In recent years, companies have been implementing various levels of encryption within their apps and services. ProtonMail offers encryption between its mail users, WhatsApp has encryption turned on by default, and Facebook Messenger lets you flip to more secure chats if you would like. While not the most straightforward to set up, Mozilla has tightly integrated PGP into its e-mail client Thunderbird, so you can encrypt e-mails, no matter your provider.
In this guide, Iโll go over:
How to set up your encryption keys
How to add your contactโs keys
How to share your own keys
How to upload your keys to a keyserver, so they can be found easily
How to backup your keys..
![]() |
Patch reliability is unclear, but widespread attacks make patching prudent. Go ahead and patch, but watch out for potential problems. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
How to set up end-to-end encryption for your e-mails in Mozilla’s Thunderbird
Home » Forums » Cyber Security Information and Advisories » Code Red – Security/Privacy advisories » How to set up end-to-end encryption for your e-mails in Mozilla’s Thunderbird
- This topic has 7 replies, 3 voices, and was last updated 2 years, 10 months ago.
AuthorTopicAlex5723
AskWoody PlusAugust 18, 2022 at 1:22 pm #2471127Viewing 5 reply threadsAuthorReplies-
OscarCP
MemberAugust 18, 2022 at 3:30 pm #2471144A problem, I find, with encrypting one’s emails, is that it works only if sent to people who can decrypt them. And not everybody even knows about encrypted emails.
Ex-Windows user (Win. 98, XP, 7); since mid-2017 using also macOS. Presently on Monterey 12.15 & sometimes running also Linux (Mint).
MacBook Pro circa mid-2015, 15" display, with 16GB 1600 GHz DDR3 RAM, 1 TB SSD, a Haswell architecture Intel CPU with 4 Cores and 8 Threads model i7-4870HQ @ 2.50GHz.
Intel Iris Pro GPU with Built-in Bus, VRAM 1.5 GB, Display 2880 x 1800 Retina, 24-Bit color.
macOS Monterey; browsers: Waterfox "Current", Vivaldi and (now and then) Chrome; security apps. Intego AV1 user thanked author for this post.
-
Alex5723
AskWoody PlusAugust 19, 2022 at 5:12 am #2471240A problem, I find, with encrypting oneโs emails, is that it works only if sent to people who can decrypt them. And not everybody even knows about encrypted emails.
You don’t encrypt every mail sent. You should encrypt only important/confidential mail like : to your bank, workplace, lawyer, doctor.. to them you should send a ‘public key’.
..How to share your own keys
To send your public key to a contact, head back into the OpenPGP Key Manager and right-click your key. You should then see an option to send your public key by e-mail, pressing this will open up a new compose window with your key attached. To import this, your recipient just needs to open their key manager, press File and import the public key from the file…
1 user thanked author for this post.
-
Fred
AskWoody LoungerAugust 19, 2022 at 2:18 pm #2471347—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA512~~~~~~
You can verify this text for authenticity by original signer.
Encryption techniques are nice, but not easy.
Microsoft also makes many mistakes in the digital signing of their
messages;Who oh who cares?
I do.~~~~~~
—–BEGIN PGP SIGNATURE—–
Version: Encryption Desktop 10.5.0 (Build 1520)
Comment: PGP_10.5.0 MP1 [Build 1520],Secured
Charset: utf-8wsFVAwUBYv/gYrY5OeMN8SSAAQqLohAAvqKDV2lNr7Ss8i6RrUGERLbDmXIzjjP8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=H9pm
—–END PGP SIGNATURE—–* _ ... _ * -
OscarCP
MemberAugust 19, 2022 at 5:46 pm #2471395Fred, Thanks.
Am I guessing right that the long and seemingly random sequence of characters is the encrypted PGP public key?
https://www.varonis.com/blog/pgp-encryption
Quote: “ProtonMail โ like most email clients that offer PGP โ hides all of the complexity of the encryption and decryption of the message. If you are communicating to users outside of ProtonMail, you need to send them your public key first. “
Ex-Windows user (Win. 98, XP, 7); since mid-2017 using also macOS. Presently on Monterey 12.15 & sometimes running also Linux (Mint).
MacBook Pro circa mid-2015, 15" display, with 16GB 1600 GHz DDR3 RAM, 1 TB SSD, a Haswell architecture Intel CPU with 4 Cores and 8 Threads model i7-4870HQ @ 2.50GHz.
Intel Iris Pro GPU with Built-in Bus, VRAM 1.5 GB, Display 2880 x 1800 Retina, 24-Bit color.
macOS Monterey; browsers: Waterfox "Current", Vivaldi and (now and then) Chrome; security apps. Intego AV
-
Fred
AskWoody LoungerAugust 19, 2022 at 10:57 pm #2471456OscarCP y’re welcome:
In the message is everything beginning from โโBEGIN PGP ย toย โโEND PGP SIGNATUREโโ ย is the with PGP signed message.ย The actual message is in the middle between the tilde-lines that I started and ended the message with, just to make it a bit more readable:~~~~~~
…..
…..
~~~~~~So and thus,ย if there is a single letter and/or space within the mesage alteredย than this message does not check out to be with a good signature and thus not to be original, like the picture of the pgp-check shows that this case is original.
My original text was signed with my PGPkey. This key consists of two parts: a private part and a public part. The private part of the this key is very secret and only in my possession, and the public part can be sent to somebody else, or to a (public-key) server on the internet, this usually is called a PGP-publickey-server.
Everybody who has anough of my cridentials can collect/download this publickey. Knowing the PGP-ID of somebody is anough to collect this publickey, in this case my “PGP-ID=(0x0DF12480)”.
((to make it a bit more complicated: anybody having the fingerprint of my PGPkey can collect this publickey too; in this case this accompanying fingerprint is “970A 5D81 27BD 73F9 5EB4 4139 B639 39E3 0DF1 2480”.ย So when I hand over to somebody this PGP-ID or this PGPkey-fingerprint he can collect my publicPGPkey and can check this text to be original or not.ยBut never ever forget:
This whole system of encryption is based on a single trust ofย WHO keeps the PrivateKey , that is very easyly forgotten.This message was only encrypted to my PGPkey, so the result is clearly visible.
When I encrypt this message to an other publickey from somebody else, than this message can only be decrypted by the owner of the other privatekey(s), and now the result is very scrambled with various signs.herewith the example of the oversight of my PGPkeypair:
((for obvious reasons I blancked-out a few parts))
Using Protonmail or anything like it is based on this “simple principle”, and is a bit more user-friendly ย ย ๐
.
* _ ... _ *Fred
AskWoody LoungerAugust 19, 2022 at 11:22 pm #2471462Quote: โProtonMail โ like most email clients that offer PGP โ hides all of the complexity of the encryption and decryption of the message. If you are communicating to users outside of ProtonMail, you need to send them your public key first. โ
Using Protonmail in a good and smooth way, it’s always best that the receiving party is using Protonmail too, and than all the encryption behind the surface is done automaticly correct.
Using Thunderbird and mobilephone-email with Encryption-keys is very well possible, but not always that smoothly. The internet ‘tends to be very flexible’, as Microsoft learns us all day round with their updates.ps: There are much more encrypted-email-services, but remember:ย WHO keeps the PrivateKeys, and in what jurisdiction?.
pps: Who has nothing to hide, who cares?
.
* _ ... _ *Fred
AskWoody LoungerAugust 19, 2022 at 11:35 pm #2471465The text in this quoted internet link is not quite true, about the part of being unbrakeable encryption. For that there is much more to be done to give the NSA or the x-Eyes-Aliance a hard time to break it.
Ofcourse Quantum-computing is expected to bring this type of encrypting to an end, eventually new techniques must be invented; or is that already there?* _ ... _ *Viewing 5 reply threads -

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Is it Local or is it Microsoft Account?
by
RetiredGeek
50 minutes ago -
Does Your State Reveal Who’s Been Hacked?
by
Nibbled To Death By Ducks
10 hours, 36 minutes ago -
A one-year extension to Windows 10 โ almost free!
by
Susan Bradley
25 minutes ago -
Windows Configuration Update (KB5062324) โ June 2025
by
Alex5723
10 hours, 33 minutes ago -
A federal judge sides with Anthropic in lawsuit over training AI
by
Alex5723
15 hours, 29 minutes ago -
Name of MS Word Formatting Feature
by
John Baum
4 hours, 17 minutes ago -
InControl Failure?
by
Casey H
2 hours, 39 minutes ago -
Microsoft : Free 1 year support for Windows 10 after EOL
by
Alex5723
4 hours, 21 minutes ago -
MS-DEFCON 3: Businesses must tread carefully
by
Susan Bradley
5 hours, 45 minutes ago -
McLaren Health Care says data breach impacts 743,000 patients
by
Nibbled To Death By Ducks
1 day, 14 hours ago -
WhatsApp banned on House staffers’ devices
by
Alex5723
1 day, 9 hours ago -
Is your device eligible?
by
Susan Bradley
1 day, 17 hours ago -
Windows 11 Insider Preview build 26200.5661 released to DEV
by
joep517
1 day, 23 hours ago -
Windows 11 Insider Preview build 26120.4452 (24H2) released to BETA
by
joep517
1 day, 23 hours ago -
Hello Windows…My Problem is Windows Hello…
by
rdleib
2 days ago -
New Canon Printer Wants Data Sent
by
Win7and10
2 days, 1 hour ago -
I set up passkeys for my Microsoft account
by
Lance Whitney
6 minutes ago -
AI is for everyone
by
Peter Deegan
2 days ago -
Terabyte update 2025
by
Will Fastie
1 day, 18 hours ago -
Migrating from Windows 10 to Windows 11
by
Susan Bradley
2 hours, 7 minutes ago -
Lost sound after the upgrade to 24H2?
by
Susan Bradley
19 hours, 8 minutes ago -
How to move 10GB of data in C:\ProgramData\Package Cache ?
by
Alex5723
1 day, 3 hours ago -
Plugged in 24-7
by
CWBillow
2 days, 9 hours ago -
Netflix, Apple, BofA websites hijacked with fake help-desk numbers
by
Nibbled To Death By Ducks
3 days, 13 hours ago -
Have Copilot there but not taking over the screen in Word
by
CWBillow
3 days, 10 hours ago -
Windows 11 blocks Chrome 137.0.7151.68, 137.0.7151.69
by
Alex5723
5 days, 4 hours ago -
Are Macs immune?
by
Susan Bradley
1 day, 19 hours ago -
HP Envy and the Function keys
by
CWBillow
4 days, 12 hours ago -
Microsoft : Removal of unwanted drivers from Windows Update
by
Alex5723
2 days, 5 hours ago -
MacOS 26 beta 1 dropped support for Firewire 400/800
by
Alex5723
5 days, 15 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.