• Max-P@lemmy.max-p.me
    link
    fedilink
    arrow-up
    1
    ·
    6 months ago

    That’s a hell of a lot of massively unsubstantiated claims and paranoia.

    It’s end to end encrypted, that it’s hosted on AWS or who funded the project doesn’t matter. The encryption is open-source and auditable (and has been audited as well). It doesn’t even know who talks to who. For notifications, it’s decrypted locally on the device by Signal, and can be turned off. It’s also encrypted in transit on top of the E2E so only Signal servers can decrypt the little metadata there is, not everyone on the network.

    And none of this is confidence inspiring about their own service. It’s 2024, how the fuck isn’t rebuilding their compromised server not a single command away, and why are they even attempting to fix it in the first place? Why do they even have access to the server at all?

    Absolutely zero credibility. None.

  • RmDebArc_5@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    6 months ago

    So the solution for signals problems is a matrix based app that doesn’t even have passcode rekeying? Also it seems like the source code of the app isn’t available and they literally advertise that they will hand over to the government on request

  • swooosh@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    6 months ago

    Who are the donors? Signal costs a lot of money to operate. Who gave it the funds to operate?

    If you don’t know that, maybe you should start researching before writing a blog post. I’m not doing that part for you because you were to lazy/dumb.

  • slazer2au@lemmy.world
    link
    fedilink
    English
    arrow-up
    1
    ·
    6 months ago

    This whole article is an advert for this companies own new secure messenger because…

    Why Would We Stop Using Signal?

    We had a security breach of some root keys for a legacy chat server we were running and it got attacked and destroyed. It was too hard to restore after the attack and was abandoned. We tracked down the data leak to Signal, as the engineers had used Signal to send these keys between themselves.

    Human error. Why are you allowing private keys on untrusted devices?

  • TCB13@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    arrow-down
    1
    ·
    6 months ago

    I mean, they’re trying to sell a service but at the same time they aren’t wrong about the rest.