Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> This allows WhatsApp to MITM.

If you're operating under the assumption that users aren't going to check their peers' key fingerprints, then you could just give compromised keys from the beginning -- no rekeying necessary. There's no way to protect against that scenario. That's not a fault of WhatsApp.



well if they allow me to use my own keys this will not be a problem.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: