Cryptographic and privacy weaknesses
bluec0re opened this issue · comments
Posting this here as there is no issue tracker in threema-android and as it also contains a section about threema-web:
This blog post points out some worry some secrecy and privacy weaknesses of the codebases and the protocol design. Any efforts to address those?
Does this help? https://www.reddit.com/r/Threema/comments/qn870u/threema_three_strikes_youre_out/hjxi28l/
The KDF in Threema Web is being tracked in #197 and will be fixed in #1091.