ProtonDrive Security Model
protonmail.com
protonmail.com
You're also locking yourself into an ecosystem without open apis. If you want mail on your phone you have to use their client, if you want it on the computer you need to install the protonmail bridge (which seems to restart itself and overlay over the top of whatever you're doing)
The apps don't seem to behave well on MacOS either, something about how the windows are designed means that they won't show up in the Mac cmd+tab switcher.
All this means that their security model is irrelevant to me, if I can't do the basic things that I need to do.
As is the bridge, and others.
I moved over ~6gb of emails without issue. I set up the bridge and transferred everything from Google to ProtonMail.
After more than 10 attempts and 3-4 exchange with their support I still have a few emails that haven’t been imported successfully.
Other than that I’m a happy user. But I think that they should invest more in the bridge and importer/exporter tool, the user experience really isn’t that great.
Big plus is that if you complain about this to their support things actually seem to get fixed? That was kind of a shocker, I'd suggest sending them a note if you have issues. Though this particular IMAP transfer between accounts has worked between my other email accounts (exchange and some linux server long ago) and gmail since I first tried it so it's a little sad. But a smaller team I guess? But paying for it so...
Mixed feelings for sure.
The Import/Export tool will be exiting Beta with these improvements this month. If you try the production version, we're optimistic it'll work a lot better.
Australian companies (of which Fastmail is one) can be forced to handover user data silently[1].
"At its core, the legislation allows law enforcement agencies to compel companies to hand over user information, even if it’s protected by end-to-end encryption. If companies do not have the ability to intercept encrypted information, they can be forced to build tools to do so."
So fastmail can be compelled to hand over user data[2], and if that data is encrypted, can be compelled to build tools to subvert that security (this is a shame because Fastmail itself is anti that bill).
[1]:https://www.theverge.com/2018/12/7/18130391/encryption-law-a... [2]:https://fastmail.blog/2018/09/10/access-and-assistance-bill/
It's the old xkcd "million-dollar cluster to crack encryption VS wrench"[1]
If you or your engineers with production access live within a jurisdiction then your security and laws are impacted by that jurisdiction.
Their technical support has been prompt at least. But my email also doesn't arrive at most google hosted email domains when delivered via a mailing list so it's been a mixed bag. Apparently that one is unsolvable because Google improperly uses DKIM signatures for spam detection.
I'd probably go with something else if I were starting again, I still can't customize swiping left and right to move forward and backwards in my email box, which really seems like a pretty basic feature that all the other clients use. It is odd that it is still missing after 2+ years of development. I really can't recommend it other than that I probably won't switch again for a while and misery loves company.
I just updated the app on Android today and got a notification that they added this feature
Edit: Version 1.13.10? That's the latest I see on the play store, I have it installed, but it does not have the ability to go to the next message while swiping while a message is open. I looked around a bit but I don't think they just added it unless the play store version didn't change globally or I can't find the feature to turn it on. They do reference swiping in the config page and in their update changelog from June but they're talking about marking messages in a folder, not navigating.
I moved my emails and docs to iCloud, native apps, no problems.
https://protonmail.com/support/knowledge-base/email-ddos-pro...
Very few players have the capacity by themselve to handle a large DDoS these days.
And I'm not sure when talking about protonmail kind of encryption that Neustar has any special access to keys relative to say Level3, cogent or any transit provider between you and protonmail.
But may be I misunderstood your comment?
These checks and balances declared the metadata programs unconstitutional.
https://www.cnet.com/news/appeals-court-finds-nsas-bulk-phon...
Is the system perfect? Not even close, but it does strive to minimize abuse. Plenty of countries here in the EU have national security programs that operate in a similar fashion. The goal shouldn’t be no data collection, it should strive to minimize abuse and keep collection limited to that national security concerns. None of that is true of the programs in China.
Sure- in China. I'm not in China. Censorship might be a problem, but outside of that, I'd much rather have the Chinese government (and even Chinese local police!) have my metadata, and even data, than give the US national security apparatus the same access.
Corporate IP is another exception to this- it's pretty clearly better that the US, rather than China, have access to my work data.
But for, say, a Snowden-esque whistleblower in the US- can you really say they'd be better off with, say, DHS having access to all their data instead of the Chinese government? Obviously ideally nobody would, but for them, a system whose failure mode is "China can associate your IP and email address" is, I believe, dramatically better than "DHS/NSA can associate your IP and email address".
Sure if you are acting on the state level against US or European governments China would be better but for everyone else I think it’s extremely safe to say US/EU.
I’ll add though that I am fairly confident the security of your data in the hands of the Chinese Government is far less secure than when in US/EU. Just last year hundreds of millions (yes hundreds) of social media logs and private chats were released on the web from a hack on a Chinese surveillance system.
I'm very curious op, where/when did you first read about them using Neustar? I didn't know that until I read your comment.
There is a particular leaks site that also called out Proton for routing their connection thru a similar shady service in the past.
I can grab any device (laptop, phone, tablet) and continue my group chats in Telegram.
E2E would require me to use only one device for that specific chat, which is makes it really hard to explain to a layperson.
Even Signal Desktop does not require the communication to pass through the phone (or even to have the phone around after setup). WhatsApp is the odd one in this respect.
Regarding Signal, they say this on their website:
> Signal Desktop is a Chrome app which links with your phone, so all incoming and outgoing messages are displayed consistently on all your devices.
https://signal.org/blog/signal-desktop/
That seems similar to what WhatsApp does, but I haven’t tried myself. Do you have more details on how that would work without passing by the mobile app?
The catch is that if your desktop is off, it won't be able to "catch up" later on any messages that it missed. Although I don't see why that's impossible to implement in principle.
Especially how they handle E2E encryption between multiple devices owned by the same user, without using one device as proxy.
Here’s how Wire works https://wire-docs.wire.com/download/Wire+Security+Whitepaper...
Here’s Signal’s multi device protocol https://signal.org/docs/specifications/sesame/
Here’s Viber’s security white paper https://www.viber.com/app/uploads/Viber-Encryption-Overview....
Not necessarily. It is hard, but Wire (wire.com) has done it. You can install Wire on multiple devices and have the chats sync up. Every chat is E2E encrypted, one-to-one or group chats.
Pretty neat stuff. I hope they open-source it so I can self-host.
Disclaimer: I work for the second one.
[0]: Sync.com [1]: Tresorit.com
If an attacker gains access to your server, they can just inject javascript to gain access to whatever they want on the client's browser. I'm a big fan of Proton* products, and pay for a variety of their services.
However, I can't really get behind this method of data storage. But, it is the best option I've seen for centralized file storage. Syncthing is what I currently use for distributed storage, and I share encrypted files over that. Anyone have a better idea?
I don't use all keybase features actively (wallet, looking at you) but the small use I make of everything else warrants me saying I wished they had a paying tier before they sold themselves.
That's a little complicated right and out of the threat model of normal users no?
They mean to say if someone hacks into server and just copies the data, they will just have random nonsense.
For the javascript thing to work, you need to login after the server is compromised. And if they haven't realised their server is compromised by then, you shouldn't use them.
The threat model is likely law enforcement - they can "compromise" a server legally and restrict owners from notifying people, and have done so many times in the past.
>> While the Proton server will know the URL, it will never receive the password.
>> When creating a new shareable URL for a file, the web client will first confirm that a share directing to the file exists. The passphrase of this share must then be encrypted with the new password associated with the URL. This new password is either randomly generated by the ProtonDrive client, or is specified by the user.
>> In the case of randomly generated passwords, the user can choose whether they want to include it at the end of the URL, equivalent to sharing the content publicly. This section of the URL isn’t shared with Proton servers, making the password and the content inaccessible to Proton. Alternatively, the user can choose to share the password separately.
>> In the case of user-defined passwords, this option isn’t available and the password must always be communicated separately.
But, I don't think people should generally be storing files in the cloud. And, I with Protonmail were finally finishing support for FIDO2 authentication rather than rolling out a cloud storage solution.
The only thing to smooth over, from my understanding, is the fact that they did a lot of refactoring to become multi-app.
Disclaimer: My understanding could be wrong.