4 ms·
Woah there at least let's acknowledge that e2ee is a BIG ask and would concretely hurt usability. A secure e2e messenger should pass the "mud puddle test" [0] m
by doomrobo 4y ago
Woah there at least let's acknowledge that e2ee is a BIG ask and would concretely hurt usability. A secure e2e messenger should pass the "mud puddle test" [0] meaning if you drop your devices in a mud puddle and then slip in said puddle and crack yourself on the head, you should be locked out of all your accounts.
Do you want a Zulip where account recovery is impossible by design? Or where conversation history is unavailable to new users [1]? You might say "well let people opt in if they want e2e" but that's not helpful either. If even 1 user in a group is not opted in then the entire group has the same security level.
[0] https://blog.cryptographyengineering.com/2012/04/05/icloud-who-holds-key/ https://blog.cryptographyengineering.com/2012/04/05/icloud-w...
[1] This must be the case unless you invent a p2p system for users to bring a new user up to date on the group. And even then people could voluntarily lie about past messages. There are neat ways around all this but the point is that this system is very complicated and doesn't currently exist in practice.