<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Confidential Mode in Industry News</title>
    <link>https://community.isc2.org/t5/Industry-News/Confidential-Mode/m-p/13885#M1475</link>
    <description>&lt;P&gt;Google made a fundamental error by assuming everyone follows the rules, uses only the standard tools and software. For a story of precisely the same bad assumption in software security design three decades ago see&amp;nbsp;the blog post,&amp;nbsp;&lt;A title="bad assumption" href="https://cragins.blogspot.com/2018/08/old-mistake-in-security-design-is-new.html" target="_blank"&gt;&lt;EM&gt;Old Mistake in Security Design is New Again: GMAIL Confidential Mode&lt;/EM&gt;&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 21 Aug 2018 22:13:30 GMT</pubDate>
    <dc:creator>CraginS</dc:creator>
    <dc:date>2018-08-21T22:13:30Z</dc:date>
    <item>
      <title>Confidential Mode</title>
      <link>https://community.isc2.org/t5/Industry-News/Confidential-Mode/m-p/13862#M1469</link>
      <description>&lt;P&gt;Gmail now has a new feature, "Confidential Mode".&amp;nbsp; The Electronic Frontier Foundation is (rightly) &lt;A href="https://www.eff.org/deeplinks/2018/07/between-you-me-and-google-problems-gmails-confidential-mode" target="_self"&gt;skeptical of how "Confidential" it is&lt;/A&gt;. Gmail seems more interested in limiting the actions the intended recipient can take than in ensuring that it is in fact received by the intended recipient.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Aug 2018 03:53:50 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Confidential-Mode/m-p/13862#M1469</guid>
      <dc:creator>denbesten</dc:creator>
      <dc:date>2018-08-21T03:53:50Z</dc:date>
    </item>
    <item>
      <title>Re: Confidential Mode</title>
      <link>https://community.isc2.org/t5/Industry-News/Confidential-Mode/m-p/13864#M1470</link>
      <description>&lt;P&gt;Yes, the name is really misleading! There's no guarantee of confidentiality&amp;nbsp;here, unless your emails can only be accessed on a completely secured system.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The idea of having google send pass-codes via SMS is also weird, since you may not always have access to a mobile number of the party you're emailing, and even if you do, they may not want their privacy violated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It would&amp;nbsp;make more sense to&amp;nbsp;email&amp;nbsp;info in an encrypted format &amp;amp;&amp;nbsp;then convey the pass-code to the recipient&amp;nbsp;via a separate channel --- without Google involved in the latter.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Aug 2018 10:28:50 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Confidential-Mode/m-p/13864#M1470</guid>
      <dc:creator>Shannon</dc:creator>
      <dc:date>2018-08-21T10:28:50Z</dc:date>
    </item>
    <item>
      <title>Re: Confidential Mode</title>
      <link>https://community.isc2.org/t5/Industry-News/Confidential-Mode/m-p/13885#M1475</link>
      <description>&lt;P&gt;Google made a fundamental error by assuming everyone follows the rules, uses only the standard tools and software. For a story of precisely the same bad assumption in software security design three decades ago see&amp;nbsp;the blog post,&amp;nbsp;&lt;A title="bad assumption" href="https://cragins.blogspot.com/2018/08/old-mistake-in-security-design-is-new.html" target="_blank"&gt;&lt;EM&gt;Old Mistake in Security Design is New Again: GMAIL Confidential Mode&lt;/EM&gt;&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Aug 2018 22:13:30 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/Confidential-Mode/m-p/13885#M1475</guid>
      <dc:creator>CraginS</dc:creator>
      <dc:date>2018-08-21T22:13:30Z</dc:date>
    </item>
  </channel>
</rss>

