Skype with care – Microsoft is reading everything you write
h-online.com
h-online.com
That's actually a lie, making people think a website is safe just because they see https:// in the address bar.
In fact, automated link visits is a common practice used by many email spam filters, and it makes sense to implement it in other messaging systems such as Skype.
Skype was originally marketed as having end-to-end encryption. Now, we know that since Microsoft bought Skype they've added wiretapping support, which works by making themselves a man-in-the-middle. They claim they only do this temporarily for people they are actively wiretapping.
This, however, shows that Microsoft regularly MITMs you, for the purpose of evaluating whether links are dangerous. This means that basically all of Skype's former privacy claims are no longer true. They simply regularly look at your unencrypted traffic, which means that they are a target for attackers, governments, and pretty much anyone who wants to eavesdrop or read your messages.
MITM usually refers to 3rd parties routing your traffic. So if your ISP or network admin was sniffing your Skype messages, that would be what is generally called MITM.
http://seclists.org/fulldisclosure/2013/May/80
It's concerning.
I for once disagree here that such actions are innocent. When peoples private conversation is read and interpreted, even by a machine, most people still get a feeling of lost security. This in turn causes a real problem from lower personal security, increased mental stress, and social self-imposed restrictions.
A server is a black box controlled by someone else. They may tell you it'd doing X but there's no way to verify that.
Deleted comment
Well obviously, a machine is reading your confidential messages, if only to scan them for links. In the most benign case, the link scanning could be done in the skype client (closed source software on your machine), and MS's servers are seeing a list of links + an encrypted message.
But we just don't know, do we?
Pidgin supports OTR, but it crashes enough to raise concerns about that last point.
This isn't so much a "how can I be secure" question, but a "what alternatives to Skype do I have that work on Linux" question.
Which is one I'm also interested in, since I also want something thats (1)linux compatible, (2) easy and accessible for "average users" of any OS, (3) and secure. And I'm hoping for those things in that order.
For real-time text chat you can try Cryptocat: it's cross-pratform, implements the OTR protocol [1] and is rather user-friendly.
I realize I could probably use Yate for everything, but I know asterisk and openfire better at this point, so I use them. :)
http://www.fastcolabs.com/3007320/tracking/bitcoin-coming-br...
THINK GOOGLE RESPECTS YOUR PRIVACY? THINK AGAIN.
Google goes through every Gmail that's sent or received, looking for keywords so they can target Gmail users with paid ads. And there's no way to opt out of this invasion of your privacy. Outlook.com is different—we don't go through your email to sell ads.
That is not acceptable. If you think there is a virus in a URL, attach a warning as web browsers do with domains that have had reports of distributing malware. And beyond that, actually make sure that you only do this for sites that are really a danger, rather than making up arbitrary rules with exceedingly low precision.
Side Note: I wouldn't be surprised if google chrome submits url and page content to googlebot (for crawling).