Comment Whatâ(TM)s App not E2EE in the practical sens (Score 2, Interesting) 30
https://engineering.fb.com/202...
Their device link feature doesnâ(TM)t alert the user when a new device is added, and it doesnâ(TM)t require any action from them. The server can request the private encryption key from the primary device and provide it to the new device.
Whatâ(TM)s stopping Meta from adding one of their devices to your account?
Signal app on the other hand requires user action on the primary device, and it modifies the device signature, alerting all chat partners of the security change.
Whatâ(TM)s App eliminated this level of security supposedly to streamline user experience. But it has costly implications to end to end encryption channel integrity.