Hacker News new | ask | show | jobs
by RadiozRadioz 646 days ago
The whole point of all this fancy encryption is to make it mathematically impossible for the vendor to read your messages. It doesn't matter if it's mathematically impossible for them to read messages on the server if it's operationally trivial for them to extract them from the client.

It's end-to-end encrypted, but both ends are wide open for Discord to do what they like. If not them, someone doing a supply chain attack on their frivolously & opaquely updating proprietary clients.

WhatsApp has E2EE, but how do you think they found CSAM on people's devices? Because they control the endpoints.