this post was submitted on 17 Sep 2023
143 points (82.9% liked)

Privacy

31091 readers
452 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 4 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] CaptainAlchemy@lemmy.one 12 points 11 months ago (2 children)

Molly is only available on Android, as far as differences it is a hardened fork of signal with an encrypted database, what that means in practice is even if someone was actively probing your phone to try to gain access to messages they wouldn't be able to due to the encryption. It's very useful if you are an active target or you don't trust your phone os to play nice. I personally use it myself and really like it but in general it's not terribly different.

[–] skullgiver@popplesburger.hilciferous.nl 4 points 11 months ago* (last edited 9 months ago) (1 children)

[This comment has been deleted by an automated system]

[–] CaptainAlchemy@lemmy.one 2 points 11 months ago* (last edited 11 months ago) (1 children)

It's only encrypted in a BFU state, (before first unlock). Police can probe your phone for data using a tool by cellebrite without root. GrapheneOS includes a auto rebooting feature to place it back in a BFU state but other phones will lack this feature. Using Molly's database lock allows you to not trust the OS itself by encrypting it.

edit: corrected cellbrite to cellebrite

[–] LiveLGNProsper@lemmy.world 3 points 11 months ago* (last edited 11 months ago) (2 children)

Yeah I realize it is android only and that makes sense that is exactly what I was looking for surprised signal doesn’t encrypt the database honestly.

[–] jet@hackertalks.com 7 points 11 months ago (1 children)

They used to. Then they removed it. And Molly forked and put it back in.

[–] LiveLGNProsper@lemmy.world 2 points 11 months ago

Makes sense thank you for clarification

[–] CaptainAlchemy@lemmy.one 6 points 11 months ago (1 children)

The main issue with encrypting the database using Molly's setup is you'll miss notifications and calls until you unlock, this might be able to be fixed using a different database encryption setup but as it stands it would be inconvenient for many.

[–] LiveLGNProsper@lemmy.world 2 points 11 months ago

That makes allot of sense why signal does not have it would be a issue for most regular users.