Elude.in Emai Provider COMPROMISED (proof inside)

Not sure how many of you use Elude but it's all but official that either a hacker has gained access or LE has.

They have a warrant canary that was last signed October 1st. According their canary they should sign the first of every month. No signature given for Nov. 1st. There was also some unexplained downtime for a the last few days.

https://anonimage.net/view/dnVP6Zd8L

Beware. At this point don't touch it with a stick and i think the mods should discuss removing them from the superlist /u/wombat2combat


Comments


[18 Points] wombat2combat:

kinda saw it coming https://www.reddit.com/r/DarkNetMarkets/comments/6h40z5/elude_a_new_anonymous_email_service/divrpy1/

however the missing canary and down-time is suspicious, we superlist mods will discuss it.


[3 Points] idontakeacid:

do NOT use it / delete everything / stay away from Elude


[3 Points] granturitoxx:

well that fuckin sucks .. the interface was dope. protonmail requires javascript 2 D;

edit: switched to protonmail


[3 Points] mattyic3ed:

the service was a piece of shit anyways


[2 Points] AutoModerator:

/u/wombat2combat - You have been summoned in this thread by /u/dnmthrowawayobvious.

This convenience is brought to you by AutoMod. Submissions do not automatically summon users like comments do. AutoMod is trying to be helpful.

For others, it should no longer be necessary to summon the referenced user in a comment any more. AutoMod has done the heavy lifting for you. You're welcome. Bow before me.

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.


[2 Points] humdumler:

Alright, so this is a very noob question. I apologize for my ignorance.

I created an Elude account, but never once used it. Is this anything to worry about? Should I try and delete the account, or just stay away?


[2 Points] Thoughtsofamaniac:

This isn't good news in the least if true, but

1) We don't know this is true

and

2) People who use basic OPSEC procedures probably don't have much to be concerned about. As long as you're intelligent enough not to use the same password on multiple accounts and not such a slobbering retard as to send unencrypted information, you'll probably be fine.


[1 Points] dts-NOW:

Appreciate the heads up mate. 👌🏻


[1 Points] Al1ce1nunderland:

They didn't know what a canary was then and they don't know now


[1 Points] bumpjumpz:

Thanks for the notice, appreciate the heads up!


[1 Points] buffetjimmy:

What's emai


[1 Points] None:

It was good while it lasted I guess.


[1 Points] 0ni0n3at3r:

What about secmail? Still good?


[1 Points] savingfluffybunnies:

How does this prove they're compromised, I also noticed that I can send them an email on form from their service.


[-4 Points] toynbeeidea16:

Its based out of The Netherlands, who are known collaborators with the NSA, so you should never have trusted it to begin with.