000@reddthat.com to Technology@lemmy.worldEnglish · 9 days agoDon’t Use Session (Signal Fork).soatok.blogexternal-linkmessage-square16fedilinkarrow-up1147arrow-down18cross-posted to: lobsters@lemmy.bestiver.seprivacy@lemmy.worldprivacyguides@lemmy.onetech@pawb.social
arrow-up1139arrow-down1external-linkDon’t Use Session (Signal Fork).soatok.blog000@reddthat.com to Technology@lemmy.worldEnglish · 9 days agomessage-square16fedilinkcross-posted to: lobsters@lemmy.bestiver.seprivacy@lemmy.worldprivacyguides@lemmy.onetech@pawb.social
minus-squarevollkorntomatelinkfedilinkEnglisharrow-up42·8 days ago […] it uses the X25519 public key… as a symmetric key, for AES-GCM. […] anyone that knows the public key can decrypt it. Ouch.
Ouch.