Fun

Proton Mail exposing activist's info showed the limits of encryption

News Feed - 2024-05-18 02:05:18

Alexander Linton6 hours agoProton Mail exposing activist"s info showed the limits of encryptionAn April report revealed that Proton Mail assisted Spanish police with locating one of its users, leading to questions about its guarantees of privacy.1141 Total views5 Total sharesListen to article 0:00OpinionOwn this piece of crypto historyCollect this article as NFTJoin us on social networksProton AG — the Swiss company behind Proton Mail, the popular encrypted email service — came under fire in April for complying with a request from Spanish police for information about one of its users — a Catalan pro-independence activist.


It’s obvious why that was a controversial move. It feels gross when the “good guys” get “sold out” by a company that promises privacy. But if you’re pissed off at Proton for complying with legal requests, you need to reassess your fantasies about privacy tech.


We all love encryptionand its attached ideals. But encryption isn’t a panacea, and the more we encrypt, the more metadata matters. When it comes to privacy, metadata is an exercise in minimization — but centralized services have natural limits on how mini they can make their metadata collection.


Related: Big miners pose a growing existential threat to Bitcoin


Proton has done an amazing job limiting access to user metadata. They should get a pat on the back for building a system where all they can provide is an optional recovery email. (In this case, the company provided their user"s recovery email address, which led police to their Apple account.) Instead, they’ve been met with online anons brandishing “Cancel Subscription” buttons and ominous headlines that begin with “Is Proton…” and end with question marks.The Platonic ideal of privacy tech


The fantasy goes like this: privacy company receives formal legal request from authorities, privacy company flips off authorities, privacy company delivers news of triumph to the frenzied cheers of their fans. This expectation has reared its head multiple times, including another ProtonMail case from just a couple of years ago.


But the fantasy is delusional and self-destructive.


If Proton took this route, they’d be met with crippling legal pressure which would set the sun on the entire company rather quickly — and then we’re down to just a couple of established encrypted email providers. That’s not a useful outcome for Proton, Proton users, or privacy at large.FreedomTech editor SethForPrivacy defended Proton Mail in a post on X, writing thatthe case had "proven" Proton"s architecture "minimizes the amount of data they have on any user."


Proton is well aware of this, so the reality is they complied with almost 6,000 legal requests in 2023 alone. Once the shock of the news wore off and steady hands like SethForPrivacy weighed in, more people accepted that outrage wasn’t really warranted nor was it helpful.Blaming opsec is a copout


As the story cooled down, Proton defenders pointed out that deanonymization was only possible in this case because an opt-in recovery email was provided. They say it’s actually the activist’s fault for having leaky operational security (opsec) — but this is just another unproductive iteration of the blame game.


We can’t just end this story with, ‘Oh well, you just have to have better opsec than that.’


The core question is: Can we do better?


Encryption is our baseline. We should use it, we should advocate for it, we should protect it. Proton has this andminimal metadata collection, so we’ve got a good foundation to work with here.


On top of this, the sage advice is to access Proton with a VPN/Tor (importantly, notProtonVPN) and pay for your subscription using crypto. This message spread far and wide over the last couple of weeks — but it’s not new advice, and we’re still seeing cases like our Catalan activist pop up. People will get left behind if services require manual user hardening, and sometimes they’ll be the same at-risk people we’re trying to protect.


In the Catalan case, an email provided to sign up for an E2EE messaging app, a recovery email provided to a secure email service, and an iCloud email were the puzzle pieces required for deanonymization. These are small mistakes that anyone could make, but together they create a metadata breadcrumb trail that can be followed with relative ease.Potential for decentralization in limiting metadata collection


Our goal should be to create tooling which is hardened out of the box, and to make damn sure any options that might jeopardize privacy are clearly described in-situ.


Perhaps decentralizing parts of the system could help us take things a step further than Proton. Decentralization is a meaningful way to reduce the amount of data that a centralized company actually needs to process in order to offer a service.


For example, building applications on top of decentralized networks capable of storing or routing the data required for a service. For an email service, that would mean storing and forwarding the mail itself — including vulnerable metadata such as subject lines and mail timestamps. That decentralized network layer would employ more advanced privacy-preserving techniques like onion routing, too. This way, a user’s IP would be better protected even if they’re not using a VPN. There are already some networks like this — such as Tor — but we’ve got similar networks that are secured and incentivised by blockchain, like the Nym mixnet.


Related: Welcome to the United Kingdom — Please hand over your crypto


Networks like Nym are generalisable for data-routing needs, and they already provide software development kits (SDKs) for integrating into third-party applications. Mixnets are pretty slow, so this might not be a good solution for instant messenger or conferencing services, but for email — it might work.


The storage side of things is more complicated, app-specific networks, like the Session Network (used by the messaging app I work on), offer ephemeral message storage in a decentralized way, but this won’t suit email — which is a de facto record-keeping utility for a lot of people.


This limitation combined with spam filters and the email mafia might make a top-to-bottom decentralized email service impractical — although it won’t stop people from trying — but we can absolutelymake this work for other communication tools, like messaging, video and voice conferencing, and team communication platforms (like Slack and Discord).


In the end, legal requests are going to keep on coming — and companies are going to keep complying. It’s the way it has to be. But in cases where safety and security is critical, purposeful decentralization could offer an extra layer of protection that is vital for at-risk people.


Proton — people have already designed and built solutions that could be useful for you and your users. We can help, all you have to do is call (or, I suppose, send an email).Alexander Linton is a director of the encrypted messaging app Session and its nonprofit foundation OPTF. He obtained an undergraduate degree in journalism from RMIT University before attending the University of Melbourne for graduate school.


This article is for general information purposes and is not intended to be and should not be taken as legal or investment advice. The views, thoughts, and opinions expressed here are the author’s alone and do not necessarily reflect or represent the views and opinions of Cointelegraph.# Blockchain# Government# Security# ProtonMail# Privacy# Spain# Encryption# Email# OpinionAdd reaction

News Feed

Pundit Says XRP Price Will Stabilize At $1,000 And Become ‘Very Expensive’
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Cointelegraph Innovation Circle9 hours ago16 tips for managing the business development side of scalingTo successfully scale, crypto and blockchain companies need to know as much about business development as they do abo
Forget about Ethereum ETFs — Here's what you can do instead
Alex O’Donnell2 hours agoForget about Ethereum ETFs — Here"s what you can do insteadSpot Ether ETFs were supposed to set the gold standard for ETH investing. Unfortunately, they still aren"t allowed to offer staking.
Marcel Pechman7 hours agoDoes high US consumer debt benefit Bitcoin price?Cointelegraph analyst and writer Marcel Pechman breaks down consumer debt and why it might lead to a good outcome for BTC.1243 Total views51 Total
Solana to $1K seems unlikely, but network fundamentals forecast $190 SOL
Marcel Pechman5 hours agoSolana to $1K seems unlikely, but network fundamentals forecast $190 SOLAnalysts forecast $300 to $1,000 SOL, but network data suggests that a rally to $190 is a more realistic expectation.3578 T
Free TON and Dune Network to Merge Following Successful Vote, Free TON Gains Top Researchers
Free TON and Dune Network to Merge Following Successful Vote, Free TON Gains Top Researchers Free TON is a community driven blockchain network with a focus on de
Antonio Juliano steps down as CEO of dYdX
Ana Paula Pereira8 hours agoAntonio Juliano steps down as CEO of dYdXThe decentralized exchange is now led by Ivo Crnkovic-Rubsamen, a former trader and dYdX chief strategy officer.1797 Total views10 Total sharesListen t
Brian Quarmby1 hour agoNifty News: NFT restaurant crumbles, Binance NFT ends Polygon support and moreThe restaurant was being built alongside a private members lounge that was only open to people who bought NFTs, but ris
Dogecoin Whale Bets $21 Million After $2.14M Profit – What’s Going On?
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Skybridge Expects Bitcoin to Reach $300K in 6 Years — ‘You Are Going to See a Lot More Commercial Activities’
Skybridge Expects Bitcoin to Reach $300K in 6 Years — "You Are Going to See a Lot More Commercial Activities" Skybridge Capital is “pretty optimistic” about bitcoin
Crypto Exchange Garantex Co-Founder Arrested In India Over Extradition Request
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Invesco Strategist Warns the Fed Is ‘Playing a Dangerous Game’ That Could Lead to ‘Significant Recession’
Invesco Strategist Warns the Fed Is "Playing a Dangerous Game" That Could Lead to "Significant Recession" The chief global market strategist at Invesco, a global investment firm wi