@kariboka @Sh4d0w_H34rt @joinjabber @nullagent @adele If someone that doesn't have OMEMO messages you it will be plain text. If you message them it will be plain text. If you both have it & your keys are mismatched your clients will fail open & go "oh well, we tried. just send the message again without encryption, I'm sure it's fine". A newer version than what's used in XMPP properly fails closed & does not send an unencrypted message. Encryption doesn't matter if you can simply jam the signal to make the people talking decide to turn off their encryption. Encryption only works while it's turned on.
Posts
-
My semiannual telegram reminder, Telegram serves warrants now and does not actually provide DM or group chat privacy in 99% of use cases. -
My semiannual telegram reminder, Telegram serves warrants now and does not actually provide DM or group chat privacy in 99% of use cases.@kariboka @Sh4d0w_H34rt @nullagent XMPP is outdated as shit sorry
It would be less of an issue if people would use up to date OMEMO that fails closed instead of failing open like the popular version does though. -
My semiannual telegram reminder, Telegram serves warrants now and does not actually provide DM or group chat privacy in 99% of use cases.@Sh4d0w_H34rt @nullagent Signal is supposed to be perfect except for the phone number requirement. Matrix is alright since no company runs it, except for the shitty scaling & the encryption vulnerabilities, so it's fine for things that aren't sensitive. There are a few other encrypted messaging apps but they all seem to be either infested with cryptocurrency shit (Session, Jami) or underdeveloped (Briar, SimpleX Chat).
-
Bad idea: a character who cannot use any common password reminder questions.@foone The one about the favorite book or author is the only secure security question. Favorites change, or some people are too embarrassed by their favorite book so they lie about what it is to everyone.