← Back to context

Comment by haffenloher

6 years ago

Maybe I'm misunderstanding what you're trying to say, but remote attestation is in fact exactly what they're doing with their contact discovery: https://signal.org/blog/private-contact-discovery/

SGX is crypto that is already exploited and broken, it offers no real use in this context.

Oh, and I forgot, you do need to essentially blindly trust Intel.

  • I don't really care and think this is all a red herring, since every other mainstream messenger doesn't protect this information at all, but instead stores it in plaintext databases.