Mr.Crinklewood wrote: http://www.hushmail.com/
ishotjr2 wrote: » No, see your point. My point was only about Skype IM not being encrypted.
Ever since Skype was launched, we have said it is, and will remain, secure. Your Skype-to-Skype calls, chats and other communications are end-to-end encryped.
ishotjr2 wrote: » Hi I would say zip passwords are a moderate level of inconvienance. Really a public private key is needed.http://zip-password-cracker.com/http://oldhome.schmorp.de/marc/fcrackzip.html Once you can hammer away at a cipher someone only needs the motivation and a computer built in the last 5 years. But convieniece is a drawback of public/private.
The weakness of the old encryption was due to the weakness of the chosen encryption algorithm. Nowadays one can use industry grade encryption via 'AES', which is used everywhere (and is under heavy attack but as it seems pretty hard to attack). As the site you cited stated: now the weakest spot is in the passphrase and the rules you mentioned especially address that problem. Theses rules do not apply to the passphrase for the old encryption, since that old encryption was very weak in itself, no matter if you choose a good password or not. The statement of "the problem is removed due ..." is not true, since the real solution to encrypt ZIP files securely is to choose a strong encryption algorithm AND a strong password. The strongest password is worth nothing if the encryption algorithm is weak. Read also http://www.info-zip.org/FAQ.html#crypto and http://www.topbits.com/how-can-i-recover-a-zip-password.html
PeterHughes wrote: » Outlook supports encryption, all you need to do is generate the encryption keys. There are loads of free sites to do PGP key generation The person you are sending to has to create their own PGP Keys, one public and one private. They then give you the public one and you use it to encrypt the email in outlook. There are others that cost a bit of money to setup like
Peter91 wrote: You should look at TrulyMail. They have a way to send encrypted messages to someone who does not use their software.
Dude111 wrote: » Hushmail does the same
Dude111 wrote: » Yes but thats only if a court order is recieved! (Im sure Trulymail would comply with that also or risk being shut down)
bedlam wrote: » This seems just like IronPort and Voltage's offerings
bedlam wrote: » 27 seconds into the video you linked to above shows that to not be true. "Encrypted package (decryption key stored on TrulyMail server)" The other two option are "not encrypted" and "encrypted with a preshared password". The latter of these is the only way you can prevent TrulyMail from decrypting but you still have to securely get the preshared password to your recipient somehow...
bedlam wrote: » to use this option the recipient needs to also have the TrulyMail software which is Windows only, so is really less useful than GPG/PGP as it's a one OS solution.
bedlam wrote: » So to use TrulyMail you have to either : 1) Use their software which limits recipients to Windows OS 2) find a way to securely get the web message password to the recipient and have the sender pay a fee.
Peter91 wrote: As I understand from them, all encryption (and decryption) happens on the client with public keys. They never have the private keys to decrypt so, even given a court order, I don't think they *could*.
Dude111 wrote: » The US Govt would tear them apart im sure,theres gotta be some clause or something
bedlam wrote: » Unlinke PGP/GPG which has been well scrutinised [...] Now 'scuse me while I go back to sending encrypted email to my self seeing as no one else will