ioc.exchange is one of the many independent Mastodon servers you can use to participate in the fediverse.
INDICATORS OF COMPROMISE (IOC) InfoSec Community within the Fediverse. Newbies, experts, gurus - Everyone is Welcome! Instance is supposed to be fast and secure.

Administered by:

Server stats:

1.6K
active users

#smime

1 post1 participant0 posts today
Ian Brown 👨🏻‍💻<p>UPDATE: it’s the former. Google says: “When the recipient has S/MIME configured, Gmail sends an <a href="https://eupolicy.social/tags/E2EE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>E2EE</span></a> email via <a href="https://eupolicy.social/tags/SMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMIME</span></a> (just like it does today).” ✅ <a href="https://workspace.google.com/blog/identity-and-security/gmail-easy-end-to-end-encryption-all-businesses" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">workspace.google.com/blog/iden</span><span class="invisible">tity-and-security/gmail-easy-end-to-end-encryption-all-businesses</span></a></p>
Ian Brown 👨🏻‍💻<p>GO GOOGLE! 🥳 <a href="https://eupolicy.social/tags/E2EE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>E2EE</span></a> <a href="https://eupolicy.social/tags/gmail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gmail</span></a> <a href="https://eupolicy.social/tags/SMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMIME</span></a> <a href="https://workspace.google.com/blog/identity-and-security/gmail-easy-end-to-end-encryption-all-businesses" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">workspace.google.com/blog/iden</span><span class="invisible">tity-and-security/gmail-easy-end-to-end-encryption-all-businesses</span></a></p>
Emory<p><span class="h-card" translate="no"><a href="https://snug.town/@ducksauz" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>ducksauz</span></a></span> my lawyers were getting my emails in spam folders and i thought it was because i am self-sovereign on PKI and i use an <a href="https://soc.kvet.ch/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a> cert signed by my offline CA in the safe 😆 but apparently it was just "dmarc is weird gonna quarantine", i need to see if i have it wrong on all of them. hellyeah has been around forever and is at G, so probably okay by association but axiopisty org|com are delivering to iCloud for me.</p>
Luca<p>Does anybody have a good link for a „How to create detailed <a href="https://troet.cafe/tags/thunderbird" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>thunderbird</span></a> logs“? I don’t really get how to do it.</p><p>I need detailed information what decisions Thunderbird „makes“ in terms of <a href="https://troet.cafe/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a>/signatures/verification when opening a mail.</p><p><a href="https://troet.cafe/tags/logging" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>logging</span></a><br><a href="https://troet.cafe/tags/foss" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>foss</span></a><br><a href="https://troet.cafe/tags/mozilla" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mozilla</span></a></p>
Netzpalaver<p>E-Mail-Sicherheit bleibt Dreh- und Angelpunkt der Cybersicherheit</p><p><a href="https://social.tchncs.de/tags/Cybersicherheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybersicherheit</span></a> <a href="https://social.tchncs.de/tags/EMail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EMail</span></a> <a href="https://social.tchncs.de/tags/EMailSicherheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EMailSicherheit</span></a> <a href="https://social.tchncs.de/tags/k%C3%BCnstlicheIntelligenz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>künstlicheIntelligenz</span></a> <a href="https://social.tchncs.de/tags/NIS2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIS2</span></a> <a href="https://social.tchncs.de/tags/OpenPGP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenPGP</span></a> <a href="https://social.tchncs.de/tags/Phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Phishing</span></a> <a href="https://social.tchncs.de/tags/SMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMIME</span></a> <a href="https://social.tchncs.de/tags/SecurityAwareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAwareness</span></a> <a href="https://social.tchncs.de/tags/Seppmail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Seppmail</span></a> <a href="https://social.tchncs.de/tags/Sicherheitsstrategie" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Sicherheitsstrategie</span></a> <a href="https://social.tchncs.de/tags/Verschl%C3%BCsselung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Verschlüsselung</span></a></p><p><a href="https://netzpalaver.de/2025/01/21/e-mail-sicherheit-bleibt-dreh-und-angelpunkt-der-cybersicherheit/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">netzpalaver.de/2025/01/21/e-ma</span><span class="invisible">il-sicherheit-bleibt-dreh-und-angelpunkt-der-cybersicherheit/</span></a></p>
Emory<p>and i use S/MIME with a cert signed by the household authority for KVET-CH and gnupg if people are into that, i really like that Mail.app does a good job with S/MIME. i don't know any other <a href="https://soc.kvet.ch/tags/MUA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MUA</span></a> for <a href="https://soc.kvet.ch/tags/iOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iOS</span></a> that does! </p><p><a href="https://soc.kvet.ch/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a> <a href="https://soc.kvet.ch/tags/emailSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>emailSecurity</span></a> <a href="https://soc.kvet.ch/tags/fastmail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fastmail</span></a> <a href="https://soc.kvet.ch/tags/maskedEmail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>maskedEmail</span></a> <a href="https://soc.kvet.ch/tags/1password" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>1password</span></a> <a href="https://soc.kvet.ch/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://soc.kvet.ch/tags/synology" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>synology</span></a> <a href="https://soc.kvet.ch/tags/mutt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mutt</span></a> <a href="https://soc.kvet.ch/tags/MUAs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MUAs</span></a></p>
George Ellenburg (he/him/his)<p>Hands down the <i>best</i> part about switching away from <a href="https://bofh.social/tags/Microsoft" rel="nofollow noopener noreferrer" target="_blank">#Microsoft</a> <a href="https://bofh.social/tags/Windows" rel="nofollow noopener noreferrer" target="_blank">#Windows</a> and onto <a href="https://bofh.social/tags/LinuxMint" rel="nofollow noopener noreferrer" target="_blank">#LinuxMint</a> is <a href="https://bofh.social/tags/Evolution" rel="nofollow noopener noreferrer" target="_blank">#Evolution</a><span>.<br><br>Evolution blows </span><a href="https://bofh.social/tags/Thunderbird" rel="nofollow noopener noreferrer" target="_blank">#Thunderbird</a> completely out of the water in just about every imaginable sense. If <a href="https://bofh.social/tags/GNU" rel="nofollow noopener noreferrer" target="_blank">#GNU</a> came out with a native Windows version of Evolution they would blow both <a href="https://bofh.social/tags/Outlook" rel="nofollow noopener noreferrer" target="_blank">#Outlook</a><span> and Thunderbird out of the water.<br><br>There simply is no comparison.<br><br>And the best part? </span><a href="https://bofh.social/tags/PGP" rel="nofollow noopener noreferrer" target="_blank">#PGP</a>/ <a href="https://bofh.social/tags/GnuPG" rel="nofollow noopener noreferrer" target="_blank">#GnuPG</a> and <a href="https://bofh.social/tags/SMIME" rel="nofollow noopener noreferrer" target="_blank">#SMIME</a><span> support built-in and out-of-the-box! No add-ons or plugins required.<br><br>I mean, </span><a href="https://bofh.social/tags/Kmail" rel="nofollow noopener noreferrer" target="_blank">#Kmail</a> is nice, but it doesn't even come <i>close</i><span>.<br><br></span><a href="https://en.wikipedia.org/wiki/GNOME_Evolution" rel="nofollow noopener noreferrer" target="_blank">https://en.wikipedia.org/wiki/GNOME_Evolution</a></p>
Emory<p>my former employer's email service thinks S/MIME signed emails are sus and puts my emails into Junk. </p><p>unsigned emails sail into the inbox. who the hell sets up an email service and decides authenticated emails are junkmail lol?</p><p>(no i didn't try p/gnu/PG. i prefer S/MIME cuz it's built-in to Mail.app on everything i own.)</p><p><a href="https://soc.kvet.ch/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a> <a href="https://soc.kvet.ch/tags/encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>encryption</span></a> <a href="https://soc.kvet.ch/tags/smime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>smime</span></a></p>
George Ellenburg (he/him/his)<p><a href="https://bofh.social/tags/AskFedi" rel="nofollow noopener noreferrer" target="_blank">#AskFedi</a> - I need a new <a href="https://bofh.social/tags/SMIME" rel="nofollow noopener noreferrer" target="_blank">#SMIME</a> <a href="https://bofh.social/tags/cert" rel="nofollow noopener noreferrer" target="_blank">#cert</a> for my <a href="https://bofh.social/tags/email" rel="nofollow noopener noreferrer" target="_blank">#email</a><span>. My old cert has been expired for well over a year now it looks like. Oops. ;-)<br><br>Is </span><a href="https://bofh.social/tags/GlobalSign" rel="nofollow noopener noreferrer" target="_blank">#GlobalSign</a> still the recommended <a href="https://bofh.social/tags/CA" rel="nofollow noopener noreferrer" target="_blank">#CA</a><span> for globally-trusted SMIME certs?<br><br>If not, what CA would you recommend?<br><br></span><a href="https://bofh.social/tags/EmailEncryption" rel="nofollow noopener noreferrer" target="_blank">#EmailEncryption</a> <a href="https://bofh.social/tags/EmailSecurity" rel="nofollow noopener noreferrer" target="_blank">#EmailSecurity</a> <a href="https://bofh.social/tags/DigitalSignatures" rel="nofollow noopener noreferrer" target="_blank">#DigitalSignatures</a> <a href="https://bofh.social/tags/InfoSec" rel="nofollow noopener noreferrer" target="_blank">#InfoSec</a> <a href="https://bofh.social/tags/PKI" rel="nofollow noopener noreferrer" target="_blank">#PKI</a></p>
Konstantin Weddige<p>Have you ever wondered what it means when you get an email that is encrypted but not signed? At the very least, it's better than being completely unencrypted, isn't it?</p><p>It turns out that's not necessarily the case. I've looked at S/MIME and found that it is possible to construct messages that, when sent to multiple recipients, are decrypted into completely different messages:</p><p><a href="https://lutrasecurity.com/en/articles/salamander-mime/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">lutrasecurity.com/en/articles/</span><span class="invisible">salamander-mime/</span></a></p><p><a href="https://gruene.social/tags/SMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMIME</span></a> <a href="https://gruene.social/tags/SalamanderMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SalamanderMIME</span></a> <a href="https://gruene.social/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a></p>
Lutra Security<p>Can you trust what you decrypt? In this article, we look at S/MIME-encrypted emails and exploit them to take the recipients into alternate versions of reality.</p><p><a href="https://lutrasecurity.com/en/articles/salamander-mime/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">lutrasecurity.com/en/articles/</span><span class="invisible">salamander-mime/</span></a></p><p><a href="https://infosec.exchange/tags/SalamanderMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SalamanderMIME</span></a> <a href="https://infosec.exchange/tags/SMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMIME</span></a> <a href="https://infosec.exchange/tags/KeyCommitment" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KeyCommitment</span></a></p>
Emory<p>uh oh my second ever support ticket at fastmail has been opened. but i think it's actually a bug in <a href="https://soc.kvet.ch/tags/ios18_1" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ios18_1</span></a>.</p><p>mail.app imap server settings don't allow me to use my fastmail username of emory at kvet dot ch. straight up says it's invalid. sending relay configuration (submission 587/tcp) is accepting that username fine so idk. i am going to see if i can force it with a profile.</p><p>i have a new <a href="https://soc.kvet.ch/tags/sMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sMIME</span></a> cert for my email addresses anyway!</p>
GNU/Linux.ch<p>Video: S/MIME E-Mail-Verschlüsselung einrichten</p><p>Mit S/MIME kannst du auf einfache Weise verschlüsselte und sichere Mails schreiben. Ich zeige dir, wie du ein kostenloses Zertifikat beziehen und in Thunderbird einbinden kannst. </p><p><a href="https://social.anoxinon.de/tags/SMIME" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMIME</span></a> <a href="https://social.anoxinon.de/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://social.anoxinon.de/tags/Verschl%C3%BCsselung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Verschlüsselung</span></a> <a href="https://social.anoxinon.de/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a></p><p><a href="https://gnulinux.ch/s-mime-e-mail-verschluesselung-einrichten" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gnulinux.ch/s-mime-e-mail-vers</span><span class="invisible">chluesselung-einrichten</span></a></p>