Remix.run Logo
RandomGerm4n 7 hours ago

That’s not really a big deal since the session encryption was insecure anyway. It feels almost like a honeypot after they've removed forward secrecy. If you’re looking for a decentralized alternative SimpleX Chat is a more secure option.

Jigsy 4 hours ago | parent | next [-]

My issue with SimpleX is that the company is in the UK, and it's developed in the UK under UK law. https://simplex.chat/transparency/

Considering how fiercely anti-encryption the UK is/has become (because "only child molesters care about encryption!"), this is sadly reason enough for me not to trust it.

Do I believe they have a backdoor in their software? No.

But if the UK passes a law demanding they introduce one...

seanw444 4 hours ago | parent | prev [-]

Or the mature and robust XMPP + OMEMO.

RandomGerm4n 4 hours ago | parent [-]

The problem with XMPP is that most clients use an outdated and insecure implementation of OMEMO. This includes popular clients such as Conversations and Gajim. Currently only Profanity and Kaidan use the latest version and you must always assume that the encryption has been secretly downgraded because the other person is using an insecure client. I highly recommend Soatek's blog post on this topic. https://soatok.blog/2024/08/04/against-xmppomemo/