|
/Security/e-mail:
lockbin.com Has a Reasonable Solution for E-Mail Security
lockbin.com[1] has a reasonable method for restoring some security to the e-mail arena. The service is a little bit inconvenient so it does not qualify for daily use, but especially when you are dealing with someone who resists taking any precautions at all, this might be quite a good solution.
To use lockbin you first deliver a shared password to the other person, preferably by some means other then the same e-mail address lockbin is going to use to announce the arrival of a message. Then on lockbin's SSL-encrypted (https) website compose and send your message.
The recipient receives an e-mail which says, in part:
"Hopefully, your friend has already given you a special 'Secret Word', which will un-encrypt the message so you can read it."containing a link back to his waiting message on the lockbin website. The recipient must then enter the 'Secret Word' to see the message. If he wishes, the recipient can then reply to you using lockbin again, in the same window.
Needless to say there are some security holes in this arrangement, like the need to trust the system administrators of lockbin, and the need to send the password by some preferably secure channel.
[1] https://lockbin.com/
posted at: 10:02 | path: /Security/e-mail | permanent link to this entry