Live data from Hacker News

Saying goodbye to encrypted SMS/MMS

whispersystems.org

71–78 of 78 posts

Re: Saying goodbye to encrypted SMS/MMS

#71
post #69

Earlier quoted context omitted.

No one said that except you. Nice rhetorical strategy. Moxie said 'state-run telcos'. Which is accurate.

Moxie didn't say it but the comment seems to imply that they are in fact comparable.

OP lamented that the US uses the same tactics as those places. Data sent to/from your device will be captured in all of the places mentioned. Where is the comparison?

Re: Saying goodbye to encrypted SMS/MMS

#72
post #68

For me, an year ago, TextSecure's primary selling point was that it wasn't reinventing the wheel, but was layering above the already existing network. Something very resembling how one installs an OTR plugin for their XMPP client, except for being an app (since, unfortunately, I have yet to see an mobile messaging app with a sane plugin system). I've perceived their own proprietary data transport as progressive enhan…

Their protocol and implementations are fully open source. https://github.com/WhisperSystems

So?

I use the term "proprietary" in sense that it's their own unique protocol that nobody else uses. (Don't tell me about their interop with CM, its partnership, not federation.) Or you know some alternative compatible SMS apps that use libaxolotl or Axolotl protocol? I don't. Would love to hear there are some.

Re: Saying goodbye to encrypted SMS/MMS

#75
post #25

Perhaps not call the app TextSecure then? I think Moxie is a total dude but wasn't SMS encryption the Unique Selling Point of TextSecure? It was the reason I installed the app and go through the inconvenience of typing a very long string into the app every time the app restarts. I undertsand the logic of what Moxie is saying, if that's the case then the conclusion should be, "We need to shut down the entire app", not…

It will still be possible to send encrypted messages, just over the internet rather than over SMS. This has been the default mode of operation for a while now, we're just disabling the old SMS mode that has been lingering for the past few years.

Was away from HN and didn't see your reply Moxie.

I get that SMS leaks metadata. It's like email in that respect, isn't it?. And we still want to encrypt email. Is it so much of a burden for you people to carry the SMS encryption code? Maybe a fund-raising drive to keep it financed and included?

Re: Saying goodbye to encrypted SMS/MMS

#76

I guess I thought of TextSecure as a service I used to encrypt my messages. Does anyone have recommendations for a service that will encrypt my messages?

How about Textsecure? Unless you specifically want to use SMS or MMS as the transport, your messages are still very much encrypted.

...so the answer is "nothing" then. Seems like a niche that needs filling; some service that encrypts your shit, regardless of transport medium.

Re: Saying goodbye to encrypted SMS/MMS

#77
post #68

Earlier quoted context omitted.

Their protocol and implementations are fully open source. https://github.com/WhisperSystems

So? I use the term "proprietary" in sense that it's their own unique protocol that nobody else uses. (Don't tell me about their interop with CM, its partnership, not federation.) Or you know some alternative compatible SMS apps that use libaxolotl or Axolotl protocol? I don't. Would love to hear there are some.

Fair enough, they do "own" it, and can change it at their own discretion, and that is always bad. However, that's how many standards come to life. See SPDY and HTTP/2.0 and probably (no facts to back this one) most of the XMPP XEPs.

Not sure about the SMS side of things (which is being dropped anyway) and how things work there, but using the phone number as an identifier makes federation without a central authority infeasible. I've been wishing since day one that they'd allow xmpp style usernames too in order to make federation possible.

Re: Saying goodbye to encrypted SMS/MMS

#78
post #25

Perhaps not call the app TextSecure then? I think Moxie is a total dude but wasn't SMS encryption the Unique Selling Point of TextSecure? It was the reason I installed the app and go through the inconvenience of typing a very long string into the app every time the app restarts. I undertsand the logic of what Moxie is saying, if that's the case then the conclusion should be, "We need to shut down the entire app", not…

It will still be possible to send encrypted messages, just over the internet rather than over SMS. This has been the default mode of operation for a while now, we're just disabling the old SMS mode that has been lingering for the past few years.

I know you are busy, and even if you get this i assume you won't respond, but i am tired of sending email to support@whisper. Why can i not get group messages from iPhone users when wifi is turned on? I have sent my logs, emailed, and talked with at least two of the Inner Circle, and no fix works. I bring it up here because you are degrading/destroying one of the biggest reasons i use (and relentlessly flog) your product. You can look through the emails; i love you guys and i want to support what you do. But the fact that the shit a)just does not work and b) is now going to leave me (and others) exposed makes the feel extremely sad.
Post reply on HN