Valid Signal privacy issues shrugged off while patches quietly rolled out
403forbiddenblog.blogspot.com
Valid Signal privacy issues shrugged off while patches quietly rolled out
1–10 of 53 posts
Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#2Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#3Does the safety number count as a sort of hash in this case? Or is it absolutely nothing like an MD-5?
Edit: Signal’s blog refers to it as a hash[1]. It’s apparently essentially just a hash of the contact’s public key, so rotating that causes the hash change.
Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#4Does the safety number count as a sort of hash in this case? Or is it absolutely nothing like an MD-5?
Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#5This doesn't appear to be anything of the kind. Signal has implemented a migration system so that people can move to a new phone without changing the safety number.
Then a bunch of references to the promises Signal makes about re-verifying if the safety number changes. Since the safety number doesn't change, none of those actually apply.
Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#6The main function of safety numbers is to theoretically prevent mass mitm of Signal.
Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#7Does the safety number count as a sort of hash in this case? Or is it absolutely nothing like an MD-5?
Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#8I don't see how this is a problem at all. This was actually a feature that many Signal users wanted to use - they didn't want to re-verify safety numbers every time that they had to reinstall Signal or switch to a new phone.
> We don't want anyone to get hurt by way of trusting privacy guarantees which may be more conditional than they appear from the docs!
> If Bob notices the chat safety number with Alice has changed and then Alice sends a bunch of suspect-sounding messages or asks to meet in person and Bob has never met Alice in person before, for example, Bob should be wary. After Alice for example is forced to provide device passcode or unlock their device with their fingerprint or face, Alice's device could be cloned over to a new device by way of quick transfer functionality without Alice's consent, and the messages could be coming from the cloned device rather than Alice's actual device.
Respectfully, this doesn't make any sense. Signal provides security from device to device, it doesn't stop someone from pointing a gun to your head and looking at your messages or pretending to be you after stealing your phone. If someone has the physical possession of your phone necessary to perform a device transfer, then you're already screwed. The idea that a safety number change would alert the person on the other end that you're being held hostage is outlandish and is completely divorced from any normal use of Signal.
Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#9I was expecting to hear about someone who got a new phone, set up Signal using the phone number, and then communicated with contacts without any more authentication. This doesn't appear to be anything of the kind. Signal has implemented a migration system so that people can move to a new phone without changing the safety number. Then a bunch of references to the promises Signal makes about re-verifying if the safety…
Re: Valid Signal privacy issues shrugged off while patches quietly rolled out
#10Signal used to silently fail if you changed device. I guess not much has changed.