Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Admin, DevOps, Security
  3. Chat Protocols and Apps
  4. THE CHAT PROTOCOL OF THE FUTURE

THE CHAT PROTOCOL OF THE FUTURE

Scheduled Pinned Locked Moved Chat Protocols and Apps
7 Posts 3 Posters 2 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • ariadne@social.treehouse.systemsA This user is from outside of this forum
    ariadne@social.treehouse.systemsA This user is from outside of this forum
    ariadne@social.treehouse.systems
    wrote last edited by
    #1

    THE CHAT PROTOCOL OF THE FUTURE

    Link Preview Image
    ariadne@social.treehouse.systemsA 1 Reply Last reply
    1
    0
    • ariadne@social.treehouse.systemsA ariadne@social.treehouse.systems

      THE CHAT PROTOCOL OF THE FUTURE

      Link Preview Image
      ariadne@social.treehouse.systemsA This user is from outside of this forum
      ariadne@social.treehouse.systemsA This user is from outside of this forum
      ariadne@social.treehouse.systems
      wrote last edited by
      #2

      like with all things there is a solution: using terraform to manage the channels in the space

      ariadne@social.treehouse.systemsA 1 Reply Last reply
      0
      • ariadne@social.treehouse.systemsA ariadne@social.treehouse.systems

        like with all things there is a solution: using terraform to manage the channels in the space

        ariadne@social.treehouse.systemsA This user is from outside of this forum
        ariadne@social.treehouse.systemsA This user is from outside of this forum
        ariadne@social.treehouse.systems
        wrote last edited by
        #3

        the terraform provider creates and owns the channel. it is the only user with the right to turn on encryption for said channels. voila. this is a perfectly reasonable solution.

        ariadne@social.treehouse.systemsA 1 Reply Last reply
        0
        • ariadne@social.treehouse.systemsA ariadne@social.treehouse.systems

          the terraform provider creates and owns the channel. it is the only user with the right to turn on encryption for said channels. voila. this is a perfectly reasonable solution.

          ariadne@social.treehouse.systemsA This user is from outside of this forum
          ariadne@social.treehouse.systemsA This user is from outside of this forum
          ariadne@social.treehouse.systems
          wrote last edited by
          #4

          matrix E2EE channels are fucking stupid because they leak all sorts of metadata

          for example, the topic is unencrypted

          reactions are unencrypted

          replies reference unencrypted MXIDs so you can tell what is being replied to even if the payload itself is encrypted

          do not use them. do not waste your time on them. it is not worth it.

          ariadne@social.treehouse.systemsA A 2 Replies Last reply
          0
          • ariadne@social.treehouse.systemsA ariadne@social.treehouse.systems

            matrix E2EE channels are fucking stupid because they leak all sorts of metadata

            for example, the topic is unencrypted

            reactions are unencrypted

            replies reference unencrypted MXIDs so you can tell what is being replied to even if the payload itself is encrypted

            do not use them. do not waste your time on them. it is not worth it.

            ariadne@social.treehouse.systemsA This user is from outside of this forum
            ariadne@social.treehouse.systemsA This user is from outside of this forum
            ariadne@social.treehouse.systems
            wrote last edited by
            #5

            or as I put it in the Bundernet #known-issues room which is acting as an FAQ

            Link Preview Image
            siguza@infosec.spaceS 1 Reply Last reply
            0
            • R relay@relay.an.exchange shared this topic
            • incentiveI incentive moved this topic from Uncategorized
            • ariadne@social.treehouse.systemsA ariadne@social.treehouse.systems

              or as I put it in the Bundernet #known-issues room which is acting as an FAQ

              Link Preview Image
              siguza@infosec.spaceS This user is from outside of this forum
              siguza@infosec.spaceS This user is from outside of this forum
              siguza@infosec.space
              wrote last edited by
              #6

              @ariadne Matrix also allows unencrypted messages in encrypted rooms, and the information that a room is encrypted may not reach a client. I reported this to both clients and the matrix spec, but was told that this was expected behaviour both times ("because we want to allow bots"). Dumbest E2E impl out there.

              1 Reply Last reply
              1
              0
              • R relay@relay.infosec.exchange shared this topic
              • ariadne@social.treehouse.systemsA ariadne@social.treehouse.systems

                matrix E2EE channels are fucking stupid because they leak all sorts of metadata

                for example, the topic is unencrypted

                reactions are unencrypted

                replies reference unencrypted MXIDs so you can tell what is being replied to even if the payload itself is encrypted

                do not use them. do not waste your time on them. it is not worth it.

                A This user is from outside of this forum
                A This user is from outside of this forum
                alwayscurious@infosec.exchange
                wrote last edited by
                #7

                @ariadne is this something that could be fixed or is it too fundamental to how Matrix works?

                1 Reply Last reply
                1
                0
                Reply
                • Reply as topic
                Log in to reply
                • Oldest to Newest
                • Newest to Oldest
                • Most Votes


                • Login

                • Login or register to search.
                • First post
                  Last post
                0
                • Categories
                • Recent
                • Tags
                • Popular
                • World
                • Users
                • Groups