[messaging] The downsides of no key verification

Jason A. Donenfeld Jason at zx2c4.com
Thu Jun 9 13:42:29 PDT 2016


On Thu, Jun 9, 2016 at 10:40 PM, Nadim Kobeissi <nadim at nadim.computer> wrote:
> I've also noticed this, but in my experience, Bob's phone will also show a notification that Alice's "security code has changed" right before re-transmitting the "lol" message. Does this notification appear for you?

It mentions that the security code has changed, but it still
retransmits the messages automatically, and clicking on the security
code thinger a nice popup shows saying "the person you're talking to
probably just got a new phone! keep calm, carry on."

> this re-transmission should not be automatic.

Yes, I believe this is the crux of the problem.


More information about the Messaging mailing list