I would like to congratulate google for creating the most perfect phishing email (clicking the button asks for auth on the most powerful account in the org) while also not using any of the counter measures (BMI etc etc) that they tell other people to use to defend against phishing emails
benjojo
replied 10 Jun 2025 11:13 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/FFMm3c122JT3Wtb25l
oh it's just an advert/upsell... Man, I've got to get off this stuff, that's egregious
benjojo
replied 10 Jun 2025 11:22 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/X47fK25q96qvK3zn3Y
The whole situation is really frustrating because all I really want is a competent email provider that isn't going to get squashed by microsoft and other deliverability issues, but my alternatives are microsoft ( who I genuinely believe is just as bad as google in this circumstance ) or fastmail who i've never really got the vibe of confidence from. Self hosting email seems really unattractive here as well, because while doing that for my personal email is totally fine, doing it it away that is reliable enough of my business is a real pain in the ass...
hailey@hails.org
replied 10 Jun 2025 11:27 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/N9575PbmDhwW3bsGyz
@benjojo fastmail are great! I’ve been with them for years and they have been stable as. The one possible caveat with them for you is that they are subject to Australia’s draconian natsec laws. Unavoidable for me so not as important a differentiator however
benjojo
replied 10 Jun 2025 11:41 +0000
in reply to: https://hails.org/users/hailey/statuses/114658827966488427
@hailey To be fair the UK isnt any better with regards to iffy legal natsec laws. But fastmail have just always felt..iffy. Any time I've poked into their state of affairs technically I've come back with a "oh uh, yeah that's not that great" I'm sure they (probably) wont lose my mbox to someone else, but will they stay up during "bad times", I'm less sure. Even their DDoS stuff I can instantly spotted a hole in their cloudflare magic transit deployment, they ran for years without even basic defence of their blocks against hijacks. Urgh I just really worry how much of Fastmail is just good looks vs actual competency.
eval@glauca.space
replied 10 Jun 2025 12:18 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/Mw4J1BFvmwJs4WWmXZ
@benjojo @hailey oh, yikes.
Tbh I‘ve stuck with fastmail for a while as they seem to be the best I’ve seen at making the email Actually Just Work, despite their issues (US mail hosting, etc.), and dealing with Google or MS365 again is a hellish prospect.
But I would love to see someone come and do it better. (Props to Migadu for being a decent tiny option, my non profit org is with them, but not quite feature complete for my personal use.)
robinwhittleton@fron..
replied 10 Jun 2025 11:48 +0000
in reply to: https://hails.org/users/hailey/statuses/114658827966488427
benjojo
replied 10 Jun 2025 11:54 +0000
in reply to: https://front-end.social/users/robinwhittleton/statuses/114658908248915587
benjojo
replied 10 Jun 2025 11:25 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/N9575PbmDhwW3bsGyz
Like, I recognize that I am moving in a direction which is probably not the same direction that most of the business world is (generally disliking the clouds and having product shoved down my throat that I don't want to use) But it's really quite depressing that there is no "productivity suite" offering that is European and inspires confidence in their competency
Edent@mastodon.socia..
replied 10 Jun 2025 11:38 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/Yml6cpMqP3lKK22VJ9
@benjojo I'm reasonably happy with Proton for email and VPN. Had a play with their basic office stuff and it was good enough for my needs.
29821632@noc.social
replied 10 Jun 2025 11:36 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/N9575PbmDhwW3bsGyz
@benjojo Self-hosting my e-mail for a quarter of a century(!) trying every combination of software and platform you can think of. Zimbra for a while was probably the best UI experience but needed a chunky VM. Multiple disappointments with Squirrelmail and Round cube etc too.
And despite all that I still ended up part-using Gmail due to Android's integrated calendar+contact sync which landed me in split-brain e-mail hell for a long time... 1/
29821632@noc.social
replied 10 Jun 2025 11:44 +0000
in reply to: https://noc.social/users/29821632/statuses/114658860474276877
@benjojo
About 6 years ago I moved to Fastmail and could not recommend them more!
Handles my sub-domain wildcard addressing perfectly too. (Every shop/login/sign-up I have made in 20+ years got a unique e-mail address, leading to some unbelievable observations of customer database exploitation and brokerage!).
Only criticism is that storage is probably quite stingy when compared to say an O365 small biz account at roughly the same price but I don't tend to store/archive much mail so 🤷
2/2
Rairii@labyrinth.zon..
replied 10 Jun 2025 11:31 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/X47fK25q96qvK3zn3Y
benjojo
replied 10 Jun 2025 11:29 +0000
in reply to: https://oslo.town/users/Piraya/statuses/114658823983009304
@Piraya Given the amount of phishing/ransom/nasty emails I get from of proton, I refuse to deal/be colocated with them/their sending IPs
benjojo
replied 10 Jun 2025 11:33 +0000
in reply to: https://mystical.garden/users/fionafokus/statuses/114658825399288519
@fionafokus I think I can get away with dealing with sending email at worst, bgp.tools already sends 1k+ emails a day without any obvious issues (with an exception of hotmail/msn addresses), but it's the "where do I put the inbox" that won't get RCE'd/breached/DDoS'd, and without being on my infra so I can email customers when I am down, and ideally is in Europe (I'm trying to get to "USA zero" with the exception of stripe) Such a annoying landscape
kouett@soc.kouett.ne..
replied 10 Jun 2025 11:42 +0000
in reply to: https://oslo.town/users/Piraya/statuses/114658861435380608
benjojo
replied 10 Jun 2025 11:43 +0000
in reply to: https://infosec.exchange/users/Wifiwits/statuses/114658885806683292
@Wifiwits Yeah the problem I have is that my inbox is really my income, both in consulting and the biz I run is coordinated over email and it matters (probably?) more than a lot other peoples inbox's
benjojo
replied 10 Jun 2025 11:46 +0000
in reply to: https://helvede.net/users/m/statuses/114658819502402755
@m This actually looks pretty good, It seems to be hosted in OVH, and I would really hope it isnt sending out of OVH... but I can handle the outbound part at worst. Could you send me a email migadu-test@b621.net so I can see what their stack looks like?
benjojo
replied 10 Jun 2025 11:47 +0000
in reply to: https://mstdn.social/users/dragoonaethis/statuses/114658898789723866
@dragoonaethis Do/have you use them? Are they competent? A government certification label doesn't really move the needle on "are they safe/competent" that much
HeNeArXn@chaos.socia..
replied 10 Jun 2025 12:28 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/cDGY63G2K659PR23TG
@benjojo @dragoonaethis I use them, haven't had any issues and Heinlein has been doing mail hosting for decades (back when I tried running my own mailserver in high-school I used his Postfix book to learn :D)
phessler@bsd.network
replied 10 Jun 2025 12:30 +0000
in reply to: https://benjojo.co.uk/u/benjojo/h/cDGY63G2K659PR23TG
@benjojo @dragoonaethis fwiw, we used mailbox.org at denic (de cctld), and I remember being decently happy.
benjojo
replied 10 Jun 2025 12:04 +0000
in reply to: https://helvede.net/users/m/statuses/114658966351244869
@m (Got it!) Yeah the mail comes out of OVH IPs as well, that makes me super worried about deliverability to some corp clients.. Otherwise a pretty good service by the looks of things