Hacker News new | past | comments | ask | show | jobs | submit login

Are you comparing the Axolotl key ratchet Trevor Perrin designed to the 1980s throwback block cipher mode Telegram uses?



Yes and no.

I have no idea whenever and how broken IGE is. I heard, nobody even cared to evaluate that. Boils down to "no formal proofs (but likely to be broken)".

At the same time, I heard the concern there are no security proofs on the key exchange and it may have issues. Since as a commoner I can't evaluate it any further than this, so boils down to "no formal proofs (although hoped to be fine)", too.

Those are surely different cases. I'm just concerned over what I use (TextSecure), though.


If it makes you feel any better, after the paper published last week, it looks like TextSecure is the closest of all the messaging applications to any kind of formal proof.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: