Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. If you pay Proton Mail for a service, they may hand over the payment data in response to a court order: https://www.404media.co/proton-mail-helped-fbi-unmask-anonymous-stop-cop-city-protestor/

If you pay Proton Mail for a service, they may hand over the payment data in response to a court order: https://www.404media.co/proton-mail-helped-fbi-unmask-anonymous-stop-cop-city-protestor/

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
79 Indlæg 57 Posters 1 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • tekchip@mastodon.socialT tekchip@mastodon.social

    @evacide this is far from new? What happened to the internet never forgets? Proton regularly complies with police/government/legal etc.

    2021

    https://www.malwarebytes.com/blog/news/2021/09/protonmail-hands-users-ip-address-and-device-info-to-police-showing-the-limits-of-private-email

    evacide@hachyderm.ioE This user is from outside of this forum
    evacide@hachyderm.ioE This user is from outside of this forum
    evacide@hachyderm.io
    wrote sidst redigeret af
    #10

    @Tekchip Is there something in my post that says this is a novel development?

    tekchip@mastodon.socialT 1 Reply Last reply
    0
    • evacide@hachyderm.ioE evacide@hachyderm.io

      @Tekchip Is there something in my post that says this is a novel development?

      tekchip@mastodon.socialT This user is from outside of this forum
      tekchip@mastodon.socialT This user is from outside of this forum
      tekchip@mastodon.social
      wrote sidst redigeret af
      #11

      @evacide no, left more so for the other folks replying to your post as if this is unexpected.

      evacide@hachyderm.ioE 1 Reply Last reply
      0
      • cliffle@hachyderm.ioC cliffle@hachyderm.io

        @evacide I've been following the articles on this, and was curious -- you would know this better than I -- does it sound like they were in a position where they had a legal alternative?

        evacide@hachyderm.ioE This user is from outside of this forum
        evacide@hachyderm.ioE This user is from outside of this forum
        evacide@hachyderm.io
        wrote sidst redigeret af
        #12

        @cliffle This is exactly what they have already said they would do, but it is very common for me to encounter people who use Proton Mail who do not expect this.

        stinerman@mastodon.socialS maya_b@hachyderm.ioM 2 Replies Last reply
        0
        • eldersea@expressional.socialE eldersea@expressional.social

          @evacide Mail cash, I guess? Not really into crypto.

          stinerman@mastodon.socialS This user is from outside of this forum
          stinerman@mastodon.socialS This user is from outside of this forum
          stinerman@mastodon.social
          wrote sidst redigeret af
          #13

          @eldersea @evacide if you want to remain as anonymous as possible, you'd use the free tier and don't populate a recovery email. They had to give that to French police by way of court order, which helped the police identify the suspect.

          1 Reply Last reply
          0
          • tekchip@mastodon.socialT tekchip@mastodon.social

            @evacide no, left more so for the other folks replying to your post as if this is unexpected.

            evacide@hachyderm.ioE This user is from outside of this forum
            evacide@hachyderm.ioE This user is from outside of this forum
            evacide@hachyderm.io
            wrote sidst redigeret af
            #14

            @Tekchip Feel free to reply to them while leaving me out of it.

            haste@mastodon.socialH kdelta@ieji.deK 2 Replies Last reply
            0
            • evacide@hachyderm.ioE evacide@hachyderm.io

              @cliffle This is exactly what they have already said they would do, but it is very common for me to encounter people who use Proton Mail who do not expect this.

              stinerman@mastodon.socialS This user is from outside of this forum
              stinerman@mastodon.socialS This user is from outside of this forum
              stinerman@mastodon.social
              wrote sidst redigeret af
              #15

              @evacide @cliffle I will admit to being surprised that they are required to log certain information by way of court order that they don't log by default.

              porcus@hostux.socialP 1 Reply Last reply
              0
              • evacide@hachyderm.ioE evacide@hachyderm.io

                @cliffle This is exactly what they have already said they would do, but it is very common for me to encounter people who use Proton Mail who do not expect this.

                maya_b@hachyderm.ioM This user is from outside of this forum
                maya_b@hachyderm.ioM This user is from outside of this forum
                maya_b@hachyderm.io
                wrote sidst redigeret af
                #16

                @evacide @cliffle

                and with owners in the US, there's even more legal jeopardy potential. where the servers are located is less relevant than who owns them.

                contrast that with Tuta, sure it's EU owned but you have to go through more layers to get to account details, and not as easily strong-armed.

                though the French MS email saga from a while back makes it all muddier. French authorities will comply with requests made through the proper channels, a US judge said she didn't have to and demanded compliance - putting MS-France in non-compliance with the US court order, or non-compliance with French law.

                schroedingerspossum@mastodon.socialS 1 Reply Last reply
                0
                • evacide@hachyderm.ioE evacide@hachyderm.io

                  If you pay Proton Mail for a service, they may hand over the payment data in response to a court order: https://www.404media.co/proton-mail-helped-fbi-unmask-anonymous-stop-cop-city-protestor/

                  doodee@mastodon.socialD This user is from outside of this forum
                  doodee@mastodon.socialD This user is from outside of this forum
                  doodee@mastodon.social
                  wrote sidst redigeret af
                  #17

                  @evacide

                  You can actually pay Posteo in cash by mail: send banknotes in an envelope with a code to Posteo.

                  @Tutanota as alternative does not offer direct cash payment, but you can buy Tuta gift cards cash same way via the reseller Proxystore.

                  @protonprivacy also accepts cash payments according to their support, by sending physical money via post. You get the details by contacting Proton support…

                  But if you pay with a Creditcard, you have an US provider an board

                  hlrx@techhub.socialH 1 Reply Last reply
                  0
                  • evacide@hachyderm.ioE evacide@hachyderm.io

                    If you pay Proton Mail for a service, they may hand over the payment data in response to a court order: https://www.404media.co/proton-mail-helped-fbi-unmask-anonymous-stop-cop-city-protestor/

                    ohmu@social.seattle.wa.usO This user is from outside of this forum
                    ohmu@social.seattle.wa.usO This user is from outside of this forum
                    ohmu@social.seattle.wa.us
                    wrote sidst redigeret af
                    #18

                    May I assume @Tutanota would be bound to do the same thing?

                    siv@mastodon.praxis.redS 1 Reply Last reply
                    0
                    • evacide@hachyderm.ioE evacide@hachyderm.io

                      If you pay Proton Mail for a service, they may hand over the payment data in response to a court order: https://www.404media.co/proton-mail-helped-fbi-unmask-anonymous-stop-cop-city-protestor/

                      lasombra_br@mas.toL This user is from outside of this forum
                      lasombra_br@mas.toL This user is from outside of this forum
                      lasombra_br@mas.to
                      wrote sidst redigeret af
                      #19

                      @evacide Wouldn’t that be a given in most jurisdictions?

                      siv@mastodon.praxis.redS 1 Reply Last reply
                      0
                      • wcbdata@vis.socialW wcbdata@vis.social

                        @cliffle I had this same question when I read the article... Would the only defense here be to pay cash (mail them an envelope full of Euros?) or sufficiently obfuscate payment card ownership (Bahamas holding company maze)? @evacide

                        stinerman@mastodon.socialS This user is from outside of this forum
                        stinerman@mastodon.socialS This user is from outside of this forum
                        stinerman@mastodon.social
                        wrote sidst redigeret af
                        #20

                        @wcbdata @cliffle @evacide cash is a supported payment method:
                        https://proton.me/support/payment-options#cash

                        1 Reply Last reply
                        0
                        • evacide@hachyderm.ioE evacide@hachyderm.io

                          If you pay Proton Mail for a service, they may hand over the payment data in response to a court order: https://www.404media.co/proton-mail-helped-fbi-unmask-anonymous-stop-cop-city-protestor/

                          lispi314@udongein.xyzL This user is from outside of this forum
                          lispi314@udongein.xyzL This user is from outside of this forum
                          lispi314@udongein.xyz
                          wrote sidst redigeret af
                          #21
                          @evacide Payment data is d0x data. Always has been.
                          1 Reply Last reply
                          0
                          • evacide@hachyderm.ioE evacide@hachyderm.io

                            If you pay Proton Mail for a service, they may hand over the payment data in response to a court order: https://www.404media.co/proton-mail-helped-fbi-unmask-anonymous-stop-cop-city-protestor/

                            caitp@mstdn.socialC This user is from outside of this forum
                            caitp@mstdn.socialC This user is from outside of this forum
                            caitp@mstdn.social
                            wrote sidst redigeret af
                            #22

                            @evacide so the only real solution is to run your own mail server, because corporations will always do this if pressured?

                            flipper@mastodonapp.ukF waffles@masto.yttrx.comW de_treias@livellosegreto.itD mhloppy@hachyderm.ioM 4 Replies Last reply
                            0
                            • ohmu@social.seattle.wa.usO ohmu@social.seattle.wa.us

                              May I assume @Tutanota would be bound to do the same thing?

                              siv@mastodon.praxis.redS This user is from outside of this forum
                              siv@mastodon.praxis.redS This user is from outside of this forum
                              siv@mastodon.praxis.red
                              wrote sidst redigeret af
                              #23

                              @ohmu @Tutanota Yes. No corporation is immune to legal compulsion.

                              1 Reply Last reply
                              0
                              • doodee@mastodon.socialD doodee@mastodon.social

                                @evacide

                                You can actually pay Posteo in cash by mail: send banknotes in an envelope with a code to Posteo.

                                @Tutanota as alternative does not offer direct cash payment, but you can buy Tuta gift cards cash same way via the reseller Proxystore.

                                @protonprivacy also accepts cash payments according to their support, by sending physical money via post. You get the details by contacting Proton support…

                                But if you pay with a Creditcard, you have an US provider an board

                                hlrx@techhub.socialH This user is from outside of this forum
                                hlrx@techhub.socialH This user is from outside of this forum
                                hlrx@techhub.social
                                wrote sidst redigeret af
                                #24

                                @doodee thanks for the tips 🙌

                                1 Reply Last reply
                                0
                                • simonzerafa@infosec.exchangeS simonzerafa@infosec.exchange

                                  @evacide

                                  The only winning move is not to pay.

                                  Not quite as privacy focued as they claim really.

                                  siv@mastodon.praxis.redS This user is from outside of this forum
                                  siv@mastodon.praxis.redS This user is from outside of this forum
                                  siv@mastodon.praxis.red
                                  wrote sidst redigeret af
                                  #25

                                  @simonzerafa @evacide  I think you mean "anonymity" rather than "privacy". No corporation is immune to legal compulsion. If you link a credit card to an account of any type, it will show up in all kinds of metadata via credit card companies and data brokers, and the banking records will forever deanonymize the account.

                                  So yes, pay for a ProtonMail account with CC if you want, but use a free one if you want *anonymity* in addition to privacy.

                                  1 Reply Last reply
                                  0
                                  • lasombra_br@mas.toL lasombra_br@mas.to

                                    @evacide Wouldn’t that be a given in most jurisdictions?

                                    siv@mastodon.praxis.redS This user is from outside of this forum
                                    siv@mastodon.praxis.redS This user is from outside of this forum
                                    siv@mastodon.praxis.red
                                    wrote sidst redigeret af
                                    #26

                                    @lasombra_br @evacide you'd think so, but a surprising amount of people don't realize a credit card immediately deanonymizes whatever they pay for with a card.

                                    1 Reply Last reply
                                    0
                                    • maya_b@hachyderm.ioM maya_b@hachyderm.io

                                      @evacide @cliffle

                                      and with owners in the US, there's even more legal jeopardy potential. where the servers are located is less relevant than who owns them.

                                      contrast that with Tuta, sure it's EU owned but you have to go through more layers to get to account details, and not as easily strong-armed.

                                      though the French MS email saga from a while back makes it all muddier. French authorities will comply with requests made through the proper channels, a US judge said she didn't have to and demanded compliance - putting MS-France in non-compliance with the US court order, or non-compliance with French law.

                                      schroedingerspossum@mastodon.socialS This user is from outside of this forum
                                      schroedingerspossum@mastodon.socialS This user is from outside of this forum
                                      schroedingerspossum@mastodon.social
                                      wrote sidst redigeret af
                                      #27

                                      @maya_b @evacide @cliffle

                                      All email providers that operate legally - including Tuta - must provide this info if they have it upon court request. If your threat model includes this risk, then having owners in a different country does not protect you at all.
                                      To be clear, I like Tuta, but I haven't seen any evidence yet that they wouldn't be forced to do the same if they operate there.

                                      maya_b@hachyderm.ioM choomba@social.tchncs.deC 2 Replies Last reply
                                      0
                                      • schroedingerspossum@mastodon.socialS schroedingerspossum@mastodon.social

                                        @maya_b @evacide @cliffle

                                        All email providers that operate legally - including Tuta - must provide this info if they have it upon court request. If your threat model includes this risk, then having owners in a different country does not protect you at all.
                                        To be clear, I like Tuta, but I haven't seen any evidence yet that they wouldn't be forced to do the same if they operate there.

                                        maya_b@hachyderm.ioM This user is from outside of this forum
                                        maya_b@hachyderm.ioM This user is from outside of this forum
                                        maya_b@hachyderm.io
                                        wrote sidst redigeret af
                                        #28

                                        @schroedingerspossum

                                        agreed. however the reach of US courts is limited by entities that have no US ties. Tuta is still bound, and I expect that a properly processed request through German officials would result in a disclosure, but that requires a bit more rigour than I'd expect from an entity with US ties.

                                        @evacide @cliffle

                                        1 Reply Last reply
                                        0
                                        • stinerman@mastodon.socialS stinerman@mastodon.social

                                          @evacide @cliffle I will admit to being surprised that they are required to log certain information by way of court order that they don't log by default.

                                          porcus@hostux.socialP This user is from outside of this forum
                                          porcus@hostux.socialP This user is from outside of this forum
                                          porcus@hostux.social
                                          wrote sidst redigeret af
                                          #29

                                          @evacide @cliffle @stinerman There is a thin line on logging stuff for user debug (being an isp/supplier for friends, i have some clue, not pretending it's expertise), therefor where is that line. also, i might understand that proton needs to comply with swiss law (which isn't up to date vs data retention and digital data, because totally f*ing legacy.) my short swiss citizen view : we're in deep shit with this and local politics dont care. ( i'm geneva's former pirate party founder and lost)

                                          1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper