• Shayeta@feddit.org
    link
    fedilink
    English
    arrow-up
    2
    arrow-down
    8
    ·
    12 hours ago

    If the Matrix protocol actually implemented E2E encryption properly I would love to use something like this.

      • AnyOldName3@lemmy.world
        link
        fedilink
        English
        arrow-up
        9
        ·
        11 hours ago

        If it’s the problem that I’ve seen people complain about in the past, it’s effectively the same as HTTPS ‘not supporting’ end to end encryption because it runs over IP and IP packets contain the IP address of where they need to go, so someone can see that two IP addresses are communicating, which is unavoidable as otherwise there’s nothing to say where the data needs to go, so no way for it to get there. Someone did a blog post a couple of years ago claiming Matrix was unsecure as encrypted messages had their destination homeserver in plaintext, but that doesn’t carry any information that isn’t implied by the fact that the message is being sent to that homeserver’s IP.

        • Ontimp@feddit.org
          link
          fedilink
          English
          arrow-up
          4
          ·
          edit-2
          5 hours ago

          Wire wrote that article in summer last year to prevent the German IT-Planning Council from adopting Matrix as the communications layer for its consolidated interfederal government-to-citizen messaging infrastructure in the public administration.

          So be aware that, to my knowledge, this article is not a good-faith tech blog post but part of public affairs campaign / lobbying attempt.

          Would be neat to have meta data encrypted in Matrix, but it’s not a deal breaker for most use cases imo.

          • Shayeta@feddit.org
            link
            fedilink
            English
            arrow-up
            0
            ·
            2 hours ago

            Agreed, but metadata not being encrypted remains a fact. Sure, metadata of a single message might not mean much, but when combined with metadata of many messages from many users you can find out a lot about a person and their habits. Especially when cross-referencing with other data sources (social media of other users, phone location, etc.).

            https://youtube.com/watch?v=tL8_caB35Pg