|
|
|
|
|
by bsaul
655 days ago
|
|
i suspect this particular security hole in the signal protocol is the single reason why whatsapp hasn't been banned yet. They can eavedrop by simply adding a device to a conversation and nobody will notice. Your device will gladly send them decryption keys and provide them with a copy of the message nicely. |
|
The simple bad scenario I have in mind is when you're initiating a new chat and the mitm it from the start. Or they could do it halfway through, which would notify you that the other end's key changed, but that message is non-threatening enough and happens enough for random other reasons that most people would probably ignore it.