Post AkKk03cc1Kpx2J7VdQ by mizah@macrofurs.social
(DIR) More posts by mizah@macrofurs.social
(DIR) Post #AkKk03cc1Kpx2J7VdQ by mizah@macrofurs.social
2024-07-26T15:25:58Z
0 likes, 0 repeats
Me:Writes OMEMO encrypted DMs with someone.Switches device, one that's not yet cross-verified.WAAAA ALL MY MESSAGES AREN'T THERE, WAAAAI swear I'm smart. #xmpp
(DIR) Post #AkKk04kRpghOWtnHUG by vascorsd@mastodon.social
2024-07-26T19:21:58Z
0 likes, 0 repeats
@mizah xmpp really sucks when you try to use from multiple devices. I mean it sucks even before if you're not lucky because of omemo, but it's really bad when using more than 1 device 😅
(DIR) Post #AkKk05N5W1biSjs8iO by mizah@macrofurs.social
2024-07-26T19:33:16Z
0 likes, 0 repeats
@vascorsd Yeah, but in my case it was because I didn't realize it was another fucking device, lol.Also, apparently there's an upcoming XEP that uses OpenPGP instead of OMEMO so that you can actually decrypt archived messages. (But then you obviously don't get Perfect Forward Secrecy from OMEMO)
(DIR) Post #AkKk06BmTY9mzxacjI by vascorsd@mastodon.social
2024-07-26T19:53:39Z
0 likes, 0 repeats
@mizah I for fun and to evaluate the state of xmpp to check how things are working by using conversations or one of the forks with 2 accounts. Then on the desktop I install Gajim and or Dino and have them also login into the same accounts.It's always fun fun 🙃😮💨.Things will keep being bad when using omemo for encryption. Improvements promised for more than 2 years. I wouldn't wait for useful improvements anytime soon. We can't even assign names to the devices to identify the keys!
(DIR) Post #AkKk06n0F9vmrP0LkO by mizah@macrofurs.social
2024-07-26T20:14:32Z
0 likes, 0 repeats
@vascorsd Or just use emoji fingerprints already...Tbh, OMEMO looks like a bit of an over-engineered beast and I'm not entirely sure what it solves.Perfect forward secrecy is nice, I suppose, but... Why would a half-decently-designed app actually leak a private key without also compromising the messages that it's got in there anyway?
(DIR) Post #AkKk07aHHxLXKE3hYG by vascorsd@mastodon.social
2024-07-26T20:27:10Z
0 likes, 1 repeats
@mizah forward secrecy is useful cuz there are actors that will capture all the traffic, like taping some router and sniff everything for later processing. No need to break or target the client. If those actors decrypt and access some messages, meaning they somehow managed to acquire or reverse calculate the keys somehow, then from then on they can read and decrypt everything. But with forward thing news keys will be generated regularly so, eventually they can't access the messages anymore.
(DIR) Post #AkKk2CIgiyvSX1oyXo by meso@netzsphaere.xyz
2024-07-26T20:29:28.592089Z
0 likes, 0 repeats
@mizah @vascorsd emoji fingerprints are retarded and useless stop being a faggot