Explaining Efail and Why It Isn’t the End of Email Privacy

Last week the PGPocalipse was all over the news… Except that, well, it wasn’t an apocalypse.

A team of researchers published a paper(PDF) where they describe how to decrypt a PGP encrypted email via a targeted attack. The research itself is pretty well documented and, from a security researcher perspective, it’s a good paper to read, especially the cryptography parts.

But we here at Hackaday were skeptical about media claims that Efail had broken PGP. Some media reports went as far as recommending everyone turn off PGP encryption on all email clients., but they weren’t able to back this recommendation …read more

Continue reading Explaining Efail and Why It Isn’t the End of Email Privacy

Here’s How eFail Attack Works Against PGP and S/MIME Encrypted Emails

With a heavy heart, security researchers have early released the details of a set of vulnerabilities discovered in email clients for two widely used email encryption standards—PGP and S/MIME—after someone leaked their paper on the Internet, which was a… Continue reading Here’s How eFail Attack Works Against PGP and S/MIME Encrypted Emails

Gmail’s new ‘Confidential Mode’ won’t be completely private

Have you ever wished it were possible to delete an email from a recipient’s inbox days, weeks or months after it was sent? If so and you’re a Gmail or G Suite user, it looks as if Google might be about to enable this kind of ‘self-destructing’ email fe… Continue reading Gmail’s new ‘Confidential Mode’ won’t be completely private

Buggy Microsoft Outlook Sending Encrypted S/MIME Emails With Plaintext Copy For Months

Beware, If you are using S/MIME protocol over Microsoft Outlook to encrypt your email communication, you need to watch out.

From at least last 6 months, your messages were being sent in both encrypted and unencrypted forms, exposing all your secret an… Continue reading Buggy Microsoft Outlook Sending Encrypted S/MIME Emails With Plaintext Copy For Months