cross-posted from : https://lemmy.zip/post/71321898

Netzpoltik details that police are able to gain access in this way either through physical access to someone’s phone or by intercepting verification codes via a state-sanctioned phishing attack or intercepting SMS messages via telephone surveillance

  • peopleproblems@lemmy.world
    link
    fedilink
    English
    arrow-up
    13
    ·
    11 hours ago

    Its also a failure of the user’s access control and operating security.

    Once a third party has access to the secure environment, that environment is and will always be compromised.

    • undrwater@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      8 hours ago

      Is the user made aware of this by the operator (signal, telegram, et al)?

      If not, it’s a big haul to get to competency. The operator should be educating users on how to limit compromise.

      • peopleproblems@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        6 hours ago
        1. It NEVER advertises itself as such.

        2. IIRC Signal DOES warn you about this, first when you make an account, and then when you try to save media files, and when you try to start a group chat. The others aren’t remotely secure anyway and I have no interest in attempting to defend them.