# Don’t Use Session (Signal Fork) [Article]

**URL:** https://discuss.privacyguides.net/t/don-t-use-session-signal-fork-article/24006
**Category:** General
**Tags:** software, article
**Created:** 2025-01-15T09:53:20Z
**Posts:** 42
**Showing post:** 34 of 42

## Post 34 by @jerm — 2025-01-20T13:02:51Z

There’s also [Hi Meta, WhatsApp with Integrity? | by Tal Be'ery | Medium](https://medium.com/@TalBeerySec/hi-meta-whatsapp-with-integrity-4d85756dd7c5) (no bloat frontend: [scribe](https://scribe.rip/@TalBeerySec/hi-meta-whatsapp-with-integrity-4d85756dd7c5)), Usenix paper and  
presentation: [https://www.usenix.org/conference/woot24/presentation/beery](https://www.usenix.org/conference/woot24/presentation/beery), lastly: [https://eprint.iacr.org/2022/1710.pdf](https://eprint.iacr.org/2022/1710.pdf)

Another thread where I collected known vulnerabilities:

> [@According to Elon Musk, Signal has "known vulnerabilities that are not being addressed"](https://discuss.privacyguides.net/t/according-to-elon-musk-signal-has-known-vulnerabilities-that-are-not-being-addressed/18206/14):
>
> He obviously lack any proof to back it up, or read some political article about Signal. But it is true that Signal have known vulnerabilities that are not being addressed [https://restoreprivacy.com/signal-for-desktop-is-vulnerable-to-attachments-exposure/](https://restoreprivacy.com/signal-for-desktop-is-vulnerable-to-attachments-exposure/)[https://github.com/signalapp/Signal-Desktop/pull/4381](https://github.com/signalapp/Signal-Desktop/pull/4381) No sandbox on Linux [https://www.ndss-symposium.org/ndss-paper/improving-signals-sealed-sender/](https://www.ndss-symposium.org/ndss-paper/improving-signals-sealed-sender/)[https://arxiv.org/abs/2305.09799](https://arxiv.org/abs/2305.09799) Shit Sealed Sender implementation. Relying on SIM to s…

---

_[View the full topic](https://discuss.privacyguides.net/t/don-t-use-session-signal-fork-article/24006)._
