Keybase presents an encrypted network file system
Summary
KBFS links public identities with end-to-end encrypted folders that appear like local files on several devices. Keybase presented KBFS in February 2016. The file system was initially released as a preview.
Ideas
- Folder names visibly name participants and access rights.
- File contents are encrypted before being sent to the server.
- Signed metadata detects manipulation and historical forks.
- Public folders allow cryptographically attributable publications.
Insights
- Readable namespaces can make cryptographic identity usable.
- Not having to trust the server does not mean operating without a server.
- Metadata remains security-relevant even when content is encrypted.
Facts
- FUSE mounted the folders into local systems.
Recommendations
- Verify devices and identities before sharing confidentially.
- Keep independent backups of important files.
References
Links to the original source and the Web Archive open in a new tab.