Comment on Proton is transitioning towards a non-profit structure | Proton

<- View Parent
sudneo@lemm.ee ⁨2⁩ ⁨months⁩ ago

One of the biggest risks is when someone knows your password.

Just a curiosity. How do you think every password for every online service works? The service “has” your password. It is hashed, but if this doesn’t matter (similarly for encryption) to you, then you should be panicking about basically everything.

In the case of Proton an attacker has basically these options:

In the case of a manual solution:

So the tradeoff is really that:

It’s not even hard to manually encrypt emails.

Yeah, and this is why 99.9% of the people have never and will never touch GPG with a 10-foot pole. The tradeoff is a complete no-brainer for the vast majority of people, because the reality is that for most, either someone else does the key discovery, management, signing, encryption, decryption, or nobody does. We can sit here and pretend that it’s easy, but it’s not. Managing keys is hard, it is painful, especially on multiple devices, etc…

source
Sort:hotnewtop