soc.octade.net is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin email
social@octade.net

Search results for tag #messaging

Guy boosted

[?]heise online English » 🤖 🌐
@heiseonlineenglish@social.heise.de

Encrypted, but wrong: Group chats vulnerable to manipulated content

All members of a group chat should see the same content. The usual chat services do not guarantee this. This is risky.

heise.de/en/news/Encrypted-but

    [?]heise Security » 🌐
    @heisec@social.heise.de

    Verschlüsselt, aber falsch: Gruppenchats anfällig für manipulierte Inhalte

    Alle Mitglieder eines Gruppenchats sollten dieselben Inhalte sehen. Die üblichen Chat-Dienste stellen das nicht sicher. Das ist riskant.

    heise.de/news/Verschluesselt-a

      [?]The New Oil » 🤖 🌐
      @thenewoil@mastodon.thenewoil.org

      oheso boosted

      [?]Miguel Afonso Caetano » 🌐
      @remixtures@tldr.nettime.org

      "In recent years, the Signal messaging app has become a newsroom staple, enabling journalists, colleagues, sources, and others to speak to one another securely with end-to-end encryption. This means no one except those in conversation — not even the service provider — can read your messages or listen in on your calls. Journalists use it individually, and we also see a trend toward using organizational Signal tiplines.

      But it’s important to understand this is not a ”set it and forget it” decision. When talking to sensitive contacts, you do need to maintain your account to ensure it is safe and does not fall into the wrong hands.

      Imagine if someone took over your Signal account. They could impersonate you, causing reputational damage, or worse, putting sources at risk. Unfortunately, this is not a hypothetical. We have seen at least one public example (and some less public) where newsrooms have lost access to Signal identifiers, sometimes leading to abuse.

      There are a few simple things journalists can do to maximize the safety of their Signal account."

      freedom.press/digisec/blog/sig

        [?]knoppix » 🌐
        @knoppix95@mastodon.social

        WhatsApp is rolling out usernames, letting users hide their phone numbers from people outside their contacts for added privacy. 🔒📱
        Users can reserve names now, with optional username keys adding another layer of control before messaging begins. ✅

        🔗 bleepingcomputer.com/news/secu

          [?]𝕂𝚞𝚋𝚒𝚔ℙ𝚒𝚡𝚎𝚕™ » 🌐
          @kubikpixel@chaos.social

          «Your End-to-End Encrypted Messages:
          Aren't As Secure As You Think
          Here's what end-to-end encryption protects—and what it doesn't.»

          I know, this is not a new topic for most of you here, but you can forward it outside of the Fediverse ;)

          💬 lifehacker.com/tech/end-to-end

            [?]Indigo Privacy » 🌐
            @indigoprivacy@mastodon.social

            WhatsApp is adding usernames — message people without either side seeing a phone number. Your number unlocks a lot of personal info; a username keeps it private from other users (not from Meta). Reserve yours: Settings → Account → Username.

              JJDavis :terminal: boosted

              [?]knoppix » 🌐
              @knoppix95@mastodon.social

              UK device-scanning proposal for nude image detection draws Signal criticism over mandatory on-device inspection and expanded age verification across phones and apps. 📱
              Signal warns the plan risks normalizing client-side surveillance and weakening private communication protections under encrypted messaging systems. 🔐

              @signalapp

              🔗 techspot.com/news/112712-signa

                [?]:awesome:🐦‍🔥nemo™🐦‍⬛ 🇺🇦🍉 » 🌐
                @nemo@mas.to

                :boost: :boostplease:

                Four easy steps to elevate your privacy & security this year:

                Choose a privacy-respecting browser 🌐 Check out: privacytests.org/

                Use a privacy-first search engine 🔎 (Startpage, DuckDuckGo, self-hosted options etc.) further reading: privacyguides.org/en/search-en

                Use privacy-respecting email 📧 (Proton, Tuta, ) further reading: privacyguides.org/en/email/

                Use only E2EE messaging apps 🔒 (cross-platform with minimal metadata: Signal) further reading: privacyguides.org/en/real-time

                You're welcome… spread the word! Sharing is caring 🎁💬

                The gift that keeps on giving: data retention, compartmentalization, FOSS, privacy & security. stick it to them… 🖕Privacy security isn't a sprint; it is a marathon… Even a journey of over 9k steps begins with the first one… 🙏 💚Use E2EE, full-disk encryption, back up, and update…

                :boost: :boostplease:

                Alt...cat eating watermelon

                  Light boosted

                  [?]xoron :verified: » 🌐
                  @xoron@infosec.exchange

                  WhatsApp Clone, but Decentralized with P2P Messaging

                  App: Enkrypted.Chat

                  "Secure and private" is the general goal.

                  This is a technical/concept demo of a fairly unique approach using a browser-based, local-first and webrtc.

                  This is intended to introduce a new paradigm in client-side managed secure cryptography. We can avoid registration of any sort.

                  Features:

                  * P2P
                  * End to end encryption
                  * Signal protocol
                  * Post-Quantum cryptography
                  * File transfer
                  * Local-first
                  * No registration
                  * No installation
                  * No database
                  * TURN server

                  Feel free to reach out for clarity instead of diving into the docs/code.

                  IMPORTANT: While this is aiming to provide a secure experience, it isnt audited or reviewed. **Shared for testing, feedback and demo purposes only.** Please use responsibly.

                    [?]xoron :verified: » 🌐
                    @xoron@infosec.exchange

                    Enkrypted.Chat

                    This is intended to introduce a unique approach in client-side managed secure cryptography. We can avoid registration of any sort.

                    Features:

                    PWA
                    P2P
                    End to end encryption
                    Signal protocol
                    Post-Quantum cryptography
                    Multimedia
                    File transfer
                    Video calls
                    Local-first
                    No registration
                    No installation
                    No database
                    TURN server

                    reddit.com/r/positive_intentio

                    Send Messages Securely. No cloud. No trace.
Decentralized P2P encrypted messaging - No setup required

                    Alt...Send Messages Securely. No cloud. No trace. Decentralized P2P encrypted messaging - No setup required

                      OCTADE boosted

                      [?]Blue Ghost » 🌐
                      @blueghost@mastodon.online

                      Delta Chat is a messaging platform that works over email.

                      Setup is similar to a email client.
                      Messaging is decentralized and interoperable.

                      Supports end-to-end encryption via PGP.
                      PGP encryption keys are created automatically.

                      Default desktop client is based on Electron.
                      Electron is based on the Google Chromium web browser.

                      Website: delta.chat
                      Mastodon: @delta

                      Delta Chat logo.

                      Alt...Delta Chat logo.

                        4 ★ 8 ↺

                        [?]OCTADE » 🌐
                        @octade@soc.octade.net

                        PGP is /decentralized/ unlike other popular encrypted messaging systems.
                        "Despite advancements in secure messaging, PGP (Pretty Good Privacy) encryption—developed in the 1990s—remains a gold standard for privacy. Unlike modern apps reliant on centralized servers or phone numbers, PGP ensures end-to-end encryption without third-party dependencies. This article explores PGP’s enduring relevance, key management best practices, and how it compares to contemporary solutions like Signal."
                        More: https://undercodetesting.com/why-pgp-encryption-still-outperforms-modern-messaging-apps/


                          1 ★ 5 ↺

                          [?]OCTADE » 🌐
                          @octade@soc.octade.net

                          NEWSCARD: Decentralized, Encrypted Paste Bin via Usenet Newsgroups

                          NEWSCARD Publish and fetch permanent named records via Network News

                          Newscard creates a decentralized, encrypted, named record paste bin.

                          [git repo] https://codeberg.org/OCTADE/newscard (use most recent version only)

                          With a single command, name the card, snarf the file and encrypt it.

                          With another command, push the encrypted file to the public network.

                          With another short command, snarf a file from the network.

                          Only users knowing the name [key] of the record will be able to decrypt it.

                          If a strong passphrase is used to name the file, it will be very secure.

                          This is useful for quickly snarfing, encrypting, and publishing a text file:

                          $~: card enc [passphrase] [file]
                          $~: card put [passphrase]

                          It is useful for retrieving a text file with just a key:

                          $~: card get [passphrase]
                          $~: card show [passphrase]

                          If and when you want the general public to access the record just share the keyword.

                          Newscard uses nine (9) (NINE) layers of encryption with OpenSSL chacha20 cipher.

                          Newscard generates 9 each of: cipher keys, salts, key iteration parameters.

                          It would be nice if something like this were added to the ActivityPub protocol, such that keyword[@]host.url would do the same thing. Then secret text records could be stored securely for later retrieval or revelation.

                          @infostorm@a.gup.pe @crypto@a.gup.pe @infosec@a.gup.pe @selfhosting@a.gup.pe

                          Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                          Alt...Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                            3 ★ 6 ↺
                            OCTADE boosted

                            [?]OCTADE » 🌐
                            @octade@soc.octade.net

                            NEWSCARD: Decentralized, Encrypted Paste Bin via Usenet Newsgroups

                            NEWSCARD Publish and fetch permanent named records via Network News

                            Newscard creates a decentralized, encrypted, named record paste bin.

                            [git repo] https://codeberg.org/OCTADE/newscard (use most recent version only)

                            With a single command, name the card, snarf the file and encrypt it.

                            With another command, push the encrypted file to the public network.

                            With another short command, snarf a file from the network.

                            Only users knowing the name [key] of the record will be able to decrypt it.

                            If a strong passphrase is used to name the file, it will be very secure.

                            This is useful for quickly snarfing, encrypting, and publishing a text file:

                            $~: card enc [passphrase] [file]
                            $~: card put [passphrase]

                            It is useful for retrieving a text file with just a key:

                            $~: card get [passphrase]
                            $~: card show [passphrase]

                            If and when you want the general public to access the record just share the keyword.

                            Newscard uses nine (9) (NINE) layers of encryption with OpenSSL chacha20 cipher.

                            Newscard generates 9 each of: cipher keys, salts, key iteration parameters.

                            It would be nice if something like this were added to the ActivityPub protocol, such that keyword[@]host.url would do the same thing. Then secret text records could be stored securely for later retrieval or revelation.

                            @infostorm@a.gup.pe @crypto@a.gup.pe @infosec@a.gup.pe

                            Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                            Alt...Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                              4 ★ 2 ↺

                              [?]OCTADE » 🌐
                              @octade@soc.octade.net

                              NEWSCARD: Decentralized, Encrypted Paste Bin via Usenet Newsgroups

                              NEWSCARD Publish and fetch permanent named records via Network News

                              Newscard creates a decentralized, encrypted, named record paste bin.

                              [git repo] https://codeberg.org/OCTADE/newscard (use most recent version only)

                              With a single command, name the card, snarf the file and encrypt it.

                              With another command, push the encrypted file to the public network.

                              With another short command, snarf a file from the network.

                              Only users knowing the name [key] of the record will be able to decrypt it.

                              If a strong passphrase is used to name the file, it will be very secure.

                              This is useful for quickly snarfing, encrypting, and publishing a text file:

                              $~: card enc [passphrase] [file]
                              $~: card put [passphrase]

                              It is useful for retrieving a text file with just a key:

                              $~: card get [passphrase]
                              $~: card show [passphrase]

                              If and when you want the general public to access the record just share the keyword.

                              Newscard uses nine (9) (NINE) layers of encryption with OpenSSL chacha20 cipher.

                              Newscard generates 9 each of: cipher keys, salts, key iteration parameters.

                              It would be nice if something like this were added to the ActivityPub protocol, such that keyword[@]host.url would do the same thing. Then secret text records could be stored securely for later retrieval or revelation.

                              @infostorm@a.gup.pe @usenet@lemmy.world @crypto@a.gup.pe @infosec@a.gup.pe

                              Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                              Alt...Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.