this post was submitted on 03 Sep 2022
19 points (80.6% liked)

Security

5183 readers
1 users here now

Confidentiality Integrity Availability

founded 5 years ago
MODERATORS
 

Users of the Signal messaging app got hit by a hacker attack. We analyze what happened and why the attack demonstrates that Signal is reliable.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 5 points 2 years ago (23 children)

To be fair, even though they bypassed the 2FA, they did not get access to previous conversations and contact list. That's the point of the article, right?

[–] [email protected] 2 points 2 years ago (22 children)

Even if the encryption does not collapse, it is still an app full of identifiers. That makes metadata available. An attacker could figure out who contacted whom.

[–] [email protected] 5 points 2 years ago (21 children)

Whenever someone says "Signal is not good enough", my answer is "what's your threat model"? For me it's a pretty damn good compromise given that all my friends and family are on it (as opposed to e.g. using WhatsApp or Telegram 99% of the time and a perfect alternative with one contact). The day I can realistically think about making my contacts move to a better alternative, I'll do it. In the meantime, that's the best I've got. And it's not too bad, to be fair.

[–] [email protected] 1 points 2 years ago* (last edited 2 years ago)

Uh, I forgot to tell you that the "account" is safely saved locally (something) like jones.zip. That's it!

load more comments (20 replies)
load more comments (20 replies)
load more comments (20 replies)