|
|
|
|
|
by tptacek
1352 days ago
|
|
You keep saying that this vulnerability can be defeated by carefully examining warnings. That's simply not true. The vulnerability is that the server, which you're not supposed to trust, can allow unauthorized people to decrypt your messages. The fact that you get a warning when unauthorized people are decrypting your messages is not a "defeat" of the vulnerability! The bug is that you're owned, not that you didn't get an alert saying that you're owned. |
|