• unknowing8343@discuss.tchncs.de
    link
    fedilink
    arrow-up
    69
    arrow-down
    5
    ·
    5 days ago

    EVERYONE SHOULD DOWNLOAD SIGNAL for PHONE-NUMBER-based communication, tho. Proper RCS is not here yet (and won’t be in a long while), so let’s try to mobilize people to Signal.

    DeltaChat is cooler for non-phone based communications, IMO, and decentralization makes it way sexier and worth this tradeoff.

    • 9tr6gyp3@lemmy.world
      link
      fedilink
      arrow-up
      23
      arrow-down
      2
      ·
      5 days ago

      Actually RCS has encryption in the new spec now, and we could see encrypted RCS messages implemented on iOS and Android within a year.

      But even so, use Signal.

      • ᗪᗩᗰᑎ@sh.itjust.works
        link
        fedilink
        arrow-up
        42
        ·
        5 days ago

        RCS still leaks metadata like a sieve. Encryption, considering the platforms that exist today (Signal and SimpleX), should not be the minimum requirement. Plain-text messaging should not even be possible in modern secure messaging platforms. The platform should be open source and be engineered to mitigate the collection of metadata - like Signal and SimpleX.

        • 9tr6gyp3@lemmy.world
          link
          fedilink
          arrow-up
          2
          ·
          5 days ago

          Seeing as RCS with encryption based on the MLS standard hasnt been deployed yet, can you show exactly what metadata is leaking?

          • ᗪᗩᗰᑎ@sh.itjust.works
            link
            fedilink
            arrow-up
            2
            ·
            4 days ago

            MLS only deals with encryption and key management, which is great but that’s been a “solved” problem since TextSecure (now Signal) introduced the TextSecure Protocol (now the Signal Protocol) in 2013.

            What I’m aware is missing with RCS / MLS compared to Signal (someone with more recent knowledge please correct me):

            • Sealed sender so only the recipient knows who sent the message.
            • Not storing metadata or logs.
            • No built in crash reports.
            • Private contact discovery.
            • Published government requests providing evidence that they don’t have any data.
            • Open source client.
            • Looking at the Google Play store, Google’s Messenger shares precise location data with third parties, Signal doesn’t.
            • Also on the Google Play store, Google’s Messenger app list a lot of data collected. Signal only lists phone number.
          • poVoq@slrpnk.net
            link
            fedilink
            arrow-up
            2
            ·
            edit-2
            4 days ago

            Well, instead of leaking metadata to Signal, AWS, Cloudflare, Google/Apple and your ISP, like Signal does, RCS only leaks it to your ISP /s

      • BakedCatboy@lemmy.ml
        link
        fedilink
        English
        arrow-up
        5
        ·
        5 days ago

        I think they mean that it’ll take time for everyone to get it. My carrier still doesn’t even have RCS at all.

      • unknowing8343@discuss.tchncs.de
        link
        fedilink
        arrow-up
        4
        arrow-down
        2
        ·
        5 days ago

        What I dislike about XMPP is that the client ecosystem is definitely weaker than DeltaChat. DeltaChat “just works”, and it works incredibly similar and efficient across devices.

        But yes, I wouldn’t mind if the world used XMPP instead, honestly.

      • socsa@piefed.social
        link
        fedilink
        English
        arrow-up
        2
        arrow-down
        1
        ·
        4 days ago

        It also just gets blocked by autocratic firewalls. Deltachat is clutch because it can theoretically run on top of any email host so it’s way more difficult to block.

        • poVoq@slrpnk.net
          link
          fedilink
          arrow-up
          4
          ·
          edit-2
          4 days ago

          You can easily redirect xmpp to port 443 which is not blocked by most firewalls. If you have problems with firewalls or public wifis your xmpp server is misconfigured.

          • socsa@piefed.social
            link
            fedilink
            English
            arrow-up
            1
            ·
            edit-2
            4 days ago

            China will definitely block xmpp on any port. I know this because I have tested this very specifically from my own server. It lasted about a day and a dozen messages before it was blocked, and the box got absolutely slammed with vulnerability scans.

            • poVoq@slrpnk.net
              link
              fedilink
              arrow-up
              2
              ·
              4 days ago

              This is odd because I know a few mainland Chinese people that use XMPP without problems (and afaik without a VPN).

              Sounds like your server got blocked for another reason?

              • socsa@piefed.social
                link
                fedilink
                English
                arrow-up
                1
                ·
                4 days ago

                I can almost guarantee you they are using it through a VPN or they have a western SIM card. If not I’d love to know what server they use, as I’ve tested this a bunch of times on several public and private servers and it’s always the same result. If it isn’t blocked on day 1 it will be blocked quickly.

    • shortwavesurfer@lemmy.zip
      link
      fedilink
      arrow-up
      8
      arrow-down
      1
      ·
      5 days ago

      I use signal myself but I also use simple X. I can’t use delta chat because I use proton for my email and therefore can’t use delta.

      • SatyrSack@feddit.org
        link
        fedilink
        English
        arrow-up
        5
        ·
        5 days ago

        Delta Chat is not associated with your email account, as far as I can tell. Am I wrong?

          • SatyrSack@feddit.org
            link
            fedilink
            English
            arrow-up
            6
            ·
            5 days ago

            You don’t have to use a “classic email server”, or even link your account to your current email address at all. The default onboarding procedure actually creates a new anonymous account for you on the default chatmail server. Reading through the site, I can’t actually even tell why someone would want to use their preexisting email address.

              • themadcodger@kbin.earth
                link
                fedilink
                arrow-up
                3
                ·
                5 days ago

                Yeah, that’s when I first used it too, it had to go through your email. Now it just uses the email backbone to send messages back and forth. Also, self-contained webxdc apps you can use with people in your chat, which is kinda cool.

    • themadcodger@kbin.earth
      link
      fedilink
      arrow-up
      3
      ·
      5 days ago

      The self-contained webxdc apps are a pretty cool bonus to what already feels like a normal chat app. I primarily use Signal, but given the current climate of governments trying to force backdoors in to encrypted apps, and the fact it’s a US server, I wanted a decentralized backup. And email isn’t going anywhere, so it seems like a good option.