Looking for a good social proof solution following Keybase's acquisition this morning? Check out @wiktor's decentralized solution built on PGP! I'm setting my key up now 😄

@matrix any idea when the riotX update with cross signing will land on fdroid?

Great security news: We are currently working on enabling MTA-STS for custom domains in Tutanota. Thanks to #LetsEncrypt, you will only have to add two DNS entries - everything else will be handled by us. 😀🎉


Riot Web/Desktop 1.6 + RiotX Android 0.19 + Riot iOS 0.11 IS HERE!!! E2E Encryption by default, Cross-signing & QR-codes for Device Verification, All New E2EE UI/UX + SO MUCH MORE making this our biggest release EVER! E2E will never be the same again 🎉🚀🍾


🔐 💻 Privacy tools "...enable journalists to pursue and tell the truth, without fear or favor. And not just in the U.S., but globally. We should empower and enable this work, not sabotage it by removing crucial capabilities, even in the name of child protection."

The 9.5a11 alpha version of @torproject's browser ships with support for announcing your Onion site from your regular website via the "Onion-Location" HTTP header. For Nginx users: `add_header Onion-Location x.onion$request_uri;` and you're done.

@Tutanota Are there any plans to have your new encrypted calendar audited by a third party?

“Protecting Your Privacy With a Virtual Machine While Using Zoom” by @dngray is live and explores all sorts of privacy flaws with the communications software businesses seem to love! Read more on the blog:

Zoom's encryption has some major flaws, is "not suited for secrets", and Zoom has servers in China generating meeting encryption keys for users in other countries, Citizen Lab researchers discover (by me)

Looking further, if you click on one of the links below, like the security link, it will bring to you to the official github security page.

Then, if you fill in anything for a name and password, like shown below, it will just forward you to githubs own homepage (were you can notice that your still not logged in)

Sure "github", ill click on your link, this is obviously not a phishing attempt /s

@micahflee question, have you ever considered to add a functionality to Onionshare where you can just paste the link into their own onion share, and let it download the file on its own, so people dont have download and open the link in tor browser?

