Posts by raphaelrobert@mastodon.social
 (DIR) Post #AcZPQcwSCMbYzKWLGi by raphaelrobert@mastodon.social
       2023-12-07T09:47:22Z
       
       0 likes, 2 repeats
       
       Let's make this crystal clear: If you think you are anonymous because you - used a throwaway number for Signal - picked a completely random username for Wire/Matrix - were given a random username with Threema/Session YOU ARE NOT! You can be identified by the push tokens that are registered with each messenger operator.https://chaos.social/@andre_meister/111538429318672330
       
 (DIR) Post #AcZPQqh14YZhdVPD9M by raphaelrobert@mastodon.social
       2023-12-07T10:01:35Z
       
       0 likes, 0 repeats
       
       Original investigation by @netzpolitik_feed:https://netzpolitik.org/2023/push-dienste-behoerden-fragen-apple-und-google-nach-nutzern-von-messenger-apps/Coverage by @Reuters:https://www.reuters.com/technology/cybersecurity/governments-spying-apple-google-users-through-push-notifications-us-senator-2023-12-06/
       
 (DIR) Post #AlkJt21G53IB8p6w9g by raphaelrobert@mastodon.social
       2024-09-04T15:25:07Z
       
       1 likes, 0 repeats
       
       @krille @phoenix_r_d That’s why we helped start the IETF MIMI working group to get everyone around the table
       
 (DIR) Post #AlkJt3ElYJguv0REqe by raphaelrobert@mastodon.social
       2024-09-04T15:41:08Z
       
       1 likes, 0 repeats
       
       @krille @phoenix_r_d Yes, neither the matrix protocol nor XMPP protect metadata well enough unfortunately.
       
 (DIR) Post #AlkJt53UnBreYdBGYi by raphaelrobert@mastodon.social
       2024-09-04T16:14:34Z
       
       1 likes, 0 repeats
       
       @krille @phoenix_r_d We've been having extensive discussions about this in various IETF groups, with both Matrix and XMPP folks. We are very open to either adhering to existing standards or helping shape new ones. Sometimes you have to start fresh though, that's exactly what we did with MLS and MIMI. I don't see why this couldn't be repeated for s c2s protocol. Either way, join the working groups and propose your ideas!
       
 (DIR) Post #AlkgC5AgmcOJPY0lIe by raphaelrobert@mastodon.social
       2024-09-07T05:48:36Z
       
       1 likes, 0 repeats
       
       @krille @silverpill @phoenix_r_d Not sure what you mean. Substantial parts of the MIMI protocol have been proposed by US, the matrix folks and the Wire folks. The IETF process is very transparent. Anyone can participate, either by just observing or actively contributing. All decisions and discussions are written down. That makes it easy to debunk false claims like yours :)
       
 (DIR) Post #AllD0psuZkGRImwOnI by raphaelrobert@mastodon.social
       2024-09-07T05:41:08Z
       
       0 likes, 0 repeats
       
       @silverpill @phoenix_r_d @krille No, and I don’t remember that it ever was seriously proposed. The MIMI documents are here: https://datatracker.ietf.org/group/mimi/documents/
       
 (DIR) Post #Am84UzdeReMZHyBdYW by raphaelrobert@mastodon.social
       2024-09-18T09:59:35Z
       
       0 likes, 1 repeats
       
       🔐 Discord introduces end-to-end encryption with Messaging Layer Security (MLS) 🔐Im really happy to see another large scale MLS deployment. It shows the technology is fit for purpose.Discord uses MLS for key negotiation in group calls with really fine-grained Forward Secrecy and Post-Compromise Security: A new member of the group cannot decrypt any media sent in the previous epochs, and a leaving member of the group cannot decrypt any media sent in future epochs.https://discord.com/blog/meet-dave-e2ee-for-audio-video
       
 (DIR) Post #AtNZCyofJzN4dFGZ9s by raphaelrobert@mastodon.social
       2025-04-22T21:09:03Z
       
       0 likes, 1 repeats
       
       The MLS Architecture document – the companion document to the MLS Protocol document – is now finally available as RFC 9750:https://www.rfc-editor.org/info/rfc9750
       
 (DIR) Post #AxXVL7bVN3WL1942l6 by raphaelrobert@mastodon.social
       2025-08-25T16:42:36Z
       
       0 likes, 1 repeats
       
       Not long ago, someone (who is likely the founder of SimpleX Chat) wrote a blog post about MLS that contained a pretty blatant factual mistake about MLS' authentication, including an alleged lack of security. Thankfully, @soatok took the time to debunk that: https://soatok.blog/2025/08/25/barking-up-the-ratchet-tree-mls-is-neither-royal-nor-nude/
       
 (DIR) Post #AyNXPzdMsNB86h9iTY by raphaelrobert@mastodon.social
       2025-09-18T15:08:50Z
       
       0 likes, 1 repeats
       
       LinkedIn annonced that it will use your data to train AI models, and craftily chose to use an opt-out mechanism. Deactivate this in your settings now, if you don’t want to give away your content.