Yes, it's hard to convince common ppl to use even Protonmail or Signal, and PGP is out of the question. I bet your friend won't be happy to even that password protected mail, so eventually you'll use Proton w/out E2E encryption w/ them, but incoming messages will be encrypted before it is stored in Proton's server so there's still a little benefit. Even if you could persuade them to use Protonmail, it's likely they use poor password so all your communication can be compromised even by script kiddy. So I also use Proton like you mentioned. Make sure she and you use strong password, ideally 110+ bit of entropy (around 20 char including upper + lowercase, numbers and sp char).
I have 5 accounts at Gmail, an ISP email (using Thunderbird), a couple I never use at Yahoo mail and now one at Proton. (And 3 or 4 others that I never use.) So far I am very impressed with it. Everything I now sign up for that needs an email address goes to Proton. I am very impressed with it so far. Email user since the early 80's so I have been around the block a few times. I have also played with their VPN but the free service is too limited for me in terms of servers available. I may break down and subscribe.
Group Tied to Russia Attacked ProtonMail https://www.infosecurity-magazine.com/news/group-tied-to-russia-attacked/
I'm not at all impressed with ProtonMail, these days. Now, if you create an account via Tor, it won't activate unless you do SMS verification, or provide a credit/debit card. That's basically the same as Google or Twitter. Apple doesn't do that.
No. I no longer use email for personal communications. My email mostly gets statements from banks, professional communications, etc. I use fastmail provider, it won't sell your info to advertisers and it has been around since 1990s so it probably won't close on you anytime soon.
ProtonMail DDoS Attacks Are a Case Study of What Happens When You Mock Attackers https://www.bleepingcomputer.com/ne...tudy-of-what-happens-when-you-mock-attackers/
I setup a 3 VPN chain and verified with a junk email address, which I have never returned to since the day I made the PM account. TOR all the way now! Just how I did it!
ProtonMail CEO: ‘The attacks are continuing’ https://www.fifthdomain.com/critica...02/protonmail-ceo-the-attacks-are-continuing/
No, it seems to be a DDoS-as-a-service that they insulted. Who is now making them an example, given all the publicity.
I'm a paid subscriber to their VPN, it's fast and the paid server list is good and getting better. I didn't even notice the DDoS attacks all that much. It went down briefly once and it seemed a bit slow for a couple of days. I barely use the mail. Same issue as everyone else, why use an encrypted mail service when literally no one I know uses one.
It's worth reading up a bit about ProtonVPN if you haven't already, there have been some shady reports in the past few weeks. https://www.bestvpn.co/protonvpn-is-scam/ (This is the best summary of the proof, but don't click any of the affiliate links or even bother with the rest of the site... buy direct from the VPN provider instead) http://archive.is/6N0Km (Thread from their subreddit where they respond to claims, thread was later deleted) https://news.ycombinator.com/item?id=17258203 (This is a much efficient way of reading the evidence about ProtonVPN potentially being a data mining company)
Damn. PIA's CEO claims that ProtonVPN and Tesonet (a data-mining firm) have the same CEO. He also claims that Tesonet and NordVPN are linked. From https://archive.fo/6N0Km And ProtonMail admits it: I somehow missed that in the HN thread
And what is Tesonet, anyway? Well, from https://tesonet.com/about/ it seems that they're basically a VPN service: Could that be ProtonVPN? Or maybe VPN infrastructure that's being resold as ProtonVPN? And as NordVPN? And maybe as other VPN services? Interesting research topic There's also a VPN service that caters to businesses wanting to "spy" on their competitors. That doesn't sound so bad, really. I mean, that's a major application for VPN services. And it's hardly the sort of "data mining" that should worry ProtonVPN customers. So now I'm thinking that this whole thing is FUD from PIA, and just an attack on ProtonVPN and NordVPN.
OK, discovery time If I create an account at https://protonirockerxow.onion/ there's no demand for a mobile number or credit/debit card. So actually, they're just like Facebook, in that regard. If you create an account via Tor, using their clearnet website, you must authenticate extensively. But if you create an account via Tor, using their onion, only email authentication is needed. Is that inconsistency? Or an intelligence test?
What business does the CEO (of all people) of a company that sells dirt cheap VPN (suspicious) that's incorporated in the USA (lol) supporting insecure protocols (PPTP/etc) have trying to throw muck at not 1 but 2 competitors at the same time? Someone is feeling the heat of competition I see.
A motivation for the mudslinging or charges? This was stated just prior to the PIA claim: https://news.ycombinator.com/item?id=17256498
Correct. One reason I probably never notice mentioned "glitches" is that I onion all the time with PM. Admittedly some days the onion network is slowwww as can be, but most days I find it acceptable. I prioritize the way my moniker emails are handled MORE than my lightning fast real name email accounts. I also like how PM utilizes their TOTP two factor. You simply create the needed base 32/QR for the task and nothing ever gets sent to any phone you have. In my case PM has not and will never even have a phone number for me. You can run TOTP on an old phone or a Yubikey and NEVER communicate anything specific to that device. Not U2F but its close when there is nothing sent by them to you for the authentication. All onion and pretty private.
I've been digging into this a lot on Google, definitely no hard proof. https://www.meetup.com/ProductTank-Vilnius/members/187223327/ Notice the person says that their product is "NordVPN". Coincidence that NordVPN has an employee where Tesonet is based out of? -- NordVPN appears in PayPal billing as "PAYPAL *UAB TESONET ON" Source: http://chargesure.com/c/paypal-uab-tesonet-on -- Will let you know if I turn up anything else...