EFF Warns That Email Privacy Is In Jeopardy
MojoKid writes with this excerpt from HotHardware:
"According to the Electronic Frontier Foundation (EFF), a
dangerous legal precedent has just been set that can potentially unravel existing federal privacy protections for e-mail and Internet usage. The alert from the EFF is not just to sound a general warning, but it also takes the form of an Amicus curiae (friend of the court) brief, filed with the federal 9th US Circuit Court of Appeals, asking for the court's legal finding to be overturned... The findings of this case
could become the foundation of a legal precedent upon which other similar cases can subsequently be based. If that were to be the case, then the unauthorized retrieving of e-mails from an e-mail server would not be considered a violation of the federal Wiretap Act, which
will then open the door for government-sponsored snooping."
Not to be flippant, but does anyone really believe there is any privacy anymore with simple, unencrypted email? Don't get me wrong, I'm glad the EFF is on the case. But it does seem to me that any expectation of privacy in any communication medium here in the USA went out the window with the news of the NSA telco backdoors. Our government is obsessed with spying on everyone, and they have demonstrated quite thoroughly they don't care about the rules at all.
Caveat Utilitor
Even if breaking in houses is illegal, I still have a lock on my door. Why? Because some people don't care about the law.
Even if snooping on e-mail is illegal, you still need to encrypt your mails. Why? Because some governments don't care about the law.
Knowledge is power. Knowledge shared is power lost.
... to maintain your own mail server.
And how does maintaining your own email server help? Those outgoing mails are going to somewhere right? And the incoming ones arrived from somewhere? Then they're likely being transmitted in the plain somewhere along the line.
Unless you encrypt the messages themselves, you're on your own. Having your own mailserver, which I do, simply doesn't help with this problem.
Cheers,
Ian
Install Thunderbird, GnuPG and the EnigMail extension.
Then let RIAA defend you, (ducks and covers ).
Working in the health care field as an IT admin exposes me to lots of HIPAA crap. One thing you learn on day one is that EMAIL IS NOT SECURE. And if it is not secure then considered public. I have no expectation that email is private UNLESS IT IS SECURE. This is why emailing of patient data is forbidden. It would sure make life easier if it were.
Conservative, mod down for violating
I have discussed this issue with some friends who seem to believe that Obama will reverse the current warrantless surveillance practices. If history is to serve as a guide, it seems clear that he will not. I am convinced that contacting our legislators and voting for Democrats are two of the least effective means of protecting our rights. Indeed, the most effective way of protecting our rights is by asserting them. We as Americans have the responsibility of actively protecting our rights, rather than depending on the ineptitude and conflicted interests of our elected officials. This is why I propose not only opportunistic encryption, but also what I call gratuitous encryption. This means the ubiquitous use and advocacy of PGP, SSH, SSL, VPNs, tor, full disk encryption, and every other tool we have at our disposal.
Check out this page for ways to assert your rights.
Grabbing a message from the stream is not that hard. Yes.
Getting access to a pile of email that was sent over the course of days to years, I believe, is a much bigger issue. The stream takes good timing, access and preparation. Access to inbox or other folders of an entire email collection is scary. If the private sign leaves the stored email it will allow providers to do what they will with these email documents in the collections of users. Sending a message to a friend about a need for a product could turn into a barrage of ads for same or competing products. Storing old messages with idle threats with a buddy could turn into law suits. There could be corporate theft of ideas and more. How about getting fired from a job for idle discussions of other things you think about regarding other lines of work or even a competing company. Then there are the criminal cases that could be setup against you for some idle "what-if" messages with a child, friend, or co-worker. Information and insight about an individual could cause all kinds of difficulties in the wrong hands. If I wanted someone to be party to a conversation, I would have sent the message to that party when I wrote it.
Email server ownership is a big help in these times. "Guilty until proven Innocent" is the opponent of privacy laws and practice. I do not have the time to waste proving every little aspect of my life was not a crime just because someone came into a conversation late, reading their own storyline into my existence. As it is now in consumer America, I have to open boxes at the checkout counter just to ensure the actual item purchased is in the box, and not just floor tiles. I also have to call phone and credit companies over charges that were added in error. Do I need to mention the corrections on food from a drive through, even after seeing the list in perfect order on the screen before getting to the window?
Do not add to my itinerary, as it is full.
Time to revive the good 'ole FIDO mail system and BBS technology. This is not such a bad thing though as it is NOT the internet - it's the phone lines. Hmm .... Oh well, so much for freedom. It was nice while it existed.
Still, one can PGP that style of mail easily and it is by today's standards pretty secure in it's travels to and from. The phone company is involved though so look out. Short of floating our own satellites and running the entire thing end to end, there is NO WAY ANYTHING WE DO from this point on is beyond scrutiny or observation, "we" being those that still believe in the Constitution, Bill Of Rights, etc. and they that watch and record are those we think we'd like to avoid.
I work a FL county GIS and in 1998, our aerial maps were good enough that we zoomed down to look in the back of a co-worker's pickup truck and could easily read "Budweiser" on the case of beer in the truck bed. We were told that the military had these same maps but in 4 or 5 stages better resolution! THAT was 10 years ago - now it's LIVE.
I ran a multi-line BBS for 15 years and hubbed mail for FIDO most of that time. The mail "bags" came in, got sorted and went back out. It was true store and forward technology and with today's packer and encryption options, I believe that FIDO could once again offer relatively secure email. It would take a network though and with each added "node" would come potential trouble. Who's to say that hub in New Hampshire is not the FBI? With the right email client software, the playing field could be vastly leveled - are you listening Santos's?? End to end PGP enabled mail times the quantity factor would be REALLYPGP and the hardware that would have to be dedicated to breaking all that mail would be ridiculous. All this could run on old time BBS systems. Imagine this - NO SPAM (yet).
Rx --> Doctor Smith