46
submitted 1 month ago by chappedafloat@lemmy.wtf to c/privacy@lemmy.ml

Convincing people to use apps such as Signal is hard work and most can't be convinced. But with those you manage to convince, do you feel happy to talk to them on Signal?

The problem is these people use Signal on Android/IOS which can't be trusted and IOS has recently been in the news for having a backdoor. And it has also been revealed that american feds are able to read everyone's push notifications and they do this as mass surveillance.

So not only do you have to convince people to use Signal which is an incredibly difficult challenge. You also have to convince them to go into settings to disable message and sender being included in the push notifications. And then there's the big question is the Android and IOS operating systems are doing mass surveillance anyway. And many people find it taking a lot of effort to type on the phone so they install Signal on the computer which is a mac or Windows OS.

So I don't think I feel comfortable sending messages in Signal but it's better than Whatsapp.

These were some thoughts to get the discussion started and set the context.

(page 2) 49 comments
sorted by: hot top controversial new old
[-] Kualk@lemm.ee 2 points 1 month ago* (last edited 1 month ago)

Signal runs a service. Even if its source code is open source there’s no guarantee that that’s the code running on the server.

I don’t know the protocol, but I am concerned of man in the middle and how safe it is from man in the middle. In this case signal servers must be considered to be man in the middle.

The only system to trust is peer to peer with proven track record of sending encrypted data over public channels.

That’s PGP and Delta Chat utilizing PGP.

[-] JubilantJaguar@lemmy.world 2 points 1 month ago

If the client software is open source with reproducible build, then you don't need to care about what's running on the server. You will never have any means to confirm what's running on the server, because you don't control the server. That is why EE2E was invented.

[-] andylicious1337@lemmy.world 0 points 1 month ago

but if this is your argument, you could also say that Telegram is good because their client can also be built from their open source. of course you have to activate e2ee on a 1-1 chat first...

load more comments (5 replies)
load more comments (1 replies)
load more comments
view more: ‹ prev next ›
this post was submitted on 20 Sep 2024
46 points (76.1% liked)

Privacy

31609 readers
221 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS