Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

agnos.is Forums

  1. Home
  2. Privacy
  3. Signal has no known/published real security audit?

Signal has no known/published real security audit?

Scheduled Pinned Locked Moved Privacy
privacy
22 Posts 13 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • F [email protected]

    As I seen in other comment I think that the protocol is audited not really the app and servers
    In comparison SimpleX is audited pretty regularly

    adbenitez@lemmy.mlA This user is from outside of this forum
    adbenitez@lemmy.mlA This user is from outside of this forum
    [email protected]
    wrote on last edited by
    #13

    could you provide some source/link to the SimpleX security audits? I would like to look into it, thanks in advance!

    T 1 Reply Last reply
    0
    • adbenitez@lemmy.mlA [email protected]

      does Briar has security audits you could point to? thanks in advance

      I This user is from outside of this forum
      I This user is from outside of this forum
      [email protected]
      wrote on last edited by
      #14

      https://briarproject.org/news/2017-beta-released-security-audit/

      1 Reply Last reply
      0
      • adbenitez@lemmy.mlA [email protected]

        does that one has security audits? thanks in advance

        H This user is from outside of this forum
        H This user is from outside of this forum
        [email protected]
        wrote on last edited by
        #15

        Both signal and molly are considered safe, a lot of apps use the same protocol as signal, most risk come from messages leaks before the encryprion happens.

        Unfortunately, I'm not aware if they did external audits, but both codes are available in github.

        S 1 Reply Last reply
        0
        • adbenitez@lemmy.mlA [email protected]

          could you provide some source/link to the SimpleX security audits? I would like to look into it, thanks in advance!

          T This user is from outside of this forum
          T This user is from outside of this forum
          [email protected]
          wrote on last edited by
          #16

          This seems to be the latest one. https://simplex.chat/blog/20241014-simplex-network-v6-1-security-review-better-calls-user-experience.html

          F 1 Reply Last reply
          0
          • adbenitez@lemmy.mlA [email protected]

            Someone made a compilation of academic reviews and blogposts here: https://community.signalusers.org/t/wiki-overview-of-third-party-security-audits/13243
            but none of them seem to be real security audit reports, ex. compare with real security audits to Delta Chat: https://delta.chat/en/help#security-audits

            F This user is from outside of this forum
            F This user is from outside of this forum
            [email protected]
            wrote on last edited by
            #17

            Not a formal audit, but a more recent review of the protocol: https://soatok.blog/2025/02/18/reviewing-the-cryptography-used-by-signal/

            adbenitez@lemmy.mlA 1 Reply Last reply
            0
            • F [email protected]

              Not a formal audit, but a more recent review of the protocol: https://soatok.blog/2025/02/18/reviewing-the-cryptography-used-by-signal/

              adbenitez@lemmy.mlA This user is from outside of this forum
              adbenitez@lemmy.mlA This user is from outside of this forum
              [email protected]
              wrote on last edited by
              #18

              thanks, I think I know that one, but yeah as you said it is not a real security audit and the person itself said so

              1 Reply Last reply
              0
              • H [email protected]

                Both signal and molly are considered safe, a lot of apps use the same protocol as signal, most risk come from messages leaks before the encryprion happens.

                Unfortunately, I'm not aware if they did external audits, but both codes are available in github.

                S This user is from outside of this forum
                S This user is from outside of this forum
                [email protected]
                wrote on last edited by
                #19

                At a user level, the biggest security compromise with signal is enabling notifications

                H 1 Reply Last reply
                0
                • S [email protected]

                  At a user level, the biggest security compromise with signal is enabling notifications

                  H This user is from outside of this forum
                  H This user is from outside of this forum
                  [email protected]
                  wrote on last edited by
                  #20

                  That's a big one, you can disable it, but if the other person has it enabled it can leak it after decryption also.

                  S 1 Reply Last reply
                  0
                  • T [email protected]

                    This seems to be the latest one. https://simplex.chat/blog/20241014-simplex-network-v6-1-security-review-better-calls-user-experience.html

                    F This user is from outside of this forum
                    F This user is from outside of this forum
                    [email protected]
                    wrote on last edited by
                    #21

                    Right thank you

                    1 Reply Last reply
                    0
                    • H [email protected]

                      That's a big one, you can disable it, but if the other person has it enabled it can leak it after decryption also.

                      S This user is from outside of this forum
                      S This user is from outside of this forum
                      [email protected]
                      wrote on last edited by
                      #22

                      Exactly the issue, same as always. Signal got rid of sms because it was insecure but enable reply in notifications by default.

                      1 Reply Last reply
                      0
                      • System shared this topic on
                      Reply
                      • Reply as topic
                      Log in to reply
                      • Oldest to Newest
                      • Newest to Oldest
                      • Most Votes


                      • Login

                      • Login or register to search.
                      • First post
                        Last post
                      0
                      • Categories
                      • Recent
                      • Tags
                      • Popular
                      • World
                      • Users
                      • Groups