4 ms·
There's no easy way. Even if you do verify it, there's no guarantee Apple won't push an update with a backdoor because NSA asked them to. That's why it's bette
by rorrr2 13y ago
There's no easy way. Even if you do verify it, there's no guarantee Apple won't push an update with a backdoor because NSA asked them to.
That's why it's better to use Crypto.Cat - its source is the executable. Verifying the hash is enough to make sure the source code didn't change.
- 13throwaway 13y agoI would love to use Crypto.cat, but there is not a mobile app yet. When there is a mobile app it will have the same problem.
- sneak 13y agoEven then, Apple could just keylog certain applications at the OS level, cryptocat and unmodified-binary ChatSecure included.
- rorrr2 13y agoYes. Unless you're running an open-source OS and open-source hardware (and trust the manufacturer and the compiler), you are not safe.
- sneak 13y agoThough it's a lot easier to compel Apple to silently push a wiretap update to a handset than to have, several months/year ago, engineered a secret backdoor into a chipset... You've gotta draw the line somewhere (unless you're rms). I would venture to say an open source OS and applications on worldwide-deployed hardware in the hundreds of millions count is probably safe enough for my purposes.