• SavvyWolf@pawb.social
    link
    fedilink
    arrow-up
    0
    ·
    3 months ago

    meanwhile, it is very unclear that any sidechannel attack on a libolm based client is practical over the network (which is why we didn’t fix this years ago).

    Wow… Uh, that’s certainly a thing for a developer to let slip out, huh?

    One thing I don’t get about Signal/Telegram/etc is that they claim to be secure and private… Yet also require you to prove your identity via a phone number? I don’t really get it.

    That would be a massive deal breaker to some people I want to push off Discord and is one of the reasons I haven’t tried Signal yet, but have tried Matrix.

    • Bunny@pawb.social
      link
      fedilink
      arrow-up
      0
      ·
      3 months ago

      signal no longer requires phone numbers as they have implemented a username system

      • SavvyWolf@pawb.social
        link
        fedilink
        arrow-up
        0
        ·
        3 months ago

        I figured, but my question is: Why did it take them so long, especially for something that prides itself on privacy?