this post was submitted on 27 Jan 2026
1245 points (99.5% liked)
Technology
79476 readers
4257 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Your threat model seems to be an app whose published source code doesn't match the published app, and whose published version uses a side channel not in the source code to leak messages in plaintext to a server. If that's what we're worried about then decentralization of the app's main messaging channel makes no difference. The sneaky side channel could still be there in any app, centralised or decentralized.
That's a theoretical worry to be mitigated through integrity checks on published open-source apps. The worry with Meta and WhatsApp is much more immediate: a known bad actor with a closed-source app, many domains they could use to leak keys or unencrypted messages, and a fawning relationship with the fascist and surveillance-hungry US Government. I'd still put significantly more trust in Signal even though it is centralised.
You're right decentralization would help because you could isolate yourself from the corporate server sending the instructions for you to leak the messages.
But ultimately you're right integrity checks of apps are a better way to address this and fortunately it seems Signal do produce reproducible builds. https://github.com/signalapp/Signal-Android/blob/main/reproducible-builds/README.md so is secure from this kind of attack (unless there is a backdoor in the published code)