Hacker News new | ask | show | jobs
by maqp 359 days ago
>No forward secrecy and supports sending unencrypted messages as well for people who don't have pgp.

JFC. There's a reason Signal dropped SMS support. What an insane design decision.

1 comments

FWIW textsecure (signal's SMS predecessor) did provide forward secrecy. Details are here: https://signal.org/blog/asynchronous-security/
Yeah but it later also supported non-E2EE SMSs and those were a security risk and they rightfully dropped the support. It was not ideal your grandma thinks any message sent in Signal is safe, when that wasn't the case.