Oddbean new post about | logout
 1. It is a professional security analysis even if you don't like what it says. 

2. Most of the issues they exposed still exist.

3. Your little self-serving, arbitrary point system used tok rank messengers is stupid and irrelevant.

Threema is garbage, and the idea that it's at the top of this list of yours is laughable, and plainly absurd. 
 1 = NO its not = its all outdated!

2 = Which issues should that be?

3 = The ranking works very well, because everybody understands it.

Threema is unbeaten - up to this day - for nearly 12 years now! 
 Lol no it doesn't work well because it's completely arbitrary, and you can't accurately determine the quality of multifaceted private messaging apps with a single metric.

This is marketing bullshit, not a legitimate system for evaluating the quality and strength of the different platforms. It's designed so that shills who have a financial interest in peddling a particular platform have a metric to point to to justify the sale. It's an instrument of security theater, and salesmanship.  
 Just let us know again if you have found any real errors!

You can also look at any other comparison tables - Threema is always number One! 
 SimpleX wins at 88 points if you stop punishing it for dodgingpossible privacy/security issues such as:

Do you get notified if a contact's fingerprint changes?	

Is personal information (mobile number, contact list, etc.) hashed?

Are messages encrypted when backed up to the cloud?

All of which are N/A therefore are given a white background and not green. This site wasn't setup for an arbitrary points system.

Also

Directory service could be modified to enable a MITM attack?

There is no directory service for discovering contacts, SimpleX hosts a public group directory and it could MITK those, but that's a separate service not included in the app.. in my opinion it should get another 3 points.

I disagree that Google Messages doesn't use a directory service as phone numbers are the directory service, and the carriers could definitely MITM as they control the phone numbers. 
 And why does 🟩 = 3 points instead of 2? It just makes the difference seem larger and has no real value.