DoujinStars
The Hated One
The Hated One

patreon


Episode 207 - Signal responded and it's ugly

Signal is in a hot water for insecurely storing messages of desktop users. Their responses makes things even worse.

Sources: https://www.bleepingcomputer.com/news/security/signal-downplays-encryption-key-flaw-fixes-it-after-x-drama/

https://stackdiary.com/signal-under-fire-for-storing-encryption-keys-in-plaintext/

Comments

Oh, I forgot, of course everything with virtual machine or containers.

Lougavulin

Hello, It is not perfect at all but on desktop, create an dedicated user to Signal. Other users can not read its files, expect admin user. On Linux, use your main user, and launch Signal from dedicated user with sudo. Or still on Linux, use QubeOS, clearly not for everyone. Not sure what is possible on Windows. On iOS that should be possible too. As said, this is not perfect at all, but that adds a layer of protection. 2 cents to help a bit. Have a nice one.

Lougavulin


More Creators