Elektrine lite

← Feed

@menos@todon.eu

Post #3245638

2026-05-25 07:40 UTC

@psylo@infosec.exchange Thanks for the background! What would encrypting the database achieve in this context though? For a completely different threat like cops snooping around on your phone, sure, that would be a good idea anyway. But as long as they can freely pass the encryption keys between their own apps, I don't see how that would help in this scenario. We know what kind of exploits they're willing to use (and how much malwareish behavior Google, and probably Apple, os wiling to tolerate from the likes of them) from their "deanonymize Facebook pixels via connections to localhost" stunt. @wabetainfo@mastodon.social @mysk@mastodon.social

Replies (1)

  • @psylo@infosec.exchange 2026-05-25 08:35

    @menos@todon.eu @wabetainfo@mastodon.social @mysk@mastodon.social This macOS bug made it easy to exfiltrate WhatsApp chats. If it was encrypted , you'd need more tricks to decrypt the data: https://mysk.blog/2026/05/19/cve-2026-28910/

    Open ##3245639