Comment on Signal downplays encryption key flaw, fixes it after X drama

<- View Parent
wildbus8979@sh.itjust.works ⁨4⁩ ⁨months⁩ ago

It’s better now, but for years and years all they used for contact discovery was simple hashing… problem is the dataset is very small, and it was easy to generate a rainbow table of all the phone number hashes in a matter of hours. Then anyone with access to the hosts (either hackers, or the US state via AWS collaboration) had access to the entire social graph.

source
Sort:hotnewtop