home.social

#wireapp — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #wireapp, aggregated by home.social.

  1. @kuketzblog
    Verhindert denn Wire deiner Meinung nach Phising wenn es denn behördlich verwaltet wird?
    #wireapp #Phising
    @bundestag

  2. @kuketzblog
    Verhindert denn Wire deiner Meinung nach Phising wenn es denn behördlich verwaltet wird?
    #wireapp #Phising
    @bundestag

  3. @kuketzblog
    Verhindert denn Wire deiner Meinung nach Phising wenn es denn behördlich verwaltet wird?
    #wireapp #Phising
    @bundestag

  4. @kuketzblog
    Verhindert denn Wire deiner Meinung nach Phising wenn es denn behördlich verwaltet wird?
    #wireapp #Phising
    @bundestag

  5. @kuketzblog
    Verhindert denn Wire deiner Meinung nach Phising wenn es denn behördlich verwaltet wird?
    #wireapp #Phising
    @bundestag

  6. As promised, here is the technical audit of Signal (v8.3.4) and Wire (v4.21.0) using the GAMA v1.0 methodology. Analysis is strictly based on evidence from production binaries (DEX, ELF, Smali).Key Findings:Post-Quantum: Signal uses a continuous PQ-ratchet (ML-KEM1024). Wire implements a hybrid KEM (Kyber768 Draft) in MLS setup.Metadata: Signal's Sealed Sender v2 obfuscates the social graph. Wire's architecture prioritizes enterprise federation over metadata hiding.Telemetry: Detected a Firebase Measurement Connector bridge in Wire's production build.Integrity: Binary evidence of Signal’s SVR2 Noise channel for SGX-backed PIN recovery.I have also corrected material errors from my preliminary notes regarding SQLCipher and PQC in Wire. This is an objective look at architectural trade-offs.Feedback and peer review are welcome to improve the GAMA framework.Full Report:
    blackcodeitalia.wordpress.com/

    for gama methods availabile on my github repository

    #Infosec #Signal #Wire #SignalApp #WireApp #Cybersecurity #BinaryAnalysis #GAMA #PostQuantum #Privacy

  7. As promised, here is the technical audit of Signal (v8.3.4) and Wire (v4.21.0) using the GAMA v1.0 methodology. Analysis is strictly based on evidence from production binaries (DEX, ELF, Smali).Key Findings:Post-Quantum: Signal uses a continuous PQ-ratchet (ML-KEM1024). Wire implements a hybrid KEM (Kyber768 Draft) in MLS setup.Metadata: Signal's Sealed Sender v2 obfuscates the social graph. Wire's architecture prioritizes enterprise federation over metadata hiding.Telemetry: Detected a Firebase Measurement Connector bridge in Wire's production build.Integrity: Binary evidence of Signal’s SVR2 Noise channel for SGX-backed PIN recovery.I have also corrected material errors from my preliminary notes regarding SQLCipher and PQC in Wire. This is an objective look at architectural trade-offs.Feedback and peer review are welcome to improve the GAMA framework.Full Report:
    blackcodeitalia.wordpress.com/

    for gama methods availabile on my github repository

    #Infosec #Signal #Wire #SignalApp #WireApp #Cybersecurity #BinaryAnalysis #GAMA #PostQuantum #Privacy

  8. As promised, here is the technical audit of Signal (v8.3.4) and Wire (v4.21.0) using the GAMA v1.0 methodology. Analysis is strictly based on evidence from production binaries (DEX, ELF, Smali).Key Findings:Post-Quantum: Signal uses a continuous PQ-ratchet (ML-KEM1024). Wire implements a hybrid KEM (Kyber768 Draft) in MLS setup.Metadata: Signal's Sealed Sender v2 obfuscates the social graph. Wire's architecture prioritizes enterprise federation over metadata hiding.Telemetry: Detected a Firebase Measurement Connector bridge in Wire's production build.Integrity: Binary evidence of Signal’s SVR2 Noise channel for SGX-backed PIN recovery.I have also corrected material errors from my preliminary notes regarding SQLCipher and PQC in Wire. This is an objective look at architectural trade-offs.Feedback and peer review are welcome to improve the GAMA framework.Full Report:
    blackcodeitalia.wordpress.com/

    for gama methods availabile on my github repository

    #Infosec #Signal #Wire #SignalApp #WireApp #Cybersecurity #BinaryAnalysis #GAMA #PostQuantum #Privacy

  9. As promised, here is the technical audit of Signal (v8.3.4) and Wire (v4.21.0) using the GAMA v1.0 methodology. Analysis is strictly based on evidence from production binaries (DEX, ELF, Smali).Key Findings:Post-Quantum: Signal uses a continuous PQ-ratchet (ML-KEM1024). Wire implements a hybrid KEM (Kyber768 Draft) in MLS setup.Metadata: Signal's Sealed Sender v2 obfuscates the social graph. Wire's architecture prioritizes enterprise federation over metadata hiding.Telemetry: Detected a Firebase Measurement Connector bridge in Wire's production build.Integrity: Binary evidence of Signal’s SVR2 Noise channel for SGX-backed PIN recovery.I have also corrected material errors from my preliminary notes regarding SQLCipher and PQC in Wire. This is an objective look at architectural trade-offs.Feedback and peer review are welcome to improve the GAMA framework.Full Report:
    blackcodeitalia.wordpress.com/

    for gama methods availabile on my github repository

    #Infosec #Signal #Wire #SignalApp #WireApp #Cybersecurity #BinaryAnalysis #GAMA #PostQuantum #Privacy

  10. As promised, here is the technical audit of Signal (v8.3.4) and Wire (v4.21.0) using the GAMA v1.0 methodology. Analysis is strictly based on evidence from production binaries (DEX, ELF, Smali).Key Findings:Post-Quantum: Signal uses a continuous PQ-ratchet (ML-KEM1024). Wire implements a hybrid KEM (Kyber768 Draft) in MLS setup.Metadata: Signal's Sealed Sender v2 obfuscates the social graph. Wire's architecture prioritizes enterprise federation over metadata hiding.Telemetry: Detected a Firebase Measurement Connector bridge in Wire's production build.Integrity: Binary evidence of Signal’s SVR2 Noise channel for SGX-backed PIN recovery.I have also corrected material errors from my preliminary notes regarding SQLCipher and PQC in Wire. This is an objective look at architectural trade-offs.Feedback and peer review are welcome to improve the GAMA framework.Full Report:
    blackcodeitalia.wordpress.com/

    for gama methods availabile on my github repository

    #Infosec #Signal #Wire #SignalApp #WireApp #Cybersecurity #BinaryAnalysis #GAMA #PostQuantum #Privacy

  11. Interesting reflection on the landscape of #chat systems from @wireapp .
    wire.com/en/blog/lessons-from-
    Indeed it shows that there's a lot of progress still to be done and that consumer social networks may need differentiation.

    What is shimmering in all this is the wish to have tools that are able to speak to various security levels... The mail apps do this mostly. The landscape is by far more advanced and more nuanced.

    #signal #wireapp #whatsapp #telegram #slack #msteams

  12. Interesting reflection on the landscape of #chat systems from @wireapp .
    wire.com/en/blog/lessons-from-
    Indeed it shows that there's a lot of progress still to be done and that consumer social networks may need differentiation.

    What is shimmering in all this is the wish to have tools that are able to speak to various security levels... The mail apps do this mostly. The landscape is by far more advanced and more nuanced.

    #signal #wireapp #whatsapp #telegram #slack #msteams

  13. Interesting reflection on the landscape of #chat systems from @wireapp .
    wire.com/en/blog/lessons-from-
    Indeed it shows that there's a lot of progress still to be done and that consumer social networks may need differentiation.

    What is shimmering in all this is the wish to have tools that are able to speak to various security levels... The mail apps do this mostly. The landscape is by far more advanced and more nuanced.

    #signal #wireapp #whatsapp #telegram #slack #msteams

  14. Interesting reflection on the landscape of #chat systems from @wireapp .
    wire.com/en/blog/lessons-from-
    Indeed it shows that there's a lot of progress still to be done and that consumer social networks may need differentiation.

    What is shimmering in all this is the wish to have tools that are able to speak to various security levels... The mail apps do this mostly. The landscape is by far more advanced and more nuanced.

    #signal #wireapp #whatsapp #telegram #slack #msteams

  15. CW: 🚫 ⛔ THE ANTI RUG-PULL CLUB 🚫 ⛔ :cc_nc:

    INSPIRED BY Blort™ posts
    @Blort

    social.tchncs.de/@Blort/112179
    " No way to ensure profitability without a privacy rugpull, when VC's demand their money back. "

    AND

    social.tchncs.de/@Blort/112056
    " #WireApp , which *had* a good privacy policy. They were bought and deleted all the clauses about not selling PII"

    #ANTIRUGPULLCLUB ⬅️
    ⬆️ HASHTAG TO BE IN ♣️ CLUB 🎀
    ⬆️ ADD EXAMPLES OF #RUGPULL / #RUGPULLS

  16. @Bernard

    I got my family on #WireApp , which *had* a good privacy policy. They were bought and deleted all the clauses about not selling PII. It was tough convincing family something bad was up, when the app looked like it still worked the same.

    Now I check the funding plan on any new app before getting others involved.

    Sure, not every app will make money, but every VC expects a plan to try.

    Not being up front with that plan is a red flag for me. Still need to research #Simplex.

    #Privacy

  17. @Bernard

    I got my family on #WireApp , which *had* a good privacy policy. They were bought and deleted all the clauses about not selling PII. It was tough convincing family something bad was up, when the app looked like it still worked the same.

    Now I check the funding plan on any new app before getting others involved.

    Sure, not every app will make money, but every VC expects a plan to try.

    Not being up front with that plan is a red flag for me. Still need to research #Simplex.

    #Privacy

  18. @Bernard

    I got my family on #WireApp , which *had* a good privacy policy. They were bought and deleted all the clauses about not selling PII. It was tough convincing family something bad was up, when the app looked like it still worked the same.

    Now I check the funding plan on any new app before getting others involved.

    Sure, not every app will make money, but every VC expects a plan to try.

    Not being up front with that plan is a red flag for me. Still need to research #Simplex.

    #Privacy

  19. @Bernard

    I got my family on #WireApp , which *had* a good privacy policy. They were bought and deleted all the clauses about not selling PII. It was tough convincing family something bad was up, when the app looked like it still worked the same.

    Now I check the funding plan on any new app before getting others involved.

    Sure, not every app will make money, but every VC expects a plan to try.

    Not being up front with that plan is a red flag for me. Still need to research #Simplex.

    #Privacy

  20. @Bernard

    I got my family on #WireApp , which *had* a good privacy policy. They were bought and deleted all the clauses about not selling PII. It was tough convincing family something bad was up, when the app looked like it still worked the same.

    Now I check the funding plan on any new app before getting others involved.

    Sure, not every app will make money, but every VC expects a plan to try.

    Not being up front with that plan is a red flag for me. Still need to research #Simplex.

    #Privacy

  21. @nix @dropbear42 @debacle I almost sacked someone for failing to communicate, until we discovered #wireapp just drops msgs apparently randomly. It’s highly unacceptible.

  22. @nix @dropbear42 @debacle I almost sacked someone for failing to communicate, until we discovered #wireapp just drops msgs apparently randomly. It’s highly unacceptible.

  23. @nix @dropbear42 @debacle I almost sacked someone for failing to communicate, until we discovered #wireapp just drops msgs apparently randomly. It’s highly unacceptible.

  24. @dropbear42 @nix #Wire just decideded out of the blue to deny service to those using their old #wireapp. No warning; no explanation. Suddenly there is a blue screen saying “important upgrade”. This is not just an app upgrade. Then it tries to launch gplay even if the phone is degoogled. iow: “we’ve abandoned your AOS ver. Go buy new hardware right now if you want to continue your chats.”

  25. Encrypted Messaging Survey

    I am interested in your thoughts regarding encrypted messaging apps for the ordinary user. The use case is: typical user who is concerned about their privacy and has a family and social circle of people who use iOS and Android. As such, iMessage and RCS are off the table. Of the following, which would you recommend and why? Are there others that should be considered?

    Thanks!

    #infosec #privacy #encryptedmessaging #signalapp #whatsapp #threema #telegram #matrix #element #wireapp #wicker

  26. @stux @batalanto It’s gotten worse now. #WireApp recently switched their whole website over to #SiteGround, a service that mistreats Tor users.

  27. Has anyone here tried both #WireApp and #Nextcloud Talk? I'm curious which provide higher quality, more reliable video calls?

    Yes I'm aware that #NextcloudTalk relies on having your own server (or a friends) unlike Wire. What I'm really interested in though is finding the most reliable, privacy friendly #Skype alternative for my family (including low tech family members). Right now we're using Wire, which has a really nice interface... but call reliability leaves a lot to be desired.

  28. I wanted to self-host the Wire messaging app and took a look at their repository on GitHub. It looks like they really don't want me to self-host it at all.

    github.com/wireapp/wire-server

    You might be open-source but you ain't free software if you hide the information on how to host your software. 😠

    #wireapp #selfhosting #opensource #freesoftware

  29. @dropbear42 @nix #Wire just decideded out of the blue to deny service to those using their old #wireapp. No warning; no explanation. Suddenly there is a blue screen saying “important upgrade”. This is not just an app upgrade. Then it tries to launch gplay even if the phone is degoogled. iow: “we’ve abandoned your AOS ver. Go buy new hardware right now if you want to continue your chats.”

  30. @dropbear42 @nix #Wire just decideded out of the blue to deny service to those using their old #wireapp. No warning; no explanation. Suddenly there is a blue screen saying “important upgrade”. This is not just an app upgrade. Then it tries to launch gplay even if the phone is degoogled. iow: “we’ve abandoned your AOS ver. Go buy new hardware right now if you want to continue your chats.”

  31. @dropbear42 @nix #Wire just decideded out of the blue to deny service to those using their old #wireapp. No warning; no explanation. Suddenly there is a blue screen saying “important upgrade”. This is not just an app upgrade. Then it tries to launch gplay even if the phone is degoogled. iow: “we’ve abandoned your AOS ver. Go buy new hardware right now if you want to continue your chats.”

  32. @dropbear42 @nix #Wire just decideded out of the blue to deny service to those using their old #wireapp. No warning; no explanation. Suddenly there is a blue screen saying “important upgrade”. This is not just an app upgrade. Then it tries to launch gplay even if the phone is degoogled. iow: “we’ve abandoned your AOS ver. Go buy new hardware right now if you want to continue your chats.”

  33. Encrypted Messaging Survey

    I am interested in your thoughts regarding encrypted messaging apps for the ordinary user. The use case is: typical user who is concerned about their privacy and has a family and social circle of people who use iOS and Android. As such, iMessage and RCS are off the table. Of the following, which would you recommend and why? Are there others that should be considered?

    Thanks!

    #infosec #privacy #encryptedmessaging #signalapp #whatsapp #threema #telegram #matrix #element #wireapp #wicker

  34. Encrypted Messaging Survey

    I am interested in your thoughts regarding encrypted messaging apps for the ordinary user. The use case is: typical user who is concerned about their privacy and has a family and social circle of people who use iOS and Android. As such, iMessage and RCS are off the table. Of the following, which would you recommend and why? Are there others that should be considered?

    Thanks!

    #infosec #privacy #encryptedmessaging #signalapp #whatsapp #threema #telegram #matrix #element #wireapp #wicker

  35. Encrypted Messaging Survey

    I am interested in your thoughts regarding encrypted messaging apps for the ordinary user. The use case is: typical user who is concerned about their privacy and has a family and social circle of people who use iOS and Android. As such, iMessage and RCS are off the table. Of the following, which would you recommend and why? Are there others that should be considered?

    Thanks!

    #infosec #privacy #encryptedmessaging #signalapp #whatsapp #threema #telegram #matrix #element #wireapp #wicker

  36. Encrypted Messaging Survey

    I am interested in your thoughts regarding encrypted messaging apps for the ordinary user. The use case is: typical user who is concerned about their privacy and has a family and social circle of people who use iOS and Android. As such, iMessage and RCS are off the table. Of the following, which would you recommend and why? Are there others that should be considered?

    Thanks!

    #infosec #privacy #encryptedmessaging #signalapp #whatsapp #threema #telegram #matrix #element #wireapp #wicker

  37. @stux @batalanto It’s gotten worse now. #WireApp recently switched their whole website over to #SiteGround, a service that mistreats Tor users.

  38. @stux @batalanto It’s gotten worse now. #WireApp recently switched their whole website over to #SiteGround, a service that mistreats Tor users.

  39. I wanted to self-host the Wire messaging app and took a look at their repository on GitHub. It looks like they really don't want me to self-host it at all.

    github.com/wireapp/wire-server

    You might be open-source but you ain't free software if you hide the information on how to host your software. 😠

    #wireapp #selfhosting #opensource #freesoftware