this post was submitted on 16 Mar 2026
13 points (100.0% liked)
Opensource
5810 readers
342 users here now
A community for discussion about open source software! Ask questions, share knowledge, share news, or post interesting stuff related to it!
⠀
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
I wouldn't blanket call the removal of PFS a "failure" as they put it... it does make the protocol much simpler (and hence easier to understand/audit as well) and it's not always a necessity for every single person's threat model... which is an important phrase the article doesn't even mention.
IMO arguing about security or privacy without both people first defining their threat models... is like claiming apples are objectively better than bananas in every way.