Live data from Hacker News

Free, Worldwide, Encrypted Phone Calls for iPhone

whispersystems.org

101–110 of 211 posts

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#101
post #77

Earlier quoted context omitted.

Open source. Donations. https://pressfreedomfoundation.org/bundle/encryption-tools-j...

Donations is not a business model.

You do realize charitable giving represents hundreds of billions of revenue for non-profits every year ? - and that's excluding religious donations which are likely to represent an even larger amount.

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#102
post #88

Hey, I'm the co-lead developer of Signal. We're looking for help with translations, help us out to bring Signal to as many people as possible: https://www.transifex.com/projects/p/signal-ios/ We also pay per commit if you want to help on Open Whisper Systems projects: http://bithub.whispersystems.org/

These seem like incredibly generous payments for such small commits... https://github.com/WhisperSystems/whispersystems.org/commit/... https://github.com/WhisperSystems/whispersystems.org/commit/... https://github.com/WhisperSystems/whispersystems.org/commit/... I was going to donate today, but it seems like the donations are being wasted. I work hard for my money and if my donations go towards a trivial (and arguabl…

I am also one of the core devs. Actually, none of the Bithub donations go close to being a working wage for any programmer actively working on the repository. We either get paid by grants or are volunteer. Asking us to micromanage Bithub grants for one or two off contributors would only be more work. We went with a "worse is better" strategy with the goal of encouraging people to regularly commit in however they feel comfortable. It's an experiment that we've been pleased with and if you would rather donate to a dev individually just look at who the top contributors are and reach out. We appreciate any support from PRs to Bitcoin to press.

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#103
post #71

I wish they had text messaging. I've been waiting so long for this and it lacks the major feature we need! Hopefully it'll come soon. The reason why this is important these days is that law enforcement now has more access (because the technology is cheaper) to fake cell towers http://en.wikipedia.org/wiki/Stingray_phone_tracker Many states are denying FOIA requests regarding this spying but there are several news sto…

It uses only data

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#104

I wanted to donate $5 to BitHub using Bitcoin, but Coinbase's overlay doesn't allow you to change the amount (typing a new amount in does nothing). Does anyone know of a way around this? Moxie, if you see this, can you publish some static address we can send funds to as well?

I used it to successfully donate $5 without issue. Changing the dollar amount seemed to work for me.

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#105
post #102
post #88

Earlier quoted context omitted.

These seem like incredibly generous payments for such small commits... https://github.com/WhisperSystems/whispersystems.org/commit/... https://github.com/WhisperSystems/whispersystems.org/commit/... https://github.com/WhisperSystems/whispersystems.org/commit/... I was going to donate today, but it seems like the donations are being wasted. I work hard for my money and if my donations go towards a trivial (and arguabl…

I am also one of the core devs. Actually, none of the Bithub donations go close to being a working wage for any programmer actively working on the repository. We either get paid by grants or are volunteer. Asking us to micromanage Bithub grants for one or two off contributors would only be more work. We went with a "worse is better" strategy with the goal of encouraging people to regularly commit in however they feel…

Fair enough, thank you very much for working on such an awesome and important project.

After looking at that specific developers commit history it seems like he does commit a ton all over the place, these were just the last few and immediately drew my attention.

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#106
"Signal uses your existing number, doesn’t require a password, and leverages privacy-preserving contact discovery to immediately display which of your contacts are reachable with Signal."

How does contact discovery work? What happens when run on a device without a (valid) SIM?

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#108

I wanted to donate $5 to BitHub using Bitcoin, but Coinbase's overlay doesn't allow you to change the amount (typing a new amount in does nothing). Does anyone know of a way around this? Moxie, if you see this, can you publish some static address we can send funds to as well?

I used it to successfully donate $5 without issue. Changing the dollar amount seemed to work for me.

Hmm, thanks. It must have been some ad blocker issue, I'll try an incognito window.

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#109
post #28
post #6

Earlier quoted context omitted.

[deleted]

It's possible to do this in a staged way -- basically, give me 100k phone numbers, I'll do automated attacks and catch 25-50k of them (old unpatched OSes for which if I had a $5-10mm budget I'd have 0-days ready, phishing, etc.). Then, use the early victims to catch the rest -- hopefully they're admin assistants, HR people, etc. Targeted attacks on the rest. Black bag jobs on the remainder, using legal or extralegal…

The cost increases dramatically compared to unencrypted comms. Moreover you risk wasting valuable 0-days on targets that may not be worth it.

Re: Free, Worldwide, Encrypted Phone Calls for iPhone

#110
post #18
post #6

Earlier quoted context omitted.

[deleted]

That will always remain an issue: Even if someone manages to create a secure app, the software and hardware platform will never be secure. Hijacking a smartphone by only knowing its number on the other hand does not seem realistic too me. So a source for this claim would be great …

It seems realistic to me. Just send a phishing SMS ("Your bill of $103.54 is due TODAY: http://payments-comcast.net/83954583"), hope the user clicks it, have the webpage exploit one of the numerous iOS Safari vulnerabilities, and you are done. There are tons of vulnerabilities in smartphone browsers: iOS 7.1.2 alone fixed 28 UNIQUE VULNERABILITIES in Webkit (http://support.apple.com/kb/HT6297) 7.1.2 was released merely 2 months after 7.1.1, so at least 3 vulnerabilities are discovered and fixed every week.
Post reply on HN