Registration without a phone number on Signal will use zero-knowledge proofs (community.signalusers.org)
ggm 3 hours ago
opengrass 3 hours ago
ggm 2 hours ago
Do you think this changed in over 18 months? I think it changed in under 18 months.
Cider9986 an hour ago
opengrass 3 hours ago
mmooss 3 hours ago
Cider9986 2 hours ago
They probably avoided Monero to not attract the additional scrutiny. They don't even accept donations in Monero.
wolvoleo 2 hours ago
dakolli 25 minutes ago
Cider9986 6 minutes ago
drum55 2 hours ago
wolvoleo 22 minutes ago
Cider9986 2 hours ago
I understand using play payments initially but hopefully eventually there's a way to buy an account without going through google.
opengrass 2 hours ago
https://github.com/signalapp/Signal-Android/commit/7da3357b5...
Cider9986 2 hours ago
wolvoleo 2 hours ago
For an org that pretends to care about privacy you'd imagine there'd be a way to avoid, you know, the biggest privacy invader on the planet.
Just allow monero payments or something. Alongside Google play for the sheep that want to use that.
Cider9986 2 hours ago
genrader 2 hours ago
Cider9986 an hour ago
I've literally registered a Signal account on one of the free SMS sites floating around. Why would spammers choose the payment route over phone numbers? They would just choose the one that's cheaper.
thin_carapace 2 hours ago
wolvoleo 32 minutes ago
purpleidea 3 hours ago
s0ss 2 hours ago
ynniv 3 hours ago
teravor 2 hours ago
however signal has an obscene fondness for TEEs (secure enclaves) so they may actually be doing something stupid here which will require trust beyond the ZKP.
rkagerer 3 hours ago
Cider9986 2 hours ago
Cider9986 2 hours ago
smalltorch 2 hours ago
2Gkashmiri an hour ago
https://timesofindia.indiatimes.com/india/ats-probes-use-of-...
https://www.aninews.in/news/national/general-news/accused-da...
https://www.deccanherald.com/india/secure-messaging-apps-lik...
https://india-employmentnews.com/tech-category/delhi-blast-n...
https://timesofindia.indiatimes.com/tech-news/Dangerous-Sign...
And it doesn't matter you use a connected phone or not, they just get data from ISPs.
And yes, using a VPN will get you knocked up as well.
https://www.aljazeera.com/news/2026/1/12/indias-vpn-ban-in-k...
Synthetic7346 32 minutes ago
wolvoleo 26 minutes ago
wolvoleo 29 minutes ago
India also bans most satellite phones by the way. I have one so I looked into that as to not get caught out travelling.
user3939382 3 hours ago
bawolff 3 hours ago
I personally think signal is sufficient for the threats the average person is concerned about, but that is a decision each individual has to make for themselves.
420official 3 hours ago
I concede that if you can't trust the device itself you can't trust anything running on it, but why have you resigned yourself to that? And how does that reflect on signal at all?
mmooss 2 hours ago
While I disagree with these critiques of Signal, the surveillance networks can capture metadata - who talks to who and when - without breaking E2E. The metadata is as valuable as the data.
I think Signal has a feature to protect users, but I can't imagine how it works if the attacker can see all parties' Internet connections.
atiq-ca 4 hours ago
ranger_danger 4 hours ago
blfr 3 hours ago
Cider9986 3 hours ago
In Molly there's three options. Google Play Services, WebSocket, and UnifiedPush.
I use the WebSocket and Molly has used >1% of battery since the last full charge so it doesn't seem like play services would improve battery but maybe if I had more apps depending on it..
Google and Apple can't see the notification content but they can see metadata. If you want metadata privacy you should use SimpleX instead anyway.
rkagerer 3 hours ago
Cider9986 3 hours ago
john01dav 3 hours ago
opan 3 hours ago
nosioptar 3 hours ago
(I dont bother with encrypted messenging apps. I prefer to assume that anything I do on my phone is doubleplus unprivate. If I want privacy, I head over to my computer.)
Cider9986 2 hours ago
Competition is Qubes but that has usability issues and does not have good hardware security.
nosioptar an hour ago
Cider9986 an hour ago
Google Pixels have no evidence of a hardware backdoor when a desktop is proven to be much less secure against remote and local exploitation.
It has been shown through leaks that Pixels running GrapheneOS are the most secure against Cellebrite in AFU. GrapheneOS was the first to implement a reboot timer feature which brings the device to BFU (much more secure) and then Android and iOS copied it (with longer, non-customizable duration).
You can inspect network traffic to see that GrapheneOS phones only connect to GrapheneOS-run services.
Here's a team member's thoughts: https://discuss.grapheneos.org/d/10150-not-your-average-why-...
wolvoleo 26 minutes ago
When I'm at home I don't wanna use a virtual keyboard on a 6.3" (or 7.9 unfolded). I just want to use my triple monitor PC setup with a real keyboard and a wealth of display space.
Mobile is cool for on the go but a productivity killer.