Show HN: ChatSecure iOS v3.0 (OTR + Tor + XMPP)
chatsecure.org
chatsecure.org
Note: I am not trolling. It is a serious question. I mean, probably no one would be using ChatSecure if it were not Free Software, rightly, because nobody could audit its source code, but then isn't it a security/privacy issue using it on top of a completely closed platform?
It's like locking your doors on your house. Sure, a burglar could break the door down, smash a window, follow you around and steal your keys, etc., but it adds a level of security and precaution that keeps some of the bad guys out while not being insanely inconvenient.
I care about the privacy and security of my home, but I'm not going to live in a bunker.
I run the risk of them deciding to one day loot everything I own, and yet, I realize that the convenience of the services they provide is worth that minimal risk.
Same case with my cell phone.
2. You know that for non-experts the free software distinction is pointless because almost nobody actually audits the installed binaries either way
3. You value the security benefits from iOS's more restrictive app sandbox and mandatory code auditing.
(That last is not an Android slam – both policies have their merits but the net effect is that Android has more malware than iOS because there are multiple ways to get code onto the device and the vast majority of users can't meaningfully make security decisions)
There is some auditing, but it isn't fool proof and for developers it is a huge pain in the butt.
And there are multiple ways to get code on an Android device, but by default only the play store is enabled. You need to go into settings and accept multiple warnings to sideload apps.
If you believe that, you need to do some research first. Many people have verified that apps are flagged for using private APIs, certain syscalls, trying to access certain file paths, etc. Nobody's claiming that Apple has solved the halting problem or that static analysis can't be bypassed (see e.g. http://www.news.gatech.edu/2013/07/31/georgia-tech-uncovers-...) but static analysis + even limited runtime monitoring is a lot more than than the disastrous status quo for the desktop world.
> And there are multiple ways to get code on an Android device, but by default only the play store is enabled. You need to go into settings and accept multiple warnings to sideload apps.
This is exactly why I noted the users’ inability to make security decisions reliably. That doesn't mean Android is bad or that the iOS model lacks drawbacks – it's just an explicit tradeoff: J. Random Hacker loses the ability to install an app on iOS without going through the app store process so J. Random Phisher can't convince someone to install their app for free games/movies/coupons/porn/alleged security benefits/etc. Given that has already happened to non-trivial numbers of people, I can understand why they made that decision even if I'm not completely comfortable with the implications.
All smartphones on the market involve some level of closed source - whether that's the baseband, the graphics blob, the chipset, the ROM, the firmware, or the complete operating system. Any of these could theoretically intercept the voice from the microphone / speaker, encode it and ship it on some back channel to the Five Eyes.
At that point it's simply a matter of where you draw the line between paranoia (that the NSA are reading your thoughts and have compromised everything) / idealism (e.g. RMS) and ease of use.
Anyone working on an open LTE stack? I'm looking for the donate link @ http://bb.osmocom.org/trac/ ...
This is also a particularly good release write-up, big ups to the team for writing about all of the components that have gone into this new release.