Anonymous NSA official sent USGov’s internal “how to use Signal tips” document to CBS.
Basically, don’t get phished, or the FSB will add itself to your “linked devices”.
Some other sensible tips too.
https://www.cbsnews.com/news/nsa-signal-app-vulnerabilities-before-houthi-strike-chat/
@Akshay some of the media coverage about this is so bad it's maddening, incl. this CBS story.
This isn't a "#vulnerability" in #Signal, there's only #phishing and people too dumb to check who they add to a group chat.
But because we fall for this sh*t, the world now debates @signalapp's #security instead of how the US #Defence Sec violated the law.
Well, at least CBS links to the (sensible looking) original documents, and cites Signal’s response.
It is a PR issue that the NSA itself used the word “vulnerability” for Signal-specialised malware…they apparently use the term broadly
The only thing to do is for #Infosec and #Privacy experts (and #Signal) to get on mass media (TV, newspapers) and use the current attention as a teaching moment!