The Signal Clone the Trump Admin Uses Was Hacked | TeleMessage, a company that makes a modified version of Signal that archives messages for government agencies, was hacked.
Just remember, no matter what way they spin this, they chose to ignore national security protocols and went out of their way to use an unsecure messaging app. That's the real story. The witch hunt they're undoubtedly going to go on is a perfect opportunity to redirect the public, save face, and further erode our freedoms.
Signal makes it believable by providing source code and reproducible builds. It doesn't rule out the possibility that they've done something clever with the random number generator, or have the app store you use give you a compromised app, or provide any protection against endpoint compromise, but it's about as good as you can get.
Third party apps derived from theirs, which explicitly promise to log all your messages to a server somewhere, like TeleMessage, are, for obvious reasons, far less trustworthy.
Even with e2e security there is 2 e's that can get compromised, their use of a altered version of the app on one end is enough to cancel out the whole encryption part it, also on the other end.
But in this case it's like they have a lock for their garage door that is different from the lock on their car so they can't steal the car when somebody steals the key to the garage door, but then think they can leave the keys in the lock because there is a lock (encryption) on the doors.
Signal? Why wouldn't they? Why would they want to claim E2EE, then steal people's chats, and try really hard to make it completely invisible? Which would probably fail since it's FOSS. Not everything is a conspiracy. Sure, they will sell user's metadata eventually (if they aren't doing it already) or become a paid app, maybe even add advertisments, who knows (nothing is safe from enshittification).
TeleMessage is a different thing altogether. Their "claim" is pretty much the opposite: take a known E2EE app and make it completely transparent.
The fact that we have incompetent evil instead of competent evil is what keeps me getting up to face the day in the morning. These guys having an IQ that could freeze nitrogen means that we, the people, have a slim chance to avoid total annihilation. It could be very much worse than it is.
This way adds the additional danger vector of traumatic brain injury due to repeated and forceful facepalming, but I'd rather that over intelligent evil in the white house. The one saving grace of Trump & Co is that they're all dumb as a box of rocks and are incapable of flexing their power fully. I'm upset that the president of the USA is retarded, but I'm thankful that this president in particular is the retarded one.
Funny how the USA went nuts and strong-armed other Western nations to outright ban Chinese hardware and companies due to "security concerns." Yet allowed using a fork of Signal from a foreign nation, and those concerns were nowhere to be found. IOF is already known to be on par (if not better) with the USA in spying on and creating false flags globally. Yet the highest office chose to use it anyway. Which is beyond stupid given that a fork could have been made and ran by a USA company (or the NSA or whichever three letter agency) specifically for the same use. Hell those agencies already are and have been heavily funding the Signal Foundation.
No. It's a wrapper around Signal that sends everything into a corporate cloud. The Isaraeli miltary/defense/espionage whatever have been using this, then sold it to a US company. I'm guessing the company provides wrappers around other apps as well.
It completely defeats the purpose of E2EE. I'm sure somebody told our oh-so-competent US government that's exactly what they need.
Goverment officials are required to archive all communications, so it doesn't defeat the purposes of E2EE because you can't have full E2EE to start with. If it was propely implemented and didn't get hacked it would be fine. Tho I guess implementation wise if it really sends all the data to a corporate instead of government cloud that's a problem as well.
You can be horrified by the lack of security and its implications, or you can rejoice in the rampant stupidity that will be on display when the leaks begin.
Emojis, ALL CAPS, general cluelessness, the JD Vance “I don’t know about this, but whatever” comments.