Hacker News new | ask | show | jobs
by tapoxi 2497 days ago
> Another thing Signal likes to do is to broadcast the fact every time you shift it to a new device. I have seen enough changing round from a couple of correspondents to deduce a pattern in their hardware habits.

This is a security feature to ensure you're talking to the same person. Phone numbers are terrifyingly easy to port to another account.

4 comments

Yes, I know it's supposed to be a security feature. Not one that works weel, but perhaps it does somewhat enhance security. Alas, Signal forgets to mention that it does so at a cost to privacy.
It stops being a security feature when Signal keeps sending such messages when nothing has changed (and because Signal has bugs), prompting users to ignore these messages forever.
>Phone numbers are terrifyingly easy to port to another account.

Which is precisely why they should never be used as an identifier.

This feature leaks metadata. It's just an implementation detail, I'm sure the devs are not happy about it and probably are researching other ways to provide cross-device experience.