Sunday 21 June 2015
OnionMail is an anonymous and encrypted mail server made to run on the TOR network without losing the ability to communicate with the Internet. This ensures greater privacy to the users but also protect against eavesdropping of the NSA and others threats. OnionMail use file-system cryptography and some extended functions. This server also allows you to use the email in the tor network without losing the ability to communicate with the Internet.
After the recents disclosures of the datagate, the PRISM project, X-Keyscore and the closure of Lavabit, we have realized that is necessary to look for the solutions faster and simple to protect the communications against the mass surveillance. This is not done to prevent the action of the investigation of governments, is done to guard against clandestine espionage. This is done to prevent the attacker or the multinationals of espionage read undisturbed our mail.
We live in a world where Alice can not, or will soon no longer be able to communicate freely with his friend Bob. We live in a world of mass interception systems without there being a real purpose or any negative action in place.
It’s gotten to the point that we must declare the lack of security in the standard e-mail systems. So it seems necessary to increase the safety and protection of meta-data from espionage. We are not doing conspiracy. In truth we don’t care any of this espionage. The best decision is to stay out of all this and protect themselves only for the security policy.
Someone will tell us that our email is intercepted in advance for security reasons? We reply that our mail is not interceptable for security reasons. We prefer to grant us our security without being in the hands of any espionage
Usually other mail systems all mail messages pass through different SMTP servers often the connection is not encrypted. With OnionMail the connection is always encrypted and the server does not saving data to disk. Only the recipient’s server stores the messages.
The message files into the server are encrypted with asymmetric key, which is encrypted with the password of the user and the server keys. In the event of theft, the system does not reveal any sensitive data.
It always advisable to use PGP or GPG to encrypt e-mail messages.
When a message is sent from the Internet it passes through the server Enter / Exit. These servers are the entry and exit nodes of Tor for e-mail. The user can choose which node to use to communicate to the internet. Spam is short-lived because there are the custom blacklists. So each user can set their own spam filters.
All servers are federated to create a check system for SSL server certificates. With systems like this X-Keyscore and similar technologies have big problems to intercept your mail messages.