Damus
Blake profile picture
Blake
@wakoinc
“End to End Encryption” is just marketing without having significant and deliberate tampering detection mechanism.

Examples include secretly swapping out a certificate/key for an identity to middlemen, private key leakage, changes in code to specific safety checks or tampering protection mechanisms, or changes in forward secrecy pre-generated keys, etc.

It would be nice if we had a way to better detect these types of changes and make it very obvious to the identity. As they happen and as part of updates. It would be nose to have a trusted host OS that could help validate.
7❤️1🤙2🧡1
Blake · 135w
Nice*
The Fishcake (nostr.build) · 135w
🐶🐾🫡 https://en.m.wikipedia.org/wiki/HTTP_Strict_Transport_Security Pin the certificate. And there are many other ways to overcome mitm attacks, take a look at IPsec and various key exchange mechanisms it has🐶🐾🫡