Earlier quoted context omitted.
Let me make this clear: if the data is stored in a way that Signal's service cannot decipher it, then it's not collected by any reasonable definition of collected" . In order for Signal to collect it they would have to obtain it, which they don't, and can't, do. This term isn't just some loose word to be thrown around and abused on message boards. If we take your definition of collected where handling encrypted data…
> Let me make this clear: if the data is stored in a way that Signal's service cannot decipher it, then it's not collected by any reasonable definition of collected". I think this is misguided, and confuses the truth. Data collected and stored remotely is being "collected and stored remotely" regardless of how well protected it is. I will however concede that it is possible to design a system where data is encrypted…
Twilio incident: What Signal users need to know
411–420 of 512 posts
Re: Twilio incident: What Signal users need to know
#412the recommended fix here is to add a PIN + enable registration lock IIRC signal PIN was very controversial back in the day because they were 1) forcing users to do it and 2) forcing them to opt in to some data collection as part of creating a PIN. Signal backed down on requiring a PIN, but now it's unclear from their settings page whether setting a PIN will share data as well. The marketing copy on my droid device sa…
Re: Twilio incident: What Signal users need to know
#413Re: Twilio incident: What Signal users need to know
#414How much can one trust Signal for secure communication?
Re: Twilio incident: What Signal users need to know
#415Earlier quoted context omitted.
The information they collect includes your name, your photo, your phone number, and a list of all the people you've been in contact with using Signal. They encrypt it using a pin which they ask you to set or one they generate for you. They (and anyone else) can decrypt that data by brute forcing what is often just a 4 digit number.
Can you show me this? I'd guess it would have to be in the server code, so where is it? I don't see any real information about this on their site. Their website suggests that this information is stored locally https://support.signal.org/hc/en-us/articles/360007459591-Si...
https://community.signalusers.org/t/dont-want-pin-dont-want-...
https://old.reddit.com/r/signal/comments/htmzrr/psa_disablin...
They've never updated their privacy policy to cover their new data collection practices even after requests (see https://community.signalusers.org/t/can-signal-please-update...)
The scheme they came up with to store user data in the cloud was described here: https://signal.org/blog/secure-value-recovery/
The code is here: https://github.com/signalapp/SecureValueRecovery
This site does a pretty good job of explaining why this isn't a good design: https://palant.info/2020/06/16/does-signals-secure-value-rec...
Lots of discussion here: https://community.signalusers.org/t/proper-secure-value-secu... and also https://community.signalusers.org/t/sgx-cacheout-sgaxe-attac...
Even more details here: https://community.signalusers.org/t/wiki-faq-signal-pin-svr-...
The major change was that pins were mandatory initially but the UX was so bad they had to give people a way to opt out of setting a pin. There is no opting out of having your profile/contacts data collected and stored in the cloud though.
Re: Twilio incident: What Signal users need to know
#416Earlier quoted context omitted.
A quick google suggests that if you want your tank to have working guns and/or turret you need a Federal Destructive Device Permit, which includes a background check and ATF approval.
Destructive devices are NFA items, true. If you want to own a DD, you need to pay the $200 federal transfer tax, which is done by submitting a form to the ATF and getting a tax stamp from them. It's not a "permit", though. And there are no special limits on who can own one - if you can legally own a gun, you can legally own a DD or any other NFA item. One doesn't even need to be a US citizen or a permanent resident f…
Re: Twilio incident: What Signal users need to know
#417How much can one trust Signal for secure communication?
It won the Levchin Prize at Real World Crypto, and is essentially the gold standard for messaging cryptography. People on HN hate its ergonomics. You could reasonably prefer something else, but you can't reasonably call it untrustworthy.
Re: Twilio incident: What Signal users need to know
#418Earlier quoted context omitted.
> Let me make this clear: if the data is stored in a way that Signal's service cannot decipher it, then it's not collected by any reasonable definition of collected". I think this is misguided, and confuses the truth. Data collected and stored remotely is being "collected and stored remotely" regardless of how well protected it is. I will however concede that it is possible to design a system where data is encrypted…
Can you link to the implementation? I'll agree that a 4 digit pin is rather egregious and trivially crackable. I don't know a single serious cryptographer that would allow such nonsense which is why your comment sounds so unbelievable. I thought they were blending the pin with some device-local entropy to make a reasonably strong key. I'd like to verify your claim.
The scheme they came up with to store user data in the cloud was described here: https://signal.org/blog/secure-value-recovery/
The code is here: https://github.com/signalapp/SecureValueRecovery
This site does a pretty good job of explaining why this isn't a good design: https://palant.info/2020/06/16/does-signals-secure-value-rec...
I'm sure I've linked to it already, but please review the discussion here as well: https://community.signalusers.org/t/sgx-cacheout-sgaxe-attac...
Even more details here: https://community.signalusers.org/t/wiki-faq-signal-pin-svr-...
Re: Twilio incident: What Signal users need to know
#419Earlier quoted context omitted.
Can you show me this? I'd guess it would have to be in the server code, so where is it? I don't see any real information about this on their site. Their website suggests that this information is stored locally https://support.signal.org/hc/en-us/articles/360007459591-Si...
I know. I really wish they had a simple page that explains everything. They've gone to great lengths to be confusing about what they're collecting and how. There were several complaints about misleading communication when this change rolled out Examples: https://community.signalusers.org/t/dont-want-pin-dont-want-... https://old.reddit.com/r/signal/comments/htmzrr/psa_disablin... They've never updated their privacy p…
You linked to a repository that uses Intel SGX which is used in this instance specifically to address your false claim that the e2e encryption used is easily bruteforced.
It also doesn't store any lists of who you contact; this claim is false. You've already been asked once for code references for your inaccurate claims, it's time for PoC or GTFO.
Re: Twilio incident: What Signal users need to know
#420Earlier quoted context omitted.
It won the Levchin Prize at Real World Crypto, and is essentially the gold standard for messaging cryptography. People on HN hate its ergonomics. You could reasonably prefer something else, but you can't reasonably call it untrustworthy.
I don’t really know why, even. I get the account vs phone number argument (though I prefer phone number as it is familiar to regular people in a way that usernames are not) but aside from that it has every feature I could want, and I feel like I am a fairly demanding user. It is is my primary messaging app and I send hundreds of messages a day to my friends, both individually and in group, on my phone and on my deskt…
And those same people have very strong feelings about services where you can't build your own client from scratch, and a viscerally negative reaction to Signal's principle that open clients create a lowest-common-denominator anchor for security. I get that too, even though the point is kind of indisputable (see: what happened with Matrix E2E crypto).
Signal has a clear vision for how security and privacy work in messaging, and they're uncompromising about it. I deeply respect that, since there are a lot of things they could do to pick up Internet points that they don't do because they haven't worked out the privacy details yet. But opinions differ.