000@reddthat.com to Technology@lemmy.worldEnglish · 1 day agoDon’t Use Session (Signal Fork).soatok.blogexternal-linkmessage-square12fedilinkarrow-up1142arrow-down18cross-posted to: privacy@lemmy.mlprivacyguides@lemmy.oneprivacy@lemmy.mltech@pawb.social
arrow-up1134arrow-down1external-linkDon’t Use Session (Signal Fork).soatok.blog000@reddthat.com to Technology@lemmy.worldEnglish · 1 day agomessage-square12fedilinkcross-posted to: privacy@lemmy.mlprivacyguides@lemmy.oneprivacy@lemmy.mltech@pawb.social
minus-squarevollkorntomate@infosec.publinkfedilinkEnglisharrow-up35·1 day ago […] it uses the X25519 public key… as a symmetric key, for AES-GCM. […] anyone that knows the public key can decrypt it. Ouch.
Ouch.