Signal CTO answers public's questions
cross-posted from: lemmy.world/post/49760662
- YouTube
Bekijk je favoriete video's, luister naar de muziek die je leuk vindt, upload originele content en deel alles met vrienden, familie en anderen op YouTube.www.youtube.com

warmaster
in reply to Eager Eagle • • •like this
TVA likes this.
Tundra
in reply to warmaster • • •deltachat!
For most people, signal is the first step.
it was hard enough persuading people to talk to me on signal rather than FB messenger/whatsapp etc
XLE
in reply to Tundra • • •Their architecture is incredible, but I do agree that bringing people over is difficult. Scanning QR codes or clicking links to add someone as a friend on a social network is strange. On Discord, links are basically vectors for attacks, and avoiding them is good practice.
Still waiting for Delta to implement forward secrecy, which would require PGP to implement it first, if I understand correctly.
Shrouded0603
in reply to XLE • • •As far as i know they use autocrypt Which I think includes pgp. Maybe its the dependency on pgp but basically there is work on autocrypt to Support pfs.
BTW until quite recently Signal didnt have (proper?) pfs either although its hailed as one of the pinnacles of private and secure messaging
XLE
in reply to Shrouded0603 • • •XLE
in reply to warmaster • • •like this
TVA likes this.
superglue
in reply to warmaster • • •Because it's the most secure app I can actually get people to install.
If you have friends or family privacy conscious enough then sure, use something different, or shoot, even self host. But for everyone else, even getting them to use Signal is a difficult feat.
Jul (they/she)
in reply to warmaster • • •Yes it's not private who you chat with, but the content of the messages are secured and the keys are not stored in a way that's accessible to the central server like most "e2e encrypted" messaging systems. So yes, it's not perfect for journalists and similar people who need to hide the who, but for those of us who just don't want the content of our messages scraped for advertising, anti-minority attacks, or any other reason, it's a convenient, reliable, and well designed system. High availability and ease of migrating my contacts is what's most critical after security for me or my contacts would abandon it. Most can't afford the time, effort, and server costs for high availability of a self-hosted application. And what if that friend who self hosts loses their job or just decides to stop hosting it?
And truly private applications that don't have user IDs make it really difficult to find people when you switch devices so never have really caught on. It's hard to get nontechnical people to put in the effort to prevent having to start from scratch reconnecting with contacts off
... Show more...Yes it's not private who you chat with, but the content of the messages are secured and the keys are not stored in a way that's accessible to the central server like most "e2e encrypted" messaging systems. So yes, it's not perfect for journalists and similar people who need to hide the who, but for those of us who just don't want the content of our messages scraped for advertising, anti-minority attacks, or any other reason, it's a convenient, reliable, and well designed system. High availability and ease of migrating my contacts is what's most critical after security for me or my contacts would abandon it. Most can't afford the time, effort, and server costs for high availability of a self-hosted application. And what if that friend who self hosts loses their job or just decides to stop hosting it?
And truly private applications that don't have user IDs make it really difficult to find people when you switch devices so never have really caught on. It's hard to get nontechnical people to put in the effort to prevent having to start from scratch reconnecting with contacts offline to get their online identities every time something breaks. Not to mention if they get popular they will get flooded with tons of spam without a way to limit users to a single identity. It's just very inconvenient and thus for most people not a good tradeoff.
Count042
in reply to Jul (they/she) • • •electric_nan
in reply to warmaster • • •Hanrahan
in reply to Eager Eagle • • •iamtherealwalrus
in reply to Hanrahan • • •