•  Azzy   ( @AzzyDev@beehaw.org ) 
    link
    fedilink
    English
    228 months ago

    What’s stopping someone from just sending public keys or something through Signal and encrypting their messages that way? There’s no way to enforce this with such simple loopholes present. We shouldn’t be focusing on breaking privacy and instead invest in helping existing victims in ways that actually matter.

      •  Azzy   ( @AzzyDev@beehaw.org ) 
        link
        fedilink
        English
        18 months ago

        I suppose you’re right, but forging that kind of thing would be difficult, also considering the PKI already in place. If someone has their own email server and they sign/encrypt their email, and host their public key on a key server somewhere, it’s highly unlikely that all three would be compromised. and even if that fails, you could just meet up with them and exchange flash drives with keys.