this post was submitted on 09 Nov 2021
18 points (87.5% liked)

Privacy

31265 readers
560 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 4 years ago
MODERATORS
18
Session messenger (getsession.org)
submitted 2 years ago* (last edited 2 years ago) by Yujiri@lemmy.ml to c/privacy@lemmy.ml
 

I'm aware that Session has been discussed twice before on this community, but the last thread was 6 months old so excuse my starting a new one.

There's one big concern I wanted to bring up, which is the disagreements over whether it has forward secrecy. The spec says it does, but I've found two other sources saying it doesn't:

https://restoreprivacy.com/secure-encrypted-messaging-apps/session/ (search for "Perfect Forward Secrecy removed") https://www.securemessagingapps.com

Why are they saying this? Is there a critical caveat to Session's forward secrecy (does it not have it in closed groups?), or are both sources just wrong?

(I've also heard one source say its closed groups are limited to 10 members which would be a showstopper for me and another source say they're limited to 100 and the spec says 500 so i don't know what to believe.)

I'm also concerned about it being built on top of a blockchain and cryptocurrency, not because I'm suspicious of cryptocurrency in general but because I find it difficult to understand, and because that it costs thousands of dollars to run a Session node seems to me like the network is bound to be owned exclusively by a few rich companies and investors. Is it? Is there a place I can see who owns how much of it, particularly how much is owned by the Oxen developers?

UPDATE: I believe I've just learned that Sesison DOES NOT have forward secrecy or deniability; the whitepaper linked on their CURRENT website is outdated. https://getsession.org/blog/session-protocol-technical-information

you are viewing a single comment's thread
view the rest of the comments
[–] zksmk@lemmy.ml 2 points 2 years ago

Not everyone wants to labor for something they don’t want or believe.

Nobody wants to labor for something they don’t want or believe.

Democracy is about giving as many people as much freedom as possible, while putting emphasis and primacy on giving additional freedom to those with the least of it, first. It's about leveling the playing field. It's about compromise. It's about everyone. But you can't please everyone. Hence, reasonable compromises.

Private money (crypto or not) is not, it's about giving more freedom to the select few, the rich. Being more poor than you deserve (common in unregulated taxless capitalism), robs you of your freedom. When there's multiple agents in a limited space, freedom is a limited resource. This is true with any group of people, abstract or literal, you can't move. Money is freedom, underserved and unfairly extra money is underserved and unfairly extra freedom. Private money is not about fair freedom.

Democracy is not about tyranny of the majority, fair democracies have protections for minorities infused into their cores. And that's why in functioning democracies the rich get taxed.