this post was submitted on 08 Mar 2026
156 points (77.9% liked)

Technology

82460 readers
2837 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
 

cross-posted from : https://lemmy.zip/post/60387297

Proton Mail provided Swiss authorities with payment data for defendtheatlantaforest@protonmail.com — the account linked to Stop Cop City protests in Atlanta. The FBI obtained this information through a Mutual Legal Assistance Treaty request on January 25, 2024, identifying the activist behind the anonymous account through their credit card identifier.

you are viewing a single comment's thread
view the rest of the comments
[–] RIotingPacifist@lemmy.world 6 points 1 day ago* (last edited 1 day ago)

They litterally gave information they were legally required to

E2EE stops them from being forced to turn over the emails themselves

Except it doesn't, E2EE in browser is pointless, they send your browser the code that does the dycription, they can just as easily send your browser code that does decyption & uploads the contents to themselves.

Yes doing actual E2EE emails is harder because both ends need to use an email client and configure it to do encryption, but for amost all scenarios protonmail is no more technically secure than any other webmail provider.

Scenario Gmail protonmail
Legally required to hand over your emails can comply can comply the next time you use the account
Datacenter breach emails encrypted at rest emails encrypted at rest
Persistent threat within supplier can read your emails requires code injection capability

I think offering per-user encryption that makes it harder for the company to data mine your emails is good, I just wish people would stop believing companies selling you "secure solutions".

In this case defendtheatlantaforest would have been more secure if they used any free email provider and GPG, yet there's a cult-of-produce around protonmail as if it's offering you a level of security that it can't.