As long as Apple runs the public key directory for iMessage they can invisibly MitM people’s conversations
-
-
Replying to @bascule
@bascule Not really invisible. You can always observe that the key for a device has been changed: https://github.com/quarkslab/iMITMProtect …3 replies 2 retweets 7 likes -
Replying to @dinodaizovi
@dinodaizovi think I found a (1-byte) buffer overflow: https://github.com/quarkslab/iMITMProtect/blob/master/Crypto/Crypto/crypto.cpp#L172 …1 reply 0 retweets 0 likes
Replying to @dinodaizovi
@dinodaizovi seems trustworthy ;)
4:38 PM - 20 Sep 2014
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.