitalcourage.social/tags/Taler" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Taler</span></a> <a href="https://digitalcourage.social/tags/PreppingforFuture" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PreppingforFuture</span></a><br><a href="https://digitalcourage.social/tags/FediLZ" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FediLZ</span></a> <a href="https://digitalcourage.social/tags/BlueLZ" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlueLZ</span></a> <a href="https://digitalcourage.social/tags/InstaLZ" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InstaLZ</span></a> <a href="https://digitalcourage.social/tags/ThreatModel" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ThreatModel</span></a><br><a href="https://digitalcourage.social/tags/FLOSS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FLOSS</span></a> <a href="https://digitalcourage.social/tags/UEFI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>UEFI</span></a> <a href="https://digitalcourage.social/tags/Medienkompetenz" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Medienkompetenz</span></a></p>
S. k. k. H. Bernd ✔️<p><span class="h-card" translate="no"><a href="https://chaos.social/@kenji" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>kenji</span></a></span> Solange E-Mail-Sicherheit <a href="https://troet.cafe/tags/verschlusselungsverfahren" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>verschlusselungsverfahren</span></a> als Geschäftsmodell von Monopolisten <a href="https://troet.cafe/tags/smime" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>smime</span></a> verstanden wird und <a href="https://troet.cafe/tags/pgp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>pgp</span></a> nicht standardmäßig eingebaut und -geschaltet wird, hat E-Mail-Sicherheit keine Chance.</p>
Heiko<p>I just released version 0.1.3 of rsop-oct, a stateless <a href="https://floss.social/tags/OpenPGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpenPGP</span></a> ("SOP") CLI tool for use with OpenPGP card hardware devices:</p><p><a href="https://crates.io/crates/rsop-oct/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">crates.io/crates/rsop-oct/</span><span class="invisible"></span></a></p><p>Like its sibling project <a href="https://floss.social/tags/rsop" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rsop</span></a>, rsop-oct is based on <span class="h-card" translate="no"><a href="https://mastodon.social/@rpgp" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>rpgp</span></a></span></p><p>This update adds support for the SOP command 'certify-userid'.</p><p>This allows issuing certifications (aka "third-party signatures") over identities in other people's OpenPGP certificates, directly with an OpenPGP card device.</p><p>For more on <a href="https://floss.social/tags/SOP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SOP</span></a>, see <a href="https://datatracker.ietf.org/doc/draft-dkg-openpgp-stateless-cli/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">datatracker.ietf.org/doc/draft</span><span class="invisible">-dkg-openpgp-stateless-cli/</span></a></p><p><a href="https://floss.social/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> <a href="https://floss.social/tags/GnuPG" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GnuPG</span></a></p>
Computertruhe e. V.<p>Stimmt doch bitte alle mal diesen Feature Request für <a href="https://social.computertruhe.de/tags/GLPI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GLPI</span></a> ab. <a href="https://social.computertruhe.de/tags/OpenPGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpenPGP</span></a>-Support innerhalb des Ticketsystems wäre eine wahnsinnig hilfreiche Sache.</p><p><a href="https://glpi.userecho.com/communities/1/topics/886-please-add-pgp-support" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">glpi.userecho.com/communities/</span><span class="invisible">1/topics/886-please-add-pgp-support</span></a></p><p><a href="https://social.computertruhe.de/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> <a href="https://social.computertruhe.de/tags/Verschl%C3%BCsselung" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Verschlüsselung</span></a></p>
Gemischtwahnladen<p>Wollte grad (nach Jahren) mal wieder ne <a href="https://punkstodon.de/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a>-Verschlüsselung für meine Mails einrichten. Nun hat <a href="https://punkstodon.de/tags/Thunderbird" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Thunderbird</span></a> ja inzwischen <a href="https://punkstodon.de/tags/GNUPG" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GNUPG</span></a> und das sieht ja auch alles ganz toll aus, aber was mich als alter <a href="https://punkstodon.de/tags/Enigmail" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Enigmail</span></a> User irritiert, ist das Ding mit der (fehlenden) Passphrase. Also wie ich das verstehe wird die ja (für alle Mailaccounts!?) ersetzt durch das Thunderbird-Masterpasswort. So weit so naja... Aber würde die Mails auch weiterhin gern auffm Handy abrufen (<a href="https://punkstodon.de/tags/K9" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>K9</span></a>). Da gibts dann n Addon, soweit hab ich das schon gesehen, aber ist dann das Masterpasswort auch da meine Passphrase? Danke schonmal für Tipps...</p>
𝕂𝚞𝚋𝚒𝚔ℙ𝚒𝚡𝚎𝚕<p>»Gmail fantasiert - Googles <a href="https://chaos.social/tags/Mail" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Mail</span></a>-Programm verhunzt Inhalte – Zwangsübersetzungen - E-Mail-Irrsinn bei Gmail: Wie Google Worte verdreht:<br>Ohne Vorwarnung verändert sich der Inhalt von <a href="https://chaos.social/tags/EMail" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EMail</span></a>'s – und mitten in journalistischen Texten tauchen absurde <a href="https://chaos.social/tags/Fehler" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Fehler</span></a> auf: dieser Link deckt auf, dass <a href="https://chaos.social/tags/Google" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Google</span></a> ein Problem hat – und vielen Menschen damit Probleme macht.«</p><p>Ein Grund mehr um GMail nicht &amp; <a href="https://chaos.social/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> <a href="https://chaos.social/tags/Verschlusselung" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Verschlusselung</span></a> zu nutzen. Wir alle senden E-Mails auch an <a href="https://chaos.social/tags/GMail" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GMail</span></a> Adressen.</p><p>📧 <a href="https://www.t-online.de/digital/aktuelles/id_100811852/gmail-fantasiert-googles-mail-programm-verfaelscht-fremde-inhalte.html" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">t-online.de/digital/aktuelles/</span><span class="invisible">id_100811852/gmail-fantasiert-googles-mail-programm-verfaelscht-fremde-inhalte.html</span></a></p>
codeDude :archlinux: :neovim:<p>Un simple recordatorio a las personas del <a href="https://floss.social/tags/fediverdo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>fediverdo</span></a> que aprendan a encriptar con <a href="https://floss.social/tags/pgp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>pgp</span></a> ya sea con <a href="https://floss.social/tags/gpg" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>gpg</span></a> u otra implementación del protocolo.<br>¿Por que? <br>Están surgiendo nuevas leyes que indiricatemente te forzan a ser responsable de tu propia privacidad.<br>Encriptar y firmar emails o archivos es unos de los primeros pasos para aprender a hacerte responsable de tu privacidad.</p><p>Listo, tengan bonito día</p>
Giacomo TesioA friend with an iPhone want to read and write PGP-encrypted emails: what's the cheapest and simplest approach I can suggest him?<br><br>I know nothing about Apple products, but I guess they have a default mail agent. Yet I can't find online how to configure PGP.<br><br><a href="https://snac.tesio.it?t=fedihelp" class="mention hashtag" rel="nofollow noopener" target="_blank">#Fedihelp</a> <a href="https://snac.tesio.it?t=iphone" class="mention hashtag" rel="nofollow noopener" target="_blank">#iPhone</a> <a href="https://snac.tesio.it?t=security" class="mention hashtag" rel="nofollow noopener" target="_blank">#security</a> <a href="https://snac.tesio.it?t=pgp" class="mention hashtag" rel="nofollow noopener" target="_blank">#pgp</a> <a href="https://snac.tesio.it?t=cryptography" class="mention hashtag" rel="nofollow noopener" target="_blank">#cryptography</a><br>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://fosstodon.org/@whynothugo" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>whynothugo</span></a></span> interesting...</p><p>Maybe <span class="h-card" translate="no"><a href="https://social.nitrokey.com/@nitrokey" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>nitrokey</span></a></span> can hint at things...</p><p>As for <a href="https://infosec.space/tags/GPG" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GPG</span></a> backups, frontends like <a href="https://infosec.space/tags/Kleopatra" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Kleopatra</span></a> allow exporting all the keys and settings.</p><ul><li>However you should only fiddle with the keyring of a user, never with a system and on some systems like <a href="https://infosec.space/tags/macOS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>macOS</span></a> deleting the <a href="https://infosec.space/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> Keyring will brick the login for the user in question.</li></ul>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://fosstodon.org/@whynothugo" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>whynothugo</span></a></span> consider using <a href="https://infosec.space/tags/enc" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>enc</span></a> instead, which allows you to use <a href="https://infosec.space/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a> keys like <a href="https://infosec.space/tags/SSH" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SSH</span></a>...</p><p><a href="https://github.com/life4/enc/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">github.com/life4/enc/</span><span class="invisible"></span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@OhMyGod" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>OhMyGod</span></a></span> Remember: <em>ANY "<a href="https://infosec.space/tags/KYC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>KYC</span></a>" in terms of <a href="https://infosec.space/tags/Messenger" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Messenger</span></a>| <a href="https://infosec.space/tags/Apps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Apps</span></a> IS the <a href="https://infosec.space/tags/IllicitActivity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IllicitActivity</span></a>!</em></p><p>Regardless if <span class="h-card" translate="no"><a href="https://mastodon.matrix.org/@matrix" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>matrix</span></a></span> or <span class="h-card" translate="no"><a href="https://mastodon.world/@signalapp" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>signalapp</span></a></span> , the sheer request, demand or coercion onto <a href="https://infosec.space/tags/PII" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PII</span></a> like a <a href="https://infosec.space/tags/PhoneNumber" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PhoneNumber</span></a> or <a href="https://infosec.space/tags/eMail" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>eMail</span></a>-Address <em>is</em> bad.</p><ul><li>If providers like <span class="h-card" translate="no"><a href="https://mastodon.online/@mullvadnet" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>mullvadnet</span></a></span> can do a <a href="https://infosec.space/tags/VPN" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>VPN</span></a> without any PII <em>and</em> can offer their Service via <span class="h-card" translate="no"><a href="https://mastodon.social/@torproject" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>torproject</span></a></span> / <a href="https://infosec.space/tags/Tor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Tor</span></a> and host their Website as <a href="https://infosec.space/tags/OnionService" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OnionService</span></a>, then there's no good reason for others not to do the same.</li></ul><p>Personally, I'll recommend to switch to some <em>real <a href="https://infosec.space/tags/E2EE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>E2EE</span></a></em> with good <a href="https://infosec.space/tags/SelfHosting" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SelfHosting</span></a> options like <span class="h-card" translate="no"><a href="https://chaos.social/@delta" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>delta</span></a></span> / <a href="https://infosec.space/tags/deltaChat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>deltaChat</span></a> [which uses <a href="https://infosec.space/tags/PGP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PGP</span></a>/MIME) or <span class="h-card" translate="no"><a href="https://monocles.social/@monocles" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>monocles</span></a></span> / <a href="https://infosec.space/tags/monoclesChat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>monoclesChat</span></a> (which is based upon <a href="https://infosec.space/tags/XMPP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>XMPP</span></a>+<a href="https://infosec.space/tags/OMEMO" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OMEMO</span></a> and who do host their own servers which are user-financed and can be paid for 100% anonymously.</p><p><span class="h-card" translate="no"><a href="https://social.bund.de/@bfdi" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>bfdi</span></a></span> <span class="h-card" translate="no"><a href="https://social.tchncs.de/@kuketzblog" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>kuketzblog</span></a></span> <span class="h-card" translate="no"><a href="https://chaos.social/@netzpolitik_feed" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>netzpolitik_feed</span></a></span> <span class="h-card" translate="no"><a href="https://chaos.social/@ccc" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>ccc</span></a></span> <span class="h-card" translate="no"><a href="https://social.heise.de/@heiseonline" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>heiseonline</span></a></span></p>
Replied in thread

@artfulmodder last time I checked @signalapp still demanded #PII in.the form of a #PhoneNumber, still peddled the #MobileCoin #Shitcoin #Scam and didn't move out of the #Cyberfacist #USA despite #CloudAct being nothing new!

  • Not to mention #Signal is both able and willing to discriminate against users based off said PII. Just because they do it for "#Sanctions #Compliance" diesn't mean they ain't gonna change that nor that @Mer__edith (or anyone else at Signal) could be bribed or threatened to do so.

They are #centralized #SingleVendor & #SingleProvider and are thus a #SinglePointOfFailure per design!

IMHO "memory tagging" is the least of Signal's problems. To me they stench "#ControlledOpposition" just as hard as #ANØM and incompetence as hard as #EncroChat!

Replied in thread

@action_jay everything that isn't a fully #OpenSource'd #OpenStandard with #MultiVendor & #MultiProvider support.

That's why @delta (#PGP/MIME) & @monocles / @gajim (#XMPP+#OMEMO) are superior to @signalapp , because that can be easily cracked down on due to #CloudAct, whereas truly #decentralized systems have #SelfCustody so they can't be taken down effectively.

  • Bonus points if they support @torproject / #Tor, cuz that makes it harder for "state-sponsored" (or rather state-endorsed/governmental attackers) to block or sabotage it (#OnionServices are harder to take down!)
Replied in thread

@heiseonline

Wir brauchen endlich einen kryptografisch sicheren und privatsphärefreundlichen #EPerso.

Und weg von dem ganzen unverschlüsselten Kram wie Telefon, SMS, Fax oder Email. Jede Nachricht muss mit einem privaten Key signiert sein, das geht schon, juckt aber kein Schwein. Keine Behörde, Arztpraxis etc. unterstützt #PGP.

youtube.com/watch?v=PKtklN8mOo

media.ccc.de/v/38c3-eu-s-digit