this post was submitted on 23 Dec 2024
118 points (92.1% liked)

Technology

69421 readers
4332 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
all 33 comments
sorted by: hot top controversial new old
[–] [email protected] 38 points 4 months ago (4 children)

“Trust me bro” style hand-rolled encryption.

[–] [email protected] 8 points 4 months ago (1 children)

The encryption is not Trust me bro. It is public and tested multiple times. For example an analysis back in 2021:

https://mtpsym.github.io/

It found somes issues in the implementation of MTProto 2.0 from the official apps, with only one of them being actually usable as an attack vector, and they were all fixed before the disclosure of the analysis. They found no issues with the encryption algorithm other than some choices that may make the implementation of it harder

[–] [email protected] 12 points 4 months ago (1 children)

The encryption that only works in one-on-one chats? The encryption that's multiple menus deep in said one-on-one chats? The encryption that no one uses because of the issues above?

[–] [email protected] 3 points 4 months ago (1 children)

The encryption that is not even available outside of mobile?

[–] anzo 0 points 4 months ago (1 children)

That's actually a perk. Means the decryption key is not uploaded to telegram servers.

And, yes. The encryption all of the normies learnt to use for buying illegal goods while the prices were posted in wide open group chats. At least that's how it was working in latin america with drugs.

[–] [email protected] 2 points 4 months ago* (last edited 4 months ago)

That's actually a perk. Means the decryption key is not uploaded to telegram servers.

You could make encryption work between multiple ends without the server having to share the keys if each device has its own key - like in Matrix, XMPP, etc. And given that Telegram can't do that, the restriction in question is still very arbitrary - in a one-to-one conversation, they just don't allow you to make your end the desktop and not the phone.

Also yes, here selling drugs over Telegram is a very big thing too and given how hard it is to use Telegram anonymously and safely - it is indeed monumentally stupid.

[–] [email protected] 7 points 4 months ago

What encryption? There is no E2EE by default. It's all plaintext.

[–] [email protected] 0 points 4 months ago

I exclusively use it for public chats, like I did IRC.

Neither had any encryption and I have no issue with it.

[–] [email protected] 17 points 4 months ago (1 children)

This is kind of good news it means there is still a major alt to WhatsApp. Still my second to last app but it does have a lot of linux groups on there

[–] [email protected] 18 points 4 months ago (3 children)

Isn't WhatsApp 100% backdoored for the US and Telegram for Russia? I thought Signal was the only reliable app?

[–] [email protected] 10 points 4 months ago

Yes but that doesn't mean they're not important in ensuring there isn't a messaging monopoly.

Obviously in an ideal world we'd have multiple interconnected secure apps with some cross-platform interoperability, but until then I'll settle for one government/corporation not having all of everyone's private conversations.

[–] [email protected] 6 points 4 months ago (2 children)

If Telegram is backdoored, not for Russia. While the founder and owner is Russian, him and the company left Russia in 2014 when they didn’t want to comply with their regime (I think. Don’t remember the details). The company is based in Dubai since 2017.

[–] [email protected] 4 points 4 months ago (1 children)

Telegram is 100% backdoored

Whatsapp only the backups (although I think they stopped?) and Metadata (with whom you chat, when you chat, but not the exact words you chat) are backdoored.

Signal is the only major app tht's not backdoores

[–] [email protected] 8 points 4 months ago (1 children)

Telegram is 100% backdoored

What makes you so sure?

[–] [email protected] -2 points 4 months ago
  • it doesn't have end-to-end encryption
  • Russia wants the data
[–] [email protected] 13 points 4 months ago
[–] [email protected] 12 points 4 months ago (5 children)

The app is free. What do they sell?

[–] [email protected] 18 points 4 months ago (2 children)

Along with the premium version, they have a crypto currency (TON) that can be used to buy things on the platform from other users, and I think you can also buy things with real money and they keep a small commission. Also there are some small ads in very large channels (not groups, channels only) and ways to gift "stars" to other people, like Patreon or sth

[–] [email protected] 6 points 4 months ago

Thanks. That makes sense to me.

[–] brie 1 points 4 months ago

I thought TON was cancelled, and they returned the funds raised.

Do you think the premium version covers their server costs?

[–] [email protected] 14 points 4 months ago* (last edited 4 months ago) (1 children)

There is some premium version iirc. Bigger files can be sent, custom emojis, that sort of things

[–] [email protected] 5 points 4 months ago

Ah. They are profitable through premium accounts? Impressive.

[–] [email protected] 8 points 4 months ago

Telegram always seemed a bit sus to me. I have hard time trusting that they don't sell all that non-encrypted data somewhere.

[–] [email protected] 8 points 4 months ago

Premium upgrade version.

[–] [email protected] 5 points 4 months ago

It's the backend for web3 scams.

All of memecoin shittery happens on telegram.

[–] anzo 1 points 4 months ago

The only ads we cannot block. Good for them, I guess..