Signal security

I would think that the “small country” has its own policy with services like Signal. Doesn’t the EU have it’s own policy that covers all EU members? California has it’s own grip on privacy policies too.

I read … [

The end of encryption as we know it?

The Parliament Magazine
https://www.theparliamentmagazine.eu › news › article
](EU’s encryption crackdown: a balance between child safety with digital privacy)

May 12, 2025 — EU member states are divided. Spain wants to ban encryption entirely, leaked documents show. Sweden has advocated for a proposal that would… (click the link above)

Any way, if a high ranking politician with a finger close to the nuclear button, can share Top Secret stuff TWICE, what is there that says Signal is end to end?

What ever, privacy is being ripped off every day - one way or the other - if average users want privacy these days, lick a stamp. :rofl:
~s

2 Likes

That hasn’t been a sure thing for centuries.

2 Likes

If you are not being targeted specifically, it is pretty solid. It requires so much more effort to surveil all snail mail content as compared with surveilling all internet traffic.

Also, while your snail mail will still leak metadata, a ban on encryption may not extend as far as snail mail. So you could encrypt your snail mail content.

scan | tesseract | decrypt

metaphorically speaking.

If you don’t mind occasional lost “packets” then your snail mail metadata can even exclude the sender, which is slightly better than internet traffic.

/not-entirely-serious

3 Likes

7 posts were split to a new topic: TV privacy risks

> Like you all feel safe and your family chat got synced… by your Phones A.I.

Came across this a little late, searching for current signal status on liberm5 - I’ll comment anyway

This is like global threats like supervolcano eruptions, nuclear war, etc. where “some finite probability per unit time inevitably adds up to certainty“.

But quoting David Deutsch (the idea if not the words), writing in that context: all that’s required to avoid that is for the infinite series to sum to less than one, as plenty of infinite series do.

1 Like

pluralism,

its about the sum. Most are fine with signal because its a high level private messanger. But i do not like it because more and more readers and friends and family or groups have access to it through most not trustworthy devices. Because we do not use it as personal E2E chat, and end up with reading 10+ Folks reading chat rooms on 8/10 unsupported Android and Apple Devices and store the chat on some Jeff Bezos device with American access…

So use it to be in touch with friends and family but do not have important info on it.

I remember the days when Signal Security meant radio discipline and swapping crypto cards on the KY-xx systems.

Several things, firstly every commodity smartphone has a modem which has access to the system memory via DMA, so anything that goes into RAM unencrypted is all available to a second OS and CPU we don’t have control over at all.

I had heard that the current US regime cabinet was using a hacked version of signal and so leaked information. How does one ensure that they are getting a true version of Signal on a terribly compromised apple or google phone? This is something I a not well read on because I do not use these systems.

We fortunately have a modularized modem which can’t snoop our RAM, the librem(and pinephone) also are not hackable with a Cellbrite tool. We are doing OK but we need to stay vigilant and continue to audit the code of the tools we use, especially those for private communications.
I am curious to hear how librem 5 users are utilizing the crypto card slot.

1 Like

My understanding is that the U.S. cabinet leak was not a hack at all, and there is no indication that they were using a non-standard version of Signal. Someone literally added an adverse journalist to a group chat that included sensitive information, so that journalist published it. Nothing technological about it, nor anything which demonstrated any inherent insecurity about Signal.

2 Likes

You are right weirdnerd, but in future the devices are under fire. And like post quantum computing encryption - there may be a leak soon or later. Right now its likely because of a software assistance leak. Like A.I. read and share info to suite someone. Right now Apple, Google, Microsoft integrate LLMs on systems to read and empowered every Human…

@biketool

Signal itself have done a great job for E2E encryption and to be private on Systems from Microsoft or Apple with DRM. So its kind of the best protection you can get.

I just think its not enough. Because NSA and Co have more Money and Exploits, or private Megacorperations to develop Quantum Computers and A.I. to steal the private date from Computer using Humans or Programs and LLMs itself. Through assistant LLMs or telemetry Data to train LLMs.