4 ms·
> Obviously Mini was using the encryption properly else it wouldn't have worked to begin with. Just want to point out this isn’t inherently true. For example a
by tlrobinson 3y ago
> Obviously Mini was using the encryption properly else it wouldn't have worked to begin with.
Just want to point out this isn’t inherently true. For example an insecurely generated session key would work fine but not be secure.
> Of course, it's very unlikely Apple is doing that. Just putting the thought out there.
Apple is doing what? Not using encryption properly? What reason do you have to believe that?
- silasdavis 3y ago> Not using encryption properly? They didn't mean that, they meant siphoning off data client side, for reasons, like CSAM. The point, which I agree with, is having to trust a single closed source implementation of a client is not so different to trusting the servers of a non E2E service.
- simbolit 3y agoThe BIG difference is that you have to trust the hardware and the operating system already, and as these are made by apple, you already have to trust them. "Trusting the servers of a non E2E service" is adding another trusted party. If you don't trust apple, you don't have an iPhone.