this post was submitted on 25 Aug 2024
252 points (96.0% liked)

Technology

59161 readers
2096 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
top 50 comments
sorted by: hot top controversial new old
[–] [email protected] 18 points 2 months ago* (last edited 2 months ago) (4 children)

One of the most important rules of cybersecurity is: never roll your own encryption.

And what did the guys at Telegram do? Rolled their own encryption.

If you are into Telegram because you think it's secure, think again. There are much better alternatives out there, adopting proved industry standards. Signal or Matrix just to name a few.

[–] [email protected] 4 points 2 months ago

Generally a good rule, however Signal did develop their own encryption. It was so good it became the industry standard.

[–] [email protected] 2 points 2 months ago (1 children)

if the people you want to talk to are using telegram then you don't have much of a choice

[–] [email protected] 2 points 2 months ago (1 children)

Maybe tell them you are using signal and that they don't have a choice but to use it

[–] [email protected] 1 points 2 months ago* (last edited 2 months ago) (1 children)

that doesn't work with clients. or vendors. or any other type of business partner, really. maybe your staff and your grandma and steven?

[–] [email protected] 1 points 2 months ago

It would if everyone already had it installed.

[–] [email protected] 8 points 2 months ago (1 children)

No, it's not the rule itself. It's rather an advice not to do as rolling own crypto is very tricky and complicated thing. You have to be very aware of many possible attacks, how they do work, to create own crypto properly

[–] [email protected] 6 points 2 months ago

More like "don't roll your own crypto unless you're ready to spend years getting it scrutinized and polished".

[–] [email protected] 3 points 2 months ago (2 children)

What does 'rolling encryption' mean (if it's possible to ELI15).

[–] [email protected] 13 points 2 months ago

'Rolling your own...' is a comparison to rolling your own cigarettes. That is, creating your own version from scratch instead of using something ready-made.

[–] [email protected] -3 points 2 months ago (1 children)

Oh here we go.

Manufacturing Consent to tear it down because victims around the world use it to get their voices out when everything else is shut down. People organizing against oppressive governments using it when nothing else is safe.

It can't be allowed to exist. This is them social engineering your acceptance of their tyranny. Don't bite the bait.

[–] [email protected] 18 points 2 months ago* (last edited 2 months ago)

What is this nonsense? This is a technical post explaining why it's not encrypted.

Plus there's plenty of other services like matrix which can do the same thing better without enriching a billionaire

load more comments
view more: next ›