Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Email Security

Google Boosts Security of Gmail Infrastructure

All Gmail Messages Now Encrypted While Moving Internally

All Gmail Messages Now Encrypted While Moving Internally

Google announced on Thursday that its Gmail service would use added encryption to protect against eavesdropping and keep messages secure.

“Starting today, Gmail will always use an encrypted HTTPS connection when you check or send email,” Gmail security engineering lead, Nicolas Lidzborski, wrote in a blog post.

“Today’s change means that no one can listen in on your messages as they go back and forth between you and Gmail’s servers – no matter if you’re using public WiFi or logging in from your computer, phone or tablet,” he added.

The new security protection for Google’s popular email service is the latest move as Internet and technology firms scramble to boost their security efforts and up encryption after Edward Snowden began to leak classified details on the scope of US government spying.

Lidzborski said that 100 percent of email messages that Gmail users send or receive are encrypted while moving internally.

“This ensures that your messages are safe not only when they move between you and Gmail’s servers, but also as they move between Google’s data centers—something we made a top priority after last summer’s revelations,” Lidzborski said.

Joseph Hall, chief technologist at the Center for Democracy and Technology, told AFP that Google’s encryption “would make it very difficult” for the NSA or others to tap into email traffic directly.

“I’m reluctant to say anything is NSA-proof,” Hall told AFP. “But I think what Google is trying to do is make sure they come through the front door and not the back door.” He warned that the encryption would be only for “transport” and that data may still be unencrypted while sitting on a user’s browser or stored in certain data centers. Hall added that Google’s encryption is positive because it is “part of a general trend of strengthening the core Internet structure.”

Advertisement. Scroll to continue reading.

In December 2013, a group of US-based Internet giants called on Washington to overhaul its surveillance laws. In an open letter to President Obama and Congress, the tech giants called on Washington to lead the way in a worldwide reform of state-sponsored spying.

In January, President Barack Obama announced plans to curtail the reach of massive phone surveillance sweeps by the NSA, but said bulk data collection must go on to protect America from terrorists.

In December, Microsoft said it would “pursue a comprehensive engineering effort to strengthen the encryption of customer data” in order to protect its customers from prying eyes and increase transparency.

In a recent letter to customers, IBM executive Robert Weber emphasized the need for Governments to take action in order to restore trust.

“Data is the next great natural resource, with the potential to improve lives and transform institutions for the better,” Weber said. “However, establishing and maintaining the public’s trust in new technologies is essential.”

Written By

For more than 15 years, Mike Lennon has been closely monitoring the threat landscape and analyzing trends in the National Security and enterprise cybersecurity space. In his role at SecurityWeek, he oversees the editorial direction of the publication and is the Director of several leading security industry conferences around the world.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Cloud Security

Cloud security researcher warns that stolen Microsoft signing key was more powerful and not limited to Outlook.com and Exchange Online.

Compliance

Government agencies in the United States have made progress in the implementation of the DMARC standard in response to a Department of Homeland Security...

Email Security

Many Fortune 500, FTSE 100 and ASX 100 companies have failed to properly implement the DMARC standard, exposing their customers and partners to phishing...

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Application Security

Fortinet on Monday issued an emergency patch to cover a severe vulnerability in its FortiOS SSL-VPN product, warning that hackers have already exploited the...

Cybercrime

Enterprise users have been warned that cybercriminals may be trying to phish their credentials by luring them with fake emails that appear to be...

Cloud Security

Microsoft and Proofpoint are warning organizations that use cloud services about a recent consent phishing attack that abused Microsoft’s ‘verified publisher’ status.

Cloud Security

Proofpoint removes a formidable competitor from the crowded email security market and adds technology to address risk from misdirected emails.