You are viewing a single thread.
View all comments View context
-2 points

It’s open source. Look can up the encryption yourself.

permalink
report
parent
reply
21 points

No need, all you have to do is read the whitepaper. they home brewed the encryption algorithm and nobody actually knows if it’s worth a damn. That’s not exactly a secret.

permalink
report
parent
reply

And it isn’t even encrypted by default, you manually have to enable that. By default, all your plain text messages are stored on their servers.

permalink
report
parent
reply
3 points

nobody actually knows if it’s worth a damn.

After all these years, security researchers still don’t know if the encryption is any good?

permalink
report
parent
reply
11 points

On that level it usually falls on computer scientists. Formal methods can prove that any implementation is correct, but proving the absence of unintended attacks is a lot harder.

Needham-Schroeder comes to mind as an example from back when I was studying the things.

permalink
report
parent
reply
12 points

They don’t have reproducible builds afaik (unlike Signal). You can have a completely different code running on your phone than on GitHub.

Besides, who is using Secret Chat anyways? All default chats and group chats are unencrypted.

permalink
report
parent
reply
0 points

You can have a completely different code running on your phone than on GitHub.

Just use the F-Droid version if there is any doubt.

Besides, who is using Secret Chat anyways?

Probably Russians who used Signal before.

permalink
report
parent
reply
7 points

The F-droid version is also not reproducible. The binary you install has a different hash than the one you build from the GitHub.

permalink
report
parent
reply
3 points

Can it be proven that that encryption is what’s used in practice?

permalink
report
parent
reply
-5 points

Just use the F-Droid version if there is any doubt.

permalink
report
parent
reply

What about iOS users?

permalink
report
parent
reply

Technology

!technology@lemmy.world

Create post

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


Community stats

  • 18K

    Monthly active users

  • 11K

    Posts

  • 504K

    Comments