Hacker News new | ask | show | jobs
by whoo 2340 days ago
Have you considered how proton mail filters spam? It has to be stored in memory for this to happen before it's encrypted and flushed to the disk.

Unless your emails are encrypted for you on someone else's client before they're sent to your protonmail, in which case protonmail still has all of the metadata (time sent, where it was sent from, length of the message, etc.)

Do you believe proton mail can keep state level actors like Russia, China, and the United States out of their prod infra?

They may be "mostly" subpoena proof as in they can't disclose old emails, but do you trust them to not hand over your data before it's encrypted?

1 comments

Do you use protonmail? I do, and I'm finding it actually refreshing to see spam and phishing emails in my inbox. At first I thought, why aren't they blocking this? Then I realized, "oh right, that's because they aren't reading it".

> Do you believe proton mail can keep state level actors like Russia, China, and the United States out of their prod infra?

No, I don't believe they'll be able to keep state actors out of their servers indefinitely. But it's more a matter of what the state actors find once they've gained access. As I understand it, the architecture of the service is what prevents protonmail themselves, as well as any intruder, from reading the encrypted mail files[0].

[0] https://protonmail.com/security-details