‘secure’ state-developed
Press X to doubt
headlines in a few days:
security researchers discover ‘radioactive’ vulnerability in Polish government messaging app
So odd, I dont trust corporations now and dont trust governments
Not as stupid as the headline makes it sound. Signal is used in phishing attacks, whereas the home grown one is restricted to authorised users, making it more difficult.
Signal is great if you want some privacy chatting with friends and family.
More sensitive stuff dealing with state secrets? Probably not the best option.
How secure it is remains to be seen, but using Signal or Whatsapp or similar apps for official government business is to be avoided, anyway.
Agreed, but maybe for different reasons. Could you use Signal for government communication? Probably, but it would take intentional preparation, setup, and training of the end-users (most of whom are likely not security-minded or tech-savvy).
But practically speaking, governments should reasonably be developing an option that uses their own servers as relays, not ones controlled by a third party. Signal is run by a nonprofit (i.e. not driven by moneyed interests) and has survived court subpoenas for user data (because of how the useful data is stored encrypted at the endpoints, not the relays), but they do not have the same interests in nor are they developing a platform to keep government secrets safe.
Also, it’s a central point of failure; even if it remains entirely uncracked throughout its lifetime, if the company goes under, those server relays will go, too.
I feel pretty safe as an end-user nobody, but I would be thinking twice if I was a government official.
Or any business. There’s always a back door if it’s not open source and self hosted.
the government said attackers impersonate Signal support staff and abuse this perceived trust to take over victims’ accounts
the arguments they give for ditching Signal are basically present in every messaging platform, and people working in such high ranges shouldn’t be that vulnerable to social engineering attacks
dig mx komunikator.narodowy.gov.pl komunikator.narodowy.gov.pl. 3600 IN MX 0 komunikator-narodowy-gov-pl.mail.protection.outlook.com.Few years ago there were leak where polish officials were talking thorough one of the most popuar e-mail providers - wp.pl ;)
All institutional stuff still relies on teams and outlook.
kegsbreath has entered the chat






