Hacker News new | past | comments | ask | show | jobs | submit login

I would be interested in knowing whether anyone else has confirmed these accusations or created a writeup as to why the protocol is insecure.



It also has very questionable choices towards respect of Privacy: https://github.com/matrix-org/synapse/issues/4540


I can confirm. One of the write-ups I did: https://gist.github.com/maxidorius/b25769f1a89c8860b928babe7...


this write-up boils down to saying that servers that don't uphold server ACLs (server-bans) will leak messages from banned servers.

it's a feature, not a bug; if you want to deploy the nuclear option of a server-ban in a room, you also have to ban any other servers which don't know what a server-ban is.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: