aeris22’s avataraeris22’s Twitter Archive—№ 39,419

    1. …in reply to @betogess
      @betogess Telegram implements it own crypto. So not reviewed/tested/audited/validated.
  1. …in reply to @aeris22
    @betogess And some audit of the crypto used shows it’s a terribly bad one. All state of the art advices are thrown away.
    1. …in reply to @aeris22
      @betogess I can say better than a master thesis on Telegram crypto cs.au.dk/~jakjak/master-thesis.pdf
      oh my god twitter doesn’t include alt text from images in their API
      1. …in reply to @aeris22
        @betogess And Telegram FAQ is full of hilarious "facts", contradicting all very strong assertion of current knowledge about crypto.
        1. …in reply to @aeris22
          @betogess "MAC and encrypt", when everybody is agree only "Encrypt then MAC" is secure, usage of SHA-1 for non-MAC purpose, IGE…