0-click deanonymization attack targeting Signal, Discord, other platforms
1–10 of 474 posts
Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#2Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#3If the message is from a known or trusted contact, I think there can be larger problems than just a rough location reveal.
Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#4Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#5So if you send a picture to a Signal user, it's retrieved via cloudflare, and cached in a data center near that user; now you can look up the cache status and find the data center used. I'd say "deanonymization" is stretching it, unless the user is in the middle of nowhere (no other users near the data center). But interesting writeup anyway.
Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#6This is quite a detailed write up. I went through the post quickly, but didn’t get why Signal would just download an attachment from an unknown number/contact without first prompting the user to accept or deny the conversation request. I’ve seen conversation requests always waiting for me to accept or not. If I don’t accept, I don’t see any messages on that chat and the other person doesn’t get any indication of mess…
Usability, most likely. Ultra-secure and paranoid doesn't result in good UX most of the time.
Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#7Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#8So if you send a picture to a Signal user, it's retrieved via cloudflare, and cached in a data center near that user; now you can look up the cache status and find the data center used. I'd say "deanonymization" is stretching it, unless the user is in the middle of nowhere (no other users near the data center). But interesting writeup anyway.
CloudFlare get to see a fuckton of metadata from private and group chats, enough to trace who originally sends a piece of media (identifiable from its file size), who reads it, when it is is read, who forwards it and to whom. It really doesn't matter that they can't see an image or video, knowing its size upfront or later (for example in response to a law enforcement request) is enough
Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#9Re: 0-click deanonymization attack targeting Signal, Discord, other platforms
#10For reference, here's a 250 mile radius around Toronto Canada https://i.imgur.com/ydpR0IZ.png