this post was submitted on 07 Mar 2024
259 points (100.0% liked)

Technology

38304 readers
17 users here now

A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.

Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.

Subcommunities on Beehaw:


This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.

founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 14 points 1 year ago (18 children)

Would this mean I could finally ditch what's app and use only Signal?

[–] [email protected] 53 points 1 year ago (1 children)

No, Signal announced they won’t implement interoperable messaging.

[–] [email protected] 13 points 1 year ago (3 children)

kind of dumb they could get huge market share

[–] [email protected] 39 points 1 year ago (1 children)

Yeah, this worked so well for XMPP when everybody federated with Gmail chat.

[–] [email protected] 4 points 1 year ago

Well, it worked out for Google when it federated with Jabber, who first open sourced XMPP.

[–] [email protected] 33 points 1 year ago (2 children)

It's not. There is no privacy if you send your message to Whatsapp servers.

[–] [email protected] 4 points 1 year ago (2 children)

Would it not be E2EE? Isn't that one of the reasons for using the Signal protocol?

[–] [email protected] 10 points 1 year ago (2 children)

Yes, the "delivering" part would be E2EE. Do we really know the afterwards if they can read their users' messages? They probably can.

[–] [email protected] 9 points 1 year ago (1 children)

Whatsapp CANNOT read messages when e2ee is enabled, this client-side snooping was discussed when the protocol was first implemented. Whatsapp collects a ton of metadata and social graph info, but not message content.

[–] [email protected] 4 points 1 year ago

Well you type messages in in plain text and they decrypt it to show you the messages at the other end. So they can do the nefarious processing on the client side and send back results to the mother ship. E2EE is only good when you trust the two ends, but with WhatsApp and Messenger you shouldn't trust the ends.

[–] [email protected] 4 points 1 year ago (2 children)

Sure, but any messaging app (including Signal) could have these backdoors in place. Heck, there's even vectors for unrelated apps on your phone to read this data once unencrypted.

[–] [email protected] 2 points 1 year ago (1 children)

Signal clients are open-source.

[–] [email protected] 2 points 1 year ago (1 children)

Signal is only officially distributed through Google Play, so their APK isn't reproducible, and I believe it still contains binary blobs.

[–] [email protected] 2 points 1 year ago

You can download Signal APK directly from their website.

[–] [email protected] 2 points 1 year ago

That's actually true. We don't know the real-time server code of Signal. Though other apps cannot read what's written inside Signal, that's the good part. I prefer private server + Matrix but Signal is the easiest for regular people.

[–] [email protected] 3 points 1 year ago

if i remember correctly, it would be E2EE (WhatsApp and Messenger are too) but Meta stores the encrypted message on their server

[–] [email protected] 14 points 1 year ago

Signal does not care about "market share", they're a non-profit.

load more comments (16 replies)