[liberationtech] Is spideroak really zero-knowledge?

Tony Arcieri tony.arcieri at gmail.com
Mon Aug 12 22:25:26 PDT 2013


On Mon, Aug 12, 2013 at 10:10 PM, Percy Alpha <percyalpha at gmail.com> wrote:

> Spideroak claims to use client-side encryption for desktop client but
> doesn't not use zero-knowledge password proof for mobile Apps or website
> portal.
>

SpiderOak (mis)uses the term "zero knowledge" to mean end-to-end (or
client-side) encryption. They aren't talking about a zero knowledge proof.

The defense I've heard for SpiderOak using "zero knowledge" to mean this is
other people do it too, so it's okay.

-- 
Tony Arcieri
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.stanford.edu/pipermail/liberationtech/attachments/20130812/7e3b3c7b/attachment.html>


More information about the liberationtech mailing list