Sounds great, but as far as I know Diffie–Hellman doesn’t protect from MitM attack if there’s no trusted party to prove the integrity of keys sent. I skimmed through the description but this seems not to touch on that theme. Maybe it’s sharing public keys in person time again.
Maybe it’s sharing public keys in person time again.
IIRC, Briar requires (or at least required) you to exchange keys face to face and verify them before starting communication. Maybe that changed, but it looked like the most convenient app to communicate in such a manner. But Signal also has key verification so…
Sounds great, but as far as I know Diffie–Hellman doesn’t protect from MitM attack if there’s no trusted party to prove the integrity of keys sent. I skimmed through the description but this seems not to touch on that theme. Maybe it’s sharing public keys in person time again.
IIRC, Briar requires (or at least required) you to exchange keys face to face and verify them before starting communication. Maybe that changed, but it looked like the most convenient app to communicate in such a manner. But Signal also has key verification so…
Anti Commercial-AI license