In the context of a messaging system anything other than E2EE is pretty worthless as far as I'm concerned.
If just using encryption is good enough for you, then why not use Facebook Messanger, Google Hangouts or whatever they call it these days, or WeChat? You can verify their use of encryption with Wireshark.
You argue that Telegram is great because it's open source, but what difference does that really make when it's a centralized service and that centralized service has access to all the plaintext? So what if the client is open source? What does that actually help us verify in this case?
In the context of a messaging system anything other than E2EE is pretty worthless as far as I'm concerned.
To each their own. I've made a choice that I'd rather take the risk of leaking data to Telegram (real but I've reason to belive kow risk) than leaking metadata to Facebook (a given).
I'm considering Signal though.
But don't lie and say not not encrypted when you mean not end-to-end-encrypted.
Comments
Telegram uses encryption by default, just not E2EE.
You can criticise them for
- using their own crypto
- misleading advertising regarding the quality of said crypto
... and possibly more, but I still suggest we try to stick to the facts.
In the context of a messaging system anything other than E2EE is pretty worthless as far as I'm concerned.
If just using encryption is good enough for you, then why not use Facebook Messanger, Google Hangouts or whatever they call it these days, or WeChat? You can verify their use of encryption with Wireshark.
You argue that Telegram is great because it's open source, but what difference does that really make when it's a centralized service and that centralized service has access to all the plaintext? So what if the client is open source? What does that actually help us verify in this case?
To each their own. I've made a choice that I'd rather take the risk of leaking data to Telegram (real but I've reason to belive kow risk) than leaking metadata to Facebook (a given).
I'm considering Signal though.
But don't lie and say not not encrypted when you mean not end-to-end-encrypted.