• BearOfaTime@lemm.ee
    link
    fedilink
    English
    arrow-up
    56
    arrow-down
    2
    ·
    10 months ago

    Wow.

    I think it would help to summarize the major issue with iMessage and have it at the top.

    The RSA encrypting the AES with the message content is so face-palmingly bad that you really don’t need to read any further, and thd rest is just more evidence of issues.

    Well done. I had no idea. Saving your summary, because it’s so staggering. Wish I could upvote you a hundred times. This is a huge issue.

    • farcaller@fstab.sh
      link
      fedilink
      English
      arrow-up
      8
      ·
      10 months ago

      In iOS 13 or later and iPadOS 13.1 or later, devices may use an Elliptic Curve Integrated Encryption Scheme (ECIES) encryption instead of RSA encryption

      (from apple docs).

      If you’re curious about it all, I’d suggest studying some notes from the protocol researchers instead of taking to the pitchforks immediately. Here’s one good post on the topic.

    • Rostby@lemmy.fmhy.net
      link
      fedilink
      English
      arrow-up
      7
      ·
      10 months ago

      No way governments spying on their own people I could never believe such an act would be tolerated.