|
|
|
|
|
by yosito
1635 days ago
|
|
Just join a group chat. Every message that was ever sent in that chat will be immediately visible. So yeah, it's virtually public. Even your private messages only require you to enter an SMS code to view, so anyone that can intercept an SMS sent to you, can read your messages. |
|
Let's stop saying that as it implies users are somehow aware the service provider has access to the content, and that they make an informed decisions wrt their privacy.
>Even your private messages only require you to enter an SMS code to view, so anyone that can intercept an SMS sent to you, can read your messages.
The 2FA password is something everyone should enable. It's still an incremental security improvement if you have to use Telegram and your threatmodel is a banana dictatorship doing SMS interception but not server-side hacking.
The right thing to do is get yourself and your loved ones the hell out of Telegram as soon as possible; Signal is your best bet here. Cwtch/Briar if you need to also protect metadata.