Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Privacy

Google Previews End-to-end Encryption Extension for Chrome

Google has released a preview version of a new Chrome extension designed to give users the ability to encrypt, decrypt, digital sign, and verify signed messages within their Web browser using OpenPGP.

Google has released a preview version of a new Chrome extension designed to give users the ability to encrypt, decrypt, digital sign, and verify signed messages within their Web browser using OpenPGP.

Dubbed “End-to-end” by the search giant, the new browser extension will encrypt data leaving a user’s browser until the message’s intended recipient decrypts it, Google said.

“While end-to-end encryption tools like PGP and GnuPG have been around for a long time, they require a great deal of technical know-how and manual effort to use,” Stephan Somogyi, Product Manager, Security and Privacy at Google, wrote in a blog post Tuesday afternoon.

End-to-End was built using a newly developed, JavaScript-based crypto library and implements the OpenPGP standard, IETF RFC 4880, enabling key generation, encryption, decryption, digital signature, and signature verification, Google explained.

Currently in Alpha, End-to-End is not yet available in the Chrome Web Store. The company has shared the code in order to have the community test and evaluate it before people begin to rely on it. To that point, Google has added End-to-End to its Vulnerability Reward Program and will award researchers with cash for finding flaws in its code.

“Once we feel that the extension is ready for primetime, we’ll make it available in the Chrome Web Store, and anyone will be able to use it to send and receive end-to-end encrypted emails through their existing web-based email provider,” Somogyi noted.

Earlier this year, Google said that its Gmail service would use added encryption to protect against eavesdropping and keep messages secure in an effort to up encryption after Edward Snowden began to leak classified details on the scope of US government spying. 

Written By

For more than 15 years, Mike Lennon has been closely monitoring the threat landscape and analyzing trends in the National Security and enterprise cybersecurity space. In his role at SecurityWeek, he oversees the editorial direction of the publication and is the Director of several leading security industry conferences around the world.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Artificial Intelligence

Two of humanity’s greatest drivers, greed and curiosity, will push AI development forward. Our only hope is that we can control it.

Cybersecurity Funding

Los Gatos, Calif-based data protection and privacy firm Titaniam has raised $6 million seed funding from Refinery Ventures, with participation from Fusion Fund, Shasta...

Privacy

Many in the United States see TikTok, the highly popular video-sharing app owned by Beijing-based ByteDance, as a threat to national security.The following is...

Privacy

Employees of Chinese tech giant ByteDance improperly accessed data from social media platform TikTok to track journalists in a bid to identify the source...

Application Security

Open banking can be described as a perfect storm for cybersecurity. At one end, small startups with financial acumen but little or no security...

Government

The proposed UK Online Safety Bill is the enactment of two long held government desires: the removal of harmful internet content, and visibility into...

Mobile & Wireless

As smartphone manufacturers are improving the ear speakers in their devices, it can become easier for malicious actors to leverage a particular side-channel for...

Cloud Security

AWS has announced that server-side encryption (SSE-S3) is now enabled by default for all Simple Storage Service (S3) buckets.