threema-ch / threema-web

The Threema Web application.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Cryptographic and privacy weaknesses

bluec0re opened this issue · comments

Posting this here as there is no issue tracker in threema-android and as it also contains a section about threema-web:

This blog post points out some worry some secrecy and privacy weaknesses of the codebases and the protocol design. Any efforts to address those?

Does this help? https://www.reddit.com/r/Threema/comments/qn870u/threema_three_strikes_youre_out/hjxi28l/

The KDF in Threema Web is being tracked in #197 and will be fixed in #1091.