4 ms·
Let's say the whole network is just 4 nodes. A, B, C, D. And A and B are connected. And C and D are connected. And I have physical access to all 4 devices. In
by ajani 3y ago
Let's say the whole network is just 4 nodes. A, B, C, D. And A and B are connected. And C and D are connected. And I have physical access to all 4 devices.
In phone A, you will have B's contact stored locally, let's say as "Dan".
B, A, "Pedro"
C, D, "Dan" (yes D is also named "Dan")
D, C, "Olga"
What do you look for?
- tyingq 3y agoIt's a little hard to grok the details, but it sounds like it's a collection of "dead drops". Like, if done in a physical way, imagine locations around a city where you can drop off scraps of paper with cipher encoded message on them. Encoded not just with sender/recipient keys, but a dead drop location specific key too. And an agreement that replies to a received message get dropped off at a different, randomly selected one. Everyone can see and read the cipher text on all the papers, but each of the 4 people can only decode the things meant for them. So, if that's how it works, you could certainly learn who was talking to who if you had access to all the devices. But access to one device only shows you what came and went to the device, but no data about which of the other three users were involved in those reads/writes. You would have to gain access to each device, in turn, to prove whether it was in contact with the first device.
- epoberezkin 3y agoThat's right. With the difference that you drop at one address, and another address has to be used for the pickup. Disclaimer: I'm the founder.
- deleted 3y ago[deleted]
- throwaway290 3y ago> But access to one device only I specifically said a lot of users. A lot is the opposite of one. Imagine a lot (>40% of total users) of impostor devices acting in accord to deanonymize some of the X and Y. Is it vulnerable to that. Like apparently Tor is.
- ajani 3y agoNo. It wouldn’t be vulnerable to that. You would at most be able to deanonymize a certain percentage within the impostor network itself. Kind of pointless. Physical access of devices is the only way to have some chance of deanonymizing some of the users (always less than number of devices you have access to). That’s my understanding, but the maker of this thing is here, and maybe can respond better?
- deleted 3y ago[deleted]
- account-5 3y agoThanks this made it clear for me how it works, and with the confirmation of the founder I'm happy I can understand it.
- deleted 3y ago[deleted]