• rottingleaf@lemmy.world
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    1
    ·
    3 days ago

    I think there was an article recently about Session devs, first, having their protocol derived from Signal’s, second, not knowing what they were doing with that, which would discredit it pretty hard.

    Also everything is traceable, it’s a question of effort and who you piss off.

    • Amoxtli@thelemmy.club
      link
      fedilink
      English
      arrow-up
      2
      arrow-down
      1
      ·
      edit-2
      2 days ago

      You don’t know what you are talking about. Just because Session is a fork of Signal doesn’t mean it isn’t better. Session adds identity protection and it is decentralized. There is no personal information needed to create accounts; no phone number or email required. There is no metadata storage. Had the Trump cabinet used Session instead of Signal, there would be no evidence to the identities of the individuals messaging each other. Signal requires a phone number to have an account which traces to an identity and metadata that logs time and date. The leaked war plans were not from encryption failing, but traceable identities by an insider.

      • rottingleaf@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        2
        ·
        1 day ago

        Just because Session is a fork of Signal doesn’t mean it isn’t better.

        And nobody said that, strawman count one.

        Session adds identity protection and it is decentralized.

        Just so you knew, everything about security is made much harder and more complex by decentralization. Welcome to the real world, two good things do not help each other, you have to compromise on something.

        This statement adds nothing but the vague idea that decentralization helps security, so answered only that.

        There is no personal information needed to create accounts; no phone number or email required. There is no metadata storage.

        The article I don’t remember was about purely technical mistakes of Session developers in processes inherited from Signal. Mistakes! Mistakes happen in software. While what you are doing is listing features.

        Signal requires a phone number to have an account which traces to an identity and metadata that logs time and date.

        You are again talking about features and policies and limitations.

        Damn right it’s better to use a system where users using their IP addresses store messages in a blockchain, very anonymous.

        Had the Trump cabinet used Session instead of Signal, there would be no evidence to the identities of the individuals messaging each other. Signal requires a phone number to have an account which traces to an identity and metadata that logs time and date. The leaked war plans were not from encryption failing, but traceable identities by an insider.

        Buddy, that journalist didn’t trace anything, they just were added to a chatroom, saw what’s being discussed there, said oops, informed others and left it.

        I’m sure you can set a nickname to your real name in Session too.