How Secure is TextSecure?
eprint.iacr.org
How Secure is TextSecure?
1–10 of 23 posts
Re: How Secure is TextSecure?
#2> Date: received 31 Oct 2014, last revised 5 Apr 2016
Re: How Secure is TextSecure?
#3I assume this was posted now because of this: > Date: received 31 Oct 2014, last revised 5 Apr 2016
Re: How Secure is TextSecure?
#4Re: How Secure is TextSecure?
#5>In conclusion, TEXTSECURE only achieves deniability theoretically. Content deniability is provided due to our security proof but we can not prove that no delivery request will be recorded at the TEXTSECURE server.
Re: How Secure is TextSecure?
#6Re: How Secure is TextSecure?
#7Re: How Secure is TextSecure?
#8Seems pretty good overall. The only primary bullet point to "fail" was here: >In conclusion, TEXTSECURE only achieves deniability theoretically. Content deniability is provided due to our security proof but we can not prove that no delivery request will be recorded at the TEXTSECURE server.
Re: How Secure is TextSecure?
#9I assume this was posted now because of this: > Date: received 31 Oct 2014, last revised 5 Apr 2016
Re: How Secure is TextSecure?
#10I've expended 0 effort to find the answer to this myself, but I wonder if this is based on the OTR protocol, and if not, why not.
Here is an older post where the authors of the protocol explain why not OTR: https://whispersystems.org/blog/advanced-ratcheting/
The main takeaway: text messaging, unlike traditional instant messaging, is primarily asynchronous with long-lived sessions, where traditional instant messaging is primarily synchronous with short-lived sessions.