Post #1901825
2026-05-02 23:02 UTC
@feld @Retreival9096 Systems are only as secure as the most insecure piece. It doesn't matter how secure and well-written your encryption is if there's a gaping security hole in the rest of the code.
Example from two weeks ago: https://cybersecuritynews.com/windows-bitlocker-security-vulnerability/
Replies (2)
-
@Retreival9096@hachyderm.io 2026-05-02 23:31
@mathew @feld Good point, and why I'm concerned
-
@feld@friedcheese.us 2026-05-03 00:33
@mathew @Retreival9096 you should assume the servers are already compromised. Do you trust the encryption or not? If their servers never have access to your private key, what attack vectors are you so concerned about? https://proton.me/learn/encryption/types-of-encryption/zero-access