OTR messaging gives perfect forward secrecy. So you can't attack the history without breaking AES entirely: http://en.wikipedia.org/wiki/Perfect_forward_secrecy
The bigger attack on OTR is social engineering, you need to verify signatures out of band.
But as you say, it's better not to have the secret at all.
Comments
OTR messaging gives perfect forward secrecy. So you can't attack the history without breaking AES entirely: http://en.wikipedia.org/wiki/Perfect_forward_secrecy The bigger attack on OTR is social engineering, you need to verify signatures out of band.
But as you say, it's better not to have the secret at all.