Signal Public Username Testing (Staging Environment)
community.signalusers.org
community.signalusers.org
I also wonder about personas. Are there privacy ramifications to which name you pick? Can you pick multiple so community X knows you as A and Y knows you as B?
Sounds kinda silly, but for a private-by-default messenger, there are interesting UX problems.
One thing I occasionally do after a beer or two is reset someone’s password using my email address — just revenge in my opinion.
The best is when the lawyers get all official with me. Yeah, no - this is your mistake, don't get all uppity that you sent sensitive stuff to the wrong address.
From time to time I think about responding with a Goatse, but that's too much even for me.
The one who handed out thousands of business cards, and who has the same MI as the start of our last name, has caused the most sensitive information to be sent to me, by far.
Like … I don't take orders from an email. You're basically begging to be uploaded to the Internet like that.
Don't you risk a crime of breaking into someone's account? Regardless, that could cause someone real harm.
If they don't like that they should use their own email address instead. If it was unintentional, it is their fault for not paying attention.
And if in that envelope it says I opened a bank account, I am allowed to close it or at least ask the bank wtf they are doing.
Now I'd always argue for not acting destructively and be nice to people, e.g. assume they made a mistake and help them fix it. But if you are confusing my inbox with your own, you shouldn't be surprised if I read your mail. Mail that might expose other people's secrets.
The internet is global, and American laws aren't super relevant.
How does that work?
Essentially it’s his account although legally I don’t know how that would go if say you emptied someones bank account
I think this was one of the things Google+ nailed, not from the beginning but after a while.
It was beautiful to be able to discuss adhd, photography, programming, and maybe local stuff and everything else without the risk of it spilling over.
I had big hopes for MeWe, but for as long as I cared to check one could always go via the profile specific bio back to the main one.
Different separate identities is important to me. Both that I have access to them and that others have.
Without it I am sure a lot of people I have learned a lot from on HN couldn't have told the things they have done or at least I couldn't have asked or answered a lot if questions. (I mean there is a massive difference between talking about working in such a type of company and having this kind of problem and being on permanent record as the bloke from acme corp who admitted they actually had such and such problem.)
Not at all. For example, you might do something on your own that you don't want confused with your day job, such as something political or culture war fodder. Look at the people being threatened that they'll be blacklisted for what they say about the Gaza war.
Also, some privacy threats (e.g., corporate data collectors) work by creating a profile collected from many different places. You might want to isolate different things in life under different names.
Reverse identity theft: https://xkcd.com/1279/
For example, imagine you are a young female giving contact information to someone on a temporary basis; you might not want to hand out your phone number everywhere.
Some people really cared about not publishing their phone numbers, and Signal emphasises user compatibility. In a way, Signal aims for the best security that an IM can provide while being usable for a wide audience.
"you’ll need to install and run a new build (links below), and register for a new account with a phone number (you can use the same one you’re using in Production)."
I'm looking all over signal.org for some link from there to signalusers.org, as that would make me more relaxed about the authenticity of the latter -- i.e., that it really is run by the same people who run signal.org.
Yes, maybe I'm being paranoid. But we're talking about an app whose whole purpose is secure communications :-).
>For larger changes and feature ideas, we ask that you propose it on the [unofficial Community Forum](https://community.signalusers.org/) for a high-level discussion with the wider community before implementation.
So it’s almost certainly legit, but they really should be linking to signal.org proper for sign-up instructions.
Uhm what? It's 2023 and they still don't do e2e encryption by default. Building a chat application without e2ee is orders of magnitude easier than with. And let's not talk about MTProto…
The app is full of tiny annoyances like this. For sending photos there are some editing/cropping tools - a fun and somewhat useful innovation, but while the crop handles work from the corners of an image they don't work properly from the sides. I was a busy evangelist for the product in its early days, now I hate using it.
To be clear, Signal now allows secure backups to the cloud. If you don't use a strong password, and much as the public won't, it's not perfect but they maximize the security. (And you can always choose to not use the backup.)
https://signal.org/blog/secure-value-recovery/
(It's also relevant to the OP.)
No, it doesn’t, at least on iOS. There is no backup option on iOS. The only way to retain information when using a new device is to have the old device close by and transfer it by running Signal on both of them. Anyone who loses their device or does not have it with them when getting and setting up a new device will lose all the messages from the older/previous device.
- Apple implemented iMessage E2EE sync across devices back in 2011. But be careful not to save your chat keys in iCloud backups (local backups are fine), unless you enable E2EE for iCloud backups as well, which is an option rolled out in 2023.
- WhatsApp appears to have rolled out a form of E2EE device sync in 2023 as well. WhatsApp Web complicates the question of how secure is the E2EE though.
Telegram just stores everything on their servers in Dubai, in the clear.
Really? Why do I need to provide a phone number in order to register for the username test?
(In fact, I do still expect public phone numbers to be the "default", i.e. encouraged, experience, because of its viral properties. This is also fine by me, as I want Signal to be used by as many people as possible.)
Do you have a recommendation on how they would prevent fraud and abuse w/o using a phone number while also maintaining the same level of low friction?
I once worked for a company that happened to find itself in possession of a nearly complete social graph of one of the rich countries. The goal of the project was a different one, that graph was a kind of side effect. The graph was never actually used, but the company did have it.
Producing the graph was neither difficult nor expensive. I believe the complete project cost only a little over €1M.
If you want to gather data like that, you can do it without any expensive intelligence operations or attacks. You can spend a million on writing a desirable free smartphone app that needs contact permissions and another few hundred thousand on promoting the app, then sit back while the data is uploaded to your servers. To me that appraoch sounds a lot simpler and cheaper than breaking into Signal, Intel/SGX or a DC hoster.
I suggest that attacking anyone to get their contact data isn't really desirable.
While I share your concerns about Intel SGX, your statement is not exactly true: SGX is only meant as an additional measure to secure insecure PINs.
Now making it into an actually viable business is very hard (I'm not sure we ever managed it), but the hard parts aren't the technical side of implementing a chat app.
That is, when you power of a Telegram server.
Ten per cent more difficult, OK. But ten thousand per cent?
Telegram openly does not have e2e by default.
What it also didn't have that I think Signal at some point had was:
- a bug that sent photos(?) to persons without you asking
- a rather nasty vulnerability that let people send you a message and pwn your desktop environment
For some reason a large subset of HN is like E2E or nothing. But I remind folks that except in very particular cases, all email is available to one email provider or the other.
Same goes for banking etc. But for some reason according to HN my postcard level communication with my family demands I use a system with a tenth of the usability of Telegram.
I used Telegram in E2EE mode with someone initially, but later we decided the multi-device sync and web chat were so much more useful to us, it trumped the desirability of E2EE and we switched.
Those features together would be better of course.