X-Git-Url: https://git.cworth.org/git?a=blobdiff_plain;f=meetings%2Fhd2015.mdwn;h=aa2995fbc8e9e0e3b04dfabcf460ea0fbced7a56;hb=524baac9dcd0b65c29c04f79d3ec2123628f0981;hp=1e4b78f29ad675e532fd2fda33ed111b64af6c0a;hpb=937505e62e6c7a155dfbd13021360dcbec8fb9c8;p=notmuch-wiki diff --git a/meetings/hd2015.mdwn b/meetings/hd2015.mdwn index 1e4b78f..aa2995f 100644 --- a/meetings/hd2015.mdwn +++ b/meetings/hd2015.mdwn @@ -27,12 +27,15 @@ Moving parts for secure e-mail * noservice (Clojure) * notmuch web (Haskell) -Security concerns ------------------ -* wrong key selection during composition -* reply (message mode defaults) -* inline PGP +Security and privacy concerns +----------------------------- +* privacy leaks rendering messages * message-id collisions +* Oops I just sent... + * wrong key selection during composition + * reply (message mode defaults) +* inline PGP + * webmail authentication/authorization (multiple users?) * webmail message escaping (XSS, etc) * shell injection @@ -60,12 +63,6 @@ Reportbacks ------------------------- -proposed session: ---------- - * Improving the security of the Emacs MML mime composer - * Searching of GPG encrypted mail - * Auditing and fixing "webbug" style problems in front ends ---------- more complete agenda: