soc.octade.net is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin email
social@octade.net

Search results for tag #pgp

[?]InnocentZero » 🌐
@innocentzero@social.tchncs.de

Ok folks, what's the closest thing to an but entirely like signal.

Surely I'm not the only one thinking of it? Others would have thought of something before me right?

And no, protonmail/tuta/whatever doesn't count.

I mean, there's so much work on decentralized E2EE, is even somewhat functioning in this matter (leaving cryptographic security aside, let's just use libsignal), then how is this not a thing no matter how far and wide I look for it?

Again, traditional email + is not a solution. It's been looked down upon by every practically every cryptographer.

    [?]Light » 🌐
    @light@noc.social

    You know what will be a great idea for ? If you could put fingerprints in a mailto link.
    Then you could just click on the link on someone's website and it would automatically encrypt the message.
    And it's easier to trust the PGP key.

      1 ★ 8 ↺

      [?]OCTADE » 🌐
      @octade@soc.octade.net

      @cypherpunk@soc.octade.net @cryptography@soc.octade.net @crypto@infosec.pub @cryptography@fed.dyne.org

      Al Gore Invented the Internet.
      Joe Biden invented PGP encryption.
      Cypherpunks write code.

      Joe Biden gifted humanity with PGP encryption (in a roundabout way). Phil Zimmermann created PGP in response to a anti-privacy bill clause proposed by Senator Joe Biden.

      https://www.americanscientist.org/article/cypherpunks-write-code

      "In 1990, the FBI launched an over-the-top crackdown on computer hackers, known as Operation Sundevil. This was swiftly followed, in early 1991, by a proposed piece of U.S. Senate legislation that would force electronic communications service providers to hand over people’s personal data. (The key clause, S.266, was pushed by the then chairman of the U.S. Senate Judiciary Committee, Senator Joe Biden.)"
      "On learning of Biden’s S.266 clause, Zimmermann feverishly set out to complete the project, almost losing his house in the process. When he finished his software in 1991, he published it all online, free for anyone who wanted to use it. He called it “Pretty Good Privacy,” or PGP for short, and within weeks it had been downloaded and shared by thousands of people around the world. “Before PGP, there was no way for two ordinary people to communicate over long distances without the risk of interception,” said Zimmermann in a later interview. “Not by phone, not by FedEx, not by fax.” It remains the most widely used form of email encryption to this day."
      Joe Biden's first panopticon bill:

      https://www.congress.gov/bill/102nd-congress/senate-bill/266

      "SEC. 2201. COOPERATION OF TELECOMMUNICATIONS PROVIDERS WITH LAW ENFORCEMENT. It is the sense of Congress that providers of electronic communications services and manufacturers of electronic communications service equipment shall ensure that communications systems permit the government to obtain the plain text contents of voice, data, and other communications when appropriately authorized by law."
      As they say in Texas: That dinosaur don't hunt.


        OCTADE boosted

        [?]Blue Ghost » 🌐
        @blueghost@mastodon.online

        Delta Chat is a messaging platform that works over email.

        Setup is similar to a email client.
        Messaging is decentralized and interoperable.

        Supports end-to-end encryption via PGP.
        PGP encryption keys are created automatically.

        Default desktop client is based on Electron.
        Electron is based on the Google Chromium web browser.

        Website: delta.chat
        Mastodon: @delta

        Delta Chat logo.

        Alt...Delta Chat logo.

          OCTADE boosted

          [?]Mark Deasy 🍉 » 🌐
          @MarkDeasy@aus.social

          Happy to report that about a year after getting a mate to communicate using Signal instead of WhatsApp, we just today made the progression to securing our emails via pgp. 🥳

          He was already using Thunderbird as his email client, and although just a few clicks it was a James Bond meets Bill Gates moment when we sent and received encrypted, signed emails to one another. 🤓

          [Per the anarchist theory of practice] I remain convinced this practice of changing how we behave on the internet with intention will continue to change the people engaging in it. Digital prefigurative politics, nibbling away at surveillance capitalism one little data set at a time.

          Slowly slowly catchim' monkey...... 🐒

          Happy days. 😀

            5 ★ 3 ↺

            [?]OCTADE » 🌐
            @octade@soc.octade.net

            How to Upgrade GnuPG to Generate Kyber and Goldilocks Keys

            I see some people still using ancient PGP keys. GnuPG offers Linux repositories for updating to the latest versions of GnuPG with new expert features for key generation. Recent versions support both Kyber1024 and Goldilocks448 keys (and more).

            Once installed run: :~$ gpg --full-generate-key --expert

            New GnuPG Repositories for Debian, Ubuntu, and Devuan: Stable and Development Branches Available

            https://www.gnupg.org/blog/20250827-new-repository.html


              4 ★ 8 ↺

              [?]OCTADE » 🌐
              @octade@soc.octade.net

              PGP is /decentralized/ unlike other popular encrypted messaging systems.
              "Despite advancements in secure messaging, PGP (Pretty Good Privacy) encryption—developed in the 1990s—remains a gold standard for privacy. Unlike modern apps reliant on centralized servers or phone numbers, PGP ensures end-to-end encryption without third-party dependencies. This article explores PGP’s enduring relevance, key management best practices, and how it compares to contemporary solutions like Signal."
              More: https://undercodetesting.com/why-pgp-encryption-still-outperforms-modern-messaging-apps/


                [?]kkarhan » 🌐
                @kkarhan@infosec.space

                @koteisaev @craignewmark not necessesarily.

                The problems re: @delta / and/or @thunderbird may be caused by providers either actively blocking /MIME and/or inline-, having extremely tight quotas and/or filtering / .

                • At least from my experience...

                  [?]kkarhan » 🌐
                  @kkarhan@infosec.space

                  @craignewmark Maybe go hard on advocating for /MIME & +?

                    [?]kkarhan » 🌐
                    @kkarhan@infosec.space

                    @mechanix @delta @randy_ @gaufff precisely!

                    Personally, I feel confirmed to not use & & options like @signalapp / which by virtue of collecting in the form of are at best if nit a blatant ...

                    Anything else doesn't work!

                    • The only way you can guarantee your is by actively enforcing and using them in the most aggressibe way possible that doesn't infringe upon others' rights...

                      [?]kkarhan » 🌐
                      @kkarhan@infosec.space

                      @mrmasterkeyboard @arnan if there's one thing I'd wish for, it's a / based " Suite" with like:

                      But that's just me wanting to be able to work entirely on @os13379one day...

                      mastodon.social/@mrmasterkeybo

                        [?]#FreeSchool <---> Hashtag » 🌐
                        @freeschool@qoto.org

                        [?]kkarhan » 🌐
                        @kkarhan@infosec.space

                        @KirbySSM (as in messages) never were private!

                        And thus + & /MIME are the only.option, because unlike and others they can be setup and run in away they can't snitch on users!

                          [?]kkarhan » 🌐
                          @kkarhan@infosec.space

                          @ferret THIS is why I don't trust anyone - espechally not like @signalapp - and recommend everyone to use real like + & /MIME.

                          Obviously, the highest security is having your own server under your bed to be able to yeet all data with a single command.

                          • And yes, I did also setup the latter for in one case where being able to wipe an account remotely was necessary.

                            [?]kkarhan » 🌐
                            @kkarhan@infosec.space

                            @blueluma well, there are that are truly and allow for real without bs.

                              [?]kkarhan » 🌐
                              @kkarhan@infosec.space

                              Imagine This:

                              You are security researcher
                              You don't have a pubkey nor + setup
                              You insist on using and/or and/or

                              What are you?

                                [?]kkarhan » 🌐
                                @kkarhan@infosec.space

                                Seriously folks:

                                1. learn fucking , & cuz

                                2. every service that demands like a is inherently insecure &

                                3. a lot of places criminaloze & demand for any Phone Number.

                                4. It is your moral duty as to foster and.normalize that are in fact secure, like + & /MIME.

                                5. there's no excuse to not use @torproject / when tools like @micahflee's and @tails_live / @tails / exist.

                                6. is not negotiable!

                                  [?]kkarhan » 🌐
                                  @kkarhan@infosec.space

                                  @nominom all clients are shit.

                                    [?]kkarhan » 🌐
                                    @kkarhan@infosec.space

                                    @wyatt : There's no valid excuse not to provide because and can and should be checked otherwise (i.e. signatures)...

                                      [?]kkarhan » 🌐
                                      @kkarhan@infosec.space

                                      @micahflee good Idea, tho I'd use + or /MIME for the former and for the latter ...

                                        [?]kkarhan » 🌐
                                        @kkarhan@infosec.space

                                        @sleepybisexual also anything but & is just garbage.

                                        • Personally, I think the only good is -based but very few sites support it.