|
|
|
|
|
by blorgle
3443 days ago
|
|
It doesn't matter whether you use WhatsApp, Facebook Messenger "Secret Conversations" or even Signal app (or PGP or any public key based communications system)!. If you are not verifying key fingerprints out of band, then you are potentially vulnerable to a malicious server MITMing new sessions. If you want secure end-to-end messaging, verify keys out of band, do not solely trust a 3rd party for key exchange! |
|