BlendIT - BSD Cafe
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
@ardi60@reddthat.com to Technology@lemmy.worldEnglish • 1 month ago

X is now offering me end-to-end encrypted chat — you probably shouldn't trust it yet | TechCrunch

techcrunch.com

external-link
message-square
95
fedilink
314
external-link

X is now offering me end-to-end encrypted chat — you probably shouldn't trust it yet | TechCrunch

techcrunch.com

@ardi60@reddthat.com to Technology@lemmy.worldEnglish • 1 month ago
message-square
95
fedilink
X's new encrypted messaging feature, XChat, has some red flags.
  • earthworm
    link
    fedilink
    English
    129•
    edit-2
    1 month ago

    TL;dr of the article :

    1. They keep your private key on their servers.
    2. Their implementation allows for AITM attacks.
    3. It’s closed source.
    4. There’s no perfect forward secrecy.

    This secret stays between you, me, and Elon.

    I hope politicians use the hell out of it, so we can see what they really think when it gets (inevitably) hacked in a few weeks.

    • @Naich@lemmings.world
      link
      fedilink
      English
      24•1 month ago

      What is the “A” in “AITM”?

      • @BananaOnionJuice@lemmy.dbzer0.com
        link
        fedilink
        English
        27•1 month ago

        This is the first time I heard of AITM, thought it was a new name for MITM:

        https://www.blueshielditns.com/post/man-in-the-middle-vs-adversary-in-the-middle-understanding-the-differences-and-staying-safe

        • KubeRoot
          link
          fedilink
          English
          4•1 month ago

          Are you sure that site is trustworthy? It kinda reads like an LLM being told to explain the difference between two names for the same thing and basically rephrasing the same thing. I’d imagine it might just be a different name to get rid of a male-coded word.

      • Kami
        link
        fedilink
        English
        20•1 month ago

        Adversary

      • Encrypt-Keeper
        link
        fedilink
        English
        14•1 month ago

        It’s just MITM but with extra steps

        • @Someonelol@lemmy.dbzer0.com
          link
          fedilink
          English
          13•1 month ago

          Ah yes, Malcolm in the Middle is behind this all along.

      • @lemmyman@lemmy.world
        link
        fedilink
        English
        9•1 month ago

        Anal

      • Triumph
        link
        fedilink
        7•1 month ago

        Aliens

      • @gressen@lemmy.zip
        link
        fedilink
        English
        7•1 month ago

        Anyone

      • @floofloof@lemmy.ca
        link
        fedilink
        English
        5•1 month ago

        Elon.

      • RVGamer06
        link
        fedilink
        English
        3•1 month ago

        Asshole

      • @trashboat@midwest.social
        link
        fedilink
        English
        3•1 month ago

        Apple

      • @ThePantser@sh.itjust.works
        link
        fedilink
        English
        2•1 month ago

        Administrator

      • @pirat@lemmy.world
        link
        fedilink
        English
        2•1 month ago

        Agencies

    • @renegadespork@lemmy.jelliefrontier.net
      link
      fedilink
      English
      22•1 month ago

      They keep your private key on their servers.

      Then it’s literally not even E2EE, lol

    • @answersplease77@lemmy.world
      link
      fedilink
      English
      2•1 month ago

      is it different with signal, telegram, whatsapp?

    • @CosmoNova@lemmy.world
      link
      fedilink
      English
      1•1 month ago

      If you chat on Xitter you‘re chatting with mecha Hitler.

    • @Goodlucksil@lemmy.dbzer0.com
      link
      fedilink
      English
      0•1 month ago

      They are stupid, but not that stupid.

      • @hansolo@lemmy.today
        link
        fedilink
        English
        12•1 month ago

        Never attribute to malice what can be attributed to incompetence.

        • @tabular@lemmy.world
          link
          fedilink
          English
          12•
          edit-2
          1 month ago

          I used to give the benefit of the doubt but when there are bad incentives in play and shit keeps happening… then perhaps that is naïve sometimes, unfortunately.

          • @hansolo@lemmy.today
            link
            fedilink
            English
            4•1 month ago

            Do you mean bad incentives?

            And sure, I don’t disagree, but these people are also not actually that smart. I would worry more about this getting hacked in a week way before Elon gets a chance to use it against anyone.

            • @tabular@lemmy.world
              link
              fedilink
              English
              3•1 month ago

              Thanks, I do.

Technology@lemmy.world

!technology@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !technology@lemmy.world

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


  • @L4s@lemmy.world
  • @autotldr@lemmings.world
  • @PipedLinkBot@feddit.rocks
  • @wikibot@lemmy.world
  • 2.36K users / day
  • 7.72K users / week
  • 14.4K users / month
  • 32K users / 6 months
  • 77.1K subscribers
  • 6.92K Posts
  • 232K Comments
  • Modlog
  • mods:
  • @L3s@lemmy.world
  • enu
  • Technopagan
  • L4sBot
  • L3s
  • @L4s@hackingne.ws
  • UI: unknown version
  • BE: 0.19.3
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org