The answer, then, is 'it depends on your focus', and encryption is better than non-encryption, and there is the Telegram's 'secure chat' option. If you're worried about secure communications at rest, then WhatsApp 'appears' to have a better model, except that none of it is encrypted. Taking this added exposure into account, the real question becomes (as it always does), "what are you protecting from?" If you are worried about secure communications in transit, then Telegram 'appears' to be more secure. Encrypting the messages means that there is a high cost to decrypt the messages, but there is still some exposure. This increases the exposure of the messages. Chats being stored on the server does mean that copies can be made on the server for decryption later. 22 December 2017: Replaced outdated recommendation forĬryptoCat with a more up-to-date recommendation forĪs the Telegram FAQ mentions, there is a 'secret chat' option that does not store chats on their servers.Īs for the underlying question of, "does storing chats lower their security?" then that is something to consider.12 December 2015: A new paper demonstrating that.09 January 2015: A new 2^64 attack On Telegram has been.If you want a real secure means of communication on your phone, look to more reputable projects such as Signal or WhatsApp (which, since this answer was first written, now uses the Signal Protocol for end-to-end message encryption). For commonly accepted definitions of secure, not the one Telegram made up. Moxie Marlinspike has a nice blog post explaining why the challenge is ridiculous. Except that the terms they set makes even the most ridiculously weak protocol difficult to break. In addition to that, Telegram has issued a rather ridiculous challenge offering a reward to anyone who can break the protocol. Names and degrees may indeed not mean as much in some fields as they do in others, but this protocol is the result of thougtful and prolonged work of professionals. It took them about two years to roll out the current version of MTProto. The team behind Telegram, led by Nikolai Durov, consists of six ACM champions, half of them Ph.Ds in math. Which the Telegram people most certainly aren't. Especially if you aren't trained cryptographers. We all know that the first rule of Cryptography is Don't Roll Your Own Crypto. Telegram's security is built around their home spun MTProto protocol. I'd like to instead focus on whether Telegram is secure. I'd like to ignore the comparison to WhatsApp because WhatsApp does not advertise itself as a "secure" messaging option.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |