Stories
Slash Boxes
Comments

SoylentNews is people

posted by on Sunday April 30 2017, @04:18AM   Printer-friendly
from the or-not dept.

Submitted via IRC for TheMightyBuzzard

With slick marketing, catchy taglines and some pretty bold claims about their security, nomx claim to have cracked email security.

This thorough article tells all about the device, and it doesn't measure up at all to its marketing.

It would be very easy to conclude that this is a scam. The device is running standard mail server software running on a Raspberry Pi, most of which is outdated. They have presented at countless tech shows and can be constantly found making bold statements of 'absolute security' yet didn't pick up a CSRF vulnerability in their web interface.

Source: https://scotthelme.co.uk/nomx-the-worlds-most-secure-communications-protocol/

Nomx has issued a reply on their main page in a post titled 'nomx Passes Security Tests After Blogger Claims to Have Penetrated nomx'. In that reply nomx states the following results:

No nomx user was affected by this threat. No nomx user could be affected by this threat in the future. No nomx data was compromised, and the blogger has (finally) reluctantly verified this. He still has not publicly shared these statements, except via an email response to the BBC when directly asked on April 25 the response was:

From the BBC to nomx: "I understand from your replies that you state categorically that no nomx accounts have been affected by this hack. I have put your questions to [blogger] who has confirmed to me that he cannot say that any have."

While nomx is no longer based on Raspberry devices, we still maintain that the users' data is secured as we've demonstrated to the blogger, the media and our customers.

Also at Ars Technica


Original Submission #1  Original Submission #2

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: 0) by Anonymous Coward on Sunday April 30 2017, @05:49AM (1 child)

    by Anonymous Coward on Sunday April 30 2017, @05:49AM (#501799)

    You should try Tinder. Or Grindr.

  • (Score: -1, Offtopic) by Anonymous Coward on Sunday April 30 2017, @07:15PM

    by Anonymous Coward on Sunday April 30 2017, @07:15PM (#501955)

    Or suicide.