this post was submitted on 15 Apr 2024
88 points (94.9% liked)

Privacy

31263 readers
570 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 4 years ago
MODERATORS
 

I'm thinking of the things listed on the Privacy Guides real-time communication section

https://www.privacyguides.org/en/real-time-communication/

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 14 points 5 months ago (30 children)

Signal isn't federated. Signal has centralized servers. Signal requires phone number identification to use it. Signal stores your encryption key on their servers.... Relying on sgx enclaves to 'protrct' your encryption key.

Signal can go down. Signal knows who you talk to, just by message timing. Signal knows how frequently you talk to someone. Signal can decrypt your traffic by attack their own sgx enclaves and extracting your encryption key.

These are all possible threats and capabilities. You have to decide what tradeoff makes sense to you. Fwiw I still use signal.

[–] [email protected] 7 points 5 months ago (2 children)

Many assertions without any proof. Could you at least point out the sources for such statements?

[–] [email protected] 6 points 5 months ago* (last edited 5 months ago)

https://github.com/dessalines/essays/blob/main/why_not_signal.md

Also, most of the points of the message you replied to are abstract and don't need any citation. Like do you want source for signal being centralized or for signal having ability to track you?

[–] [email protected] 3 points 5 months ago* (last edited 5 months ago)

Everything in that post makes perfect sense; the proof is in knowing how these systems work, Signal's source code, and details from Signal themselves. I can go into more detail on each point when I'm at a computer; my phone kills processes in a few seconds when I try to multitask which makes it nearly impossible to write long posts on mobile if I have to go back and forth to copy and paste. Is there any claim in particular you want details on as to why it's reasonable, or shall I just do the lot? Edit: Ah, OP got it, nevermind!

Also, I should point out that I use Signal pretty much exclusively for messaging. This isn't hate, I'm just aware of its weaknesses.

load more comments (27 replies)