2 ms·
Use TextSecure (https://play.google.com/store/apps/details?id=org.thoughtcrime.securesms https://play.google.com/store/apps/details?id=org.thoughtcri...) by Ope
by uph 11y ago
Use TextSecure (https://play.google.com/store/apps/details?id=org.thoughtcrime.securesms https://play.google.com/store/apps/details?id=org.thoughtcri...) by Open Whisper Systems (https://whispersystems.org/ https://whispersystems.org/)
Supposedly the vulnerability is in stagefright, which is the Android framework responsible for audio/video encoding/decoding and playback. TextSecure doesn't do any pre-processing of received audio/video messages, so it seems unlikely that a vulnerability in stagefright could be triggered simply by sending audio/video to a TextSecure user.
TextSecure plays audio/video by handing it to the system's default media
player. If there's a stagefright vulnerability, it's possible that the
system's default media player is vulnerable. From TextSecure, that
interaction should only happen by physically tapping on an audio/video
attachment, then tapping through a warning dialog about insecure
playback. At that point, it's out of our hands.
- moxie
https://lists.riseup.net/www/arc/whispersystems/2015-07/msg00084.html https://lists.riseup.net/www/arc/whispersystems/2015-07/msg0...