Earlier quoted context omitted.
Trevor Perrin and Moxie Marlinspike won the Levchin Prize at Real World Crypto for Signal's cryptography; the Levchin Prize referees are a who's who of academic cryptography, including Dan Boneh, Kenny Paterson, and Nigel Smart; other Levchin winners have included Hugo Krawczyk, Mihir Bellare, and Joan Daemon. Any suggestion that Telegram's cryptography is somehow comparable owing to "half of them Ph.D's in math", or…
Has there been any weakness found in Telegram's encryption?
Jeff Bezos's phone 'hacked by Saudi crown prince'
171–180 of 327 posts
Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#172I'm glad it's fixed now. https://www.facebook.com/security/advisories/cve-2019-11931
Any rough theories on how this sort of thing can happen? How can an app go from parsing metadata to executing foreign code?
Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#173Earlier quoted context omitted.
Pretty brazen? Don't forget that the WP reported that US intelligence intercepted comms from Saudi officials discussing a plan ordered by MBS to lure Jamal Khashoggi from his home in Virginia and then subsequently had him cut into pieces in an embassy. Hacking a phone is small potatoes.
Yeah, I was using semi-facetious understatement. He's very brazen for someone in his position.
Who are the bad guys again? Didn't watch the tele today, they usually tell me.
Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#174Earlier quoted context omitted.
Are you referring to the data center breaches exposed by the Snowden leaks? Because Google claimed that they were unaware of the breach and quickly took action to correct it [1]. Are you suggesting that Google was complicit? [1] https://www.zdnet.com/article/meet-muscular-nsa-accused-of-t...
I don't think Google has given us any reason to believe that it was not complicit. For instance, why not include warrant canaries on gmail accounts? There is not really any fundamental difference between abetting the data center breach and opting not to offer warrant canaries. Likely tens of thousands of Google users are searched every day due to easy FISC warrants and wide investigative nets. The state sponsored att…
Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#175Pavel Durov argued that WhatsApp's vulnerabilities are intentionally created as part of surveillance programs with government agencies. [1] If that were true, Bezos's case would be an example of how that approach to security is double-edged. Backdoors can be just as useful to foreign intelligence as they are to whoever pushed for their implementation. [1] https://t.me/s/durov/109
Pavel Durov also said > The encryption of Signal (=WhatsApp, FB) was funded by the US Government. I predict a backdoor will be found there within 5 years from now. He seems to enjoy throwing out loosly supported accusations. He might be right in some of them, but stopped clocks and so forth. He's also been accused himself of deliberately sabotaging the security of his own encrypted messenger app (Telegram). There's n…
Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#176I wonder how many Alexas there are in Saudi.
Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#177Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#178Earlier quoted context omitted.
Great theory, except for the fact David Pecker was directly involved and more or less admitted it was a favor for Trump which he had been doing for decades.
David Pecker was, IIRC, the guy who also directed the 'catch and kill' with Stormy Daniels just before the 2016 election. https://www.thedailybeast.com/how-trumps-fixers-silenced-sto...
Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#179Re: Jeff Bezos's phone 'hacked by Saudi crown prince'
#180Earlier quoted context omitted.
Trevor Perrin and Moxie Marlinspike won the Levchin Prize at Real World Crypto for Signal's cryptography; the Levchin Prize referees are a who's who of academic cryptography, including Dan Boneh, Kenny Paterson, and Nigel Smart; other Levchin winners have included Hugo Krawczyk, Mihir Bellare, and Joan Daemon. Any suggestion that Telegram's cryptography is somehow comparable owing to "half of them Ph.D's in math", or…
Has there been any weakness found in Telegram's encryption?