WhatsApp is bad, but Telegram isn't great either. All chats that you haven't explicitly made "secret" are not end-to-end encrypted. They're apparently "encrypted", but the keys are controlled by Telegram.
Furthermore, they frequently "ban" channels that they deem contain "inappropriate" or "adult" content. Clearly they're reviewed by either humans or AI of some sort. So... that makes me uncomfortable.
Their reason for why you can trust them with encryption keys was "we didn't hand them over to <insert country here> and so they banned us where we could have cooperated and continued to have operating in said country", which seems like a pretty weak argument.
For truly decentralised, private and encrypted communication, I highly recommend matrix+riot.im.
EDIT:
> To support this idea, Pavel Durov claims that Telegram is banned in Russia and Iran, where both governments asked him for encryption keys to access the platform’s messages. Hence for refusing the proposal given by the governments of those countries, the app was banned.
Even if telegram hasn't handed over keys so far, the fact remains that the keys are still controlled by them and tomorrow if they wished they could read/expose/publish/share all "private" communication.
Think of it this way. If Bezos had been using telegram like is recommended in the article and the CEO of telegram wanted to spy on Bezos' chats, he would have totally been able to.
They say that chats don't have e2e by default so that they can be backed up to the cloud [0], but there's no reason why you can't back up encrypted chats and ask the user for a pin and decrypt them on-device.
Furthermore, telegram forces you to link your account with a phone number, and that acts as the primary (or only) form of authentication, opening you up to sim-jacking.
Also, this means that anyone who has your phone number is told you're on the app and given your username, which you may not want for privacy reasons.
Happened to us, we built a bot[1] to buy and sell bitcoins privately on Telegram. Someone messaged me saying that they would get a 'SCAM' label on our bot if we didn't pay them the ransom. We didn't comply and within a few days we got the label(guess they managed to get a lot of accounts on our bot to report scam). Their support team was unresponsive and it took around 3 weeks to get it resolved.
Needless to say, our users lost trust and we couldn't risk this happening again.
We still run the service(from request of a few existing users) but not actively promoting it.
> They're apparently "encrypted", but the keys are controlled by Telegram.
Yes, but they take steps to ensure they cannot easily be forced to decrypt chats via a court order in a single country. From the Telegram FAQ:
To protect the data that is not covered by end-to-end encryption, Telegram uses a distributed infrastructure. Cloud chat data is stored in multiple data centers around the globe that are controlled by different legal entities spread across different jurisdictions. The relevant decryption keys are split into parts and are never kept in the same place as the data they protect. As a result, several court orders from different jurisdictions are required to force us to give up any data.
> Furthermore, they frequently "ban" channels that they deem contain "inappropriate" or "adult" content. Clearly they're reviewed by either humans or AI of some sort. So... that makes me uncomfortable.
AFAIK messages are only forwarded to Telegram support if they are reported by users. Chats spreading pornographic content are often banned on iOS due to the App Store guidelines (and in certain countries due to local laws), but illegal channels (e.g. CP) may be blocked globally.
> Also, this means that anyone who has your phone number is told you're on the app and given your username, which you may not want for privacy reasons.
This is not true anymore, a while ago they added new privacy settings that allow you to prevent others from finding you unless they are in your Telegram contact list. (Of course, this means if you don't want anyone in your phone's contacts to be able to find you on Telegram, you should deny the app contacts permission.)
IMO it's a reasonable trade-off for general use as a chat platform with public groups and all, you can use secret chats if you really want to be confident in your privacy. Maybe they could add support for end-to-end encrypted groups though.
> Yes, but they take steps to ensure they cannot easily be forced to decrypt chats via a court order in a single country. From the Telegram FAQ
Again, this is just what they claim. Doesn't mean they don't read chats because they feel like it. And this doesn't mean that they won't cooperate with other entities in the future. Or that the keys won't get leaked.
Your data being encrypted is pointless if it's stored one someone else's servers, and they have the keys to it.
If we are going with a conspiracy theory that whatsapp deliberately included a buffer overrun bug as a backdoor... then why the heck would we trust telegram about this?
I see no reason why open source helps here. Closed source clients aren't black boxes. You can examine the bytecode. You can decompile the binaries.
I see no reason why a conspiracy dedicated enough to hide a backdoor as a buffer overrun wouldn't also be capable of making the Telegram server store key material in a single country to make it available to legal requests (since, as you say. the back-end software isn't open source).
Bytecode is basically the same as source. Decompiled binaries are harder to read, but there are oodles of professionals who are very skilled at reading decompiled code. The actual structure of the program itself plays (to me) a much bigger role in the auditability of a system.
It's my understanding that one reason people like Telegram is unlike Signal, you can use a username and hide your phone number. (Please correct me if this is incorrect, I don't know anyone who uses it so I stick to Signal)
Signal is the gold standard for confidentiality, but forcing folks to disclose a phone number as a primary identifier has privacy issues.
Telegram also has native, non-Electron apps, for many platforms, could it be an advantage? It also has convenient public chats and "channels" (microblogs). It has support for proxy servers, allows sharing proxy servers and has traffic obfuscation which Signal (I assume) doesn't have.
But for me Telegram and Signal are equally insecure because they don't allow anonymous accounts without a phone number. Using phone number for authentication is insecure because it is very easy to intercept SMS messages, especially if you are a telecom or the government. You better avoid using such messengers and not support them unless you want to provide your ID in future for registration on any website.
The native apps certainly help… Signal’s desktop app is pure afterthought and it shows.
The other thing is that Telegram is just far more feature rich. It feels like what you’d like expect from a modern messaging app.
Perhaps the most unfortunate thing about this all, though, is that third party devs can’t make their own Signal clients to try to improve the situation. If you want to use Signal, you have to take it with all of its warts, and that’s a hard sell.
I use both telegram and signal and I find that the general user experience (syncing chats across devices, bots, rich media types) is better in telegram, at the expense of privacy.
> Furthermore, telegram forces you to link your account with a phone number, and that acts as the primary (or only) form of authentication, opening you up to sim-jacking.
Linking phone or use it for 2FA should be like red light today. For Telegram, banking app, don't matter.
Actually, there's something interesting to note. If you enable 2FA, it's not possible to recover your account without either the password or the recovery email (if any). However, via SIM-jacking an attacker can still erase all data in your account and then take it over.
End-to-end encryption is available, but not yet enabled by default for private rooms/direct messaging. See this for status, it seems it will soon be enabled by default: https://github.com/vector-im/riot-web/issues/6779
It is amazing how fast the goalposts can move to fit a narrative. So chats in Matrix are not E2E encrypted? The very thing Telegram is being called out for in this thread?
If the chat isn't e2e, you are warned at every moment because the message text box that you type into prominently says "(unencrypted)". You can easily enable e2e for all conversations, and it will soon be the default. The data is on your own homeserver, and no one else has access to keys. Riot/matrix is vastly superior to telegram.
Edit: also, telegram doesn't support e2e encrypted group chats, unlike riot.
One of them does rather dishonest marketing, the other is upfront about capabilities and defaults.
Telegram: we do E2E!* That makes us MORE SECURE than other messengers!
Matrix: you can enable E2E if you want.
* just not by default†
† unless you count "E2E" security between your client and our servers,‡ which we'll confusingly highlight in our security documentation as if it were special††
‡ you don't really need E2E anyway because we store your data in shell companies across the world
†† I guess it is "special" because Telegram invented its own crypto algorithms?
I'd like Telegram a lot more if they would stop with their bullshit claims, because it's actually a good service for some usecases. While reading the article I was hoping it was just written by a clueless Telegram fanboy, but reality is disappointing…
I understand that with MTProto 2 they stepped away from their homecooked crypto and follow a more traditional scheme which on the surface looks OK. It's still not the default (you must enter into a 'secret chat'), but if you do, isn't it acceptable? Telegram now is one of the last remaining clients that has excellent device support, its available for everything.
_native_ clients, mind you. Their desktop client is built on top of (heavily patched) Qt and is relatively light on resources. That's pretty rare these days, unfortunately.
What is the point of going truly native on apps like chat?
They have a web version anyway and with Electron for desktop and webview for mobile, they can concentrate on the responsive single design instead of hiring different talents to communicate with each others left and right to slow down their development with inconsistencies.
I think it's because they want to give both usability (history shared between devices) and security (E2E encryption). Not anybody or any kind of conversation need encryption, so you as the end user can choose what's more appropriate.
TBH I don't know how other secure messaging programs like Signal or Wire handle the multi-device history issue.
With signal each registered device will receive a copy of the chat while that device is registered. If a new device is enabled afaik it doesn't get sent any messages from the past, although technically the other devices could transmit previous messages.
From what I understood, each time a new device joins the conversation, a new key is generated for everyone in the conversation (and each devices), so they are allowed to decrypt others' messages. That being said, they can't access chat history.
Groups on Telegram can have 100k+ members. Enabling Signal like E2E encryption scheme and ensuring you can have that many members in a group is basically impossible. See this video to understand why, https://www.youtube.com/watch?v=Q0_lcKrUdWg
I guess they could enable E2E encryption in private messages but being able to sync conversation across different telegram clients you are logged into is one of the features. Enabling E2E encryption by default will probably break this. I guess they could try and implement it like Signal has done for Private messages but I don't know why they have not done that already.
It's about priorities. Signal's priority is security. If the current state of the art is you can chose security or foozles, then Signal doesn't have foozles. If people really want foozles then they need to do the work to figure out how to deliver foozles securely and then Signal can integrate that work.
All of the other products have some other priorities, and so if security gets in the way, too bad security loses. Even WhatsApp, which uses the Signal protocol, has other priorities so the actual client software isn't focused on security, they were just happy to get a secure protocol out of the box.
The interesting thing is that years of research hasn't found many things that are just plain impossible securely, there are just a lot of unknowns or places where the secure option is harder. For example when you add a popcorn GIF to a chat Signal proxies this twice, masking your request from the GIF provider (Somebody used a popcorn GIF but the GIF provider doesn't learn who) and also from Signal's own servers (ishanjain28 used a GIF but Signal doesn't learn which one). Most outfits wouldn't bother, who cares about security anyway? But the feature now just works, without unnecessarily giving away information to people you might not trust.
It's possibly because secret chats need to be started interactively (you can't send a message until the other party has come online), and later cannot be shared among different devices (open the same channel in desktop|web|mobile), so it degrades UX.
Signal has only e2e and is able to offer synced chat between phone and desktop - the phone just sends the content to the desktop instance and vice versa.
So Apple will boot an app that gives users the ability to send adult content to other users....?
That is completely ridiculous and if that is the reason Telegram is policing adult content then Telegram is ran by idiots. You can use any IM app to share adult content, there are plenty of groups on Whatsapp sharing porn, there are plenty of groups in iMessage sharing porn, there are porn accounts on Instagram and twitter, hell the entire reason snapchat even exists is so that you can send self destructing nudes to people.
The idea that an app will be banned due to content shared with people using the app, and not uploaded and/or hosted on some public website accessible to anyone (CP on tumblr) sounds completely ridiculous to me.
I disapprove of Apple’s puritanical approach to sex, and agree that this is ridiculous given that the logic applies equally well to literally all apps with groups or arbitrary URL web access, but it does appear to be the sincere justification for this situation.
A thought: I hear that most of the complaints about “adult” TV channels crossing the line from “broadcastable” to “violating obscenity laws” are made by their competitors. Perhaps a similar thing happens here? That at least one of Telegram’s competitors constantly look for reasons to get them blocked from the App Store?
There are other apps that use universal e2e encryption and have not been banned by Apple. Also if someone idi want to use Telegram for seedy purposes, they still can by enabling full security, so it’s pretty clear this excuse is flat out bogus. Otherwise all the same arguments would apply to the other apps.
> So Apple will boot an app that gives users the ability to send adult content to other users....?
Yes they will, if they're on channels (which are considered public).
Not only are Whatsapp groups and Snapchat chats are considered private, those companies have much more clout (and lawyers) than Telegram. Facebook threatening to remove Instagram/Facebook/Whatsapp from iOS would hurt Apple more than Facebook.
Side note: Even lists with no adult content, but referring to adult activities get banned. The creator of an app listing Burning Man events had to remove all references to adult workshops or get the banhammer. Apple's walled garden, Apple's rules (sigh).
- A ton of cam models have private snapchat accounts where they share porn of themselves
- Reddit is basically a cornucopia of porn
- I can subscribe to a porn email list
- Share nudes to a group of friends on Facebook or even SMS
- I can join a hundred Discord channel to satisfy every single weird ass fetish I have,
- I can outright buy porn from Amazon and have it home delivered in 30 minutes.
And that's just from the top of my head. I'm sure you can find a metric ton of other apps that provide their users with easy access to sexual content. None of those apps will be banned for it since that is not the primary purpose of any of these apps. It's simply something that you're able to do with the tools provided. This is like banning all knives just because someone got stabbed.
If your plan is to ban apps that provide access to pornographic content, then you're gonna have to do a lot of banning.
I would also argue that a public blogsite where tagging and discovering new content is one of the key selling points of the platform, is very different from a Telegram channel where you need to specifically know the channel name to even join. As long as Telegram puts forth their best effort to eliminate illegal content from channels, they should be fine.
It might be OK for one app to allow such content and it might be not OK for Telegram. Because Telegram earlier had issues with Apple [1] and if they violate Apple's rules again it would become a convenient excuse to remove Telegram from App Store.
You are trying to find a reasoning in Apple's decisions, but isn't it easier to assume that not all apps are equally welcome in a private app store?
That's ridiculous. There are plenty of Reddit apps out there, for example, and they are just fine.
Telegram folks are just afraid that obscenity laws will be used against them by officially-not-censoring-but-actually-pretty-curious-about-everyone's-communications governments, like UK, France, Italy, and so on. "Oh, you cannot police your underage nudes? Law says we have to do it then, hand over the keys or shut it all down. We will absolutely not use these keys for anything else, honestly, uh-uh..."
That's the charitable reading that doesn't insult anyone's intelligence. I still don't particularly trust Telegram not to cooperate with authorities anyway - any centralized model is doomed to, at some point.
>>Furthermore, they frequently "ban" channels that they deem contain "inappropriate" or "adult" content. Clearly they're reviewed by either humans or AI of some sort. So... I don't like them much.
My understanding was that it isn't Telegram that bans them, but Apple that doesn't let certain channels be shown in the iOS app. Android and the web version show all channels.
Apple doesn’t dig into third party apps to police their forums, chat channels and content. That is very clearly the responsibility of the app developers. More bullcrap excuses from Telegram. Come on. E2e disabled by default, phone numbers exposed by default. Channels stalked by moderators. It’s a joke.
My understanding was if Apple got a report about NSFW/hate speech/whatever channels, then they had to be hidden on the Apple version or else the app gets pulled from the app store.
As to the rest of the app's quality, no idea. I use it on my phone and it seems OK, but I've not really dug into it.
> Also, this means that anyone who has your phone number is told you're on the app and given your username, which you may not want for privacy reasons.
You can disable that behavior in your privacy settings iirc
Because most people are not privacy conscious and just want their messaging app to work (including having people know they are available to message on said platform).
Really. It's a constant fight between Telegram and the not-so-great Russian Firewall. There are actually public channels you can join in Telegram that run a tally of Telegram IPs blocked by Roskomnodzor.
We even had a speaker advertise a telegram channel for everyone I was there with to talk to each other, and the Russian audience laughed to his amusement. I didn't get the joke; kind of funny now.
I still never ended up using it, have too many messaging apps as it is. It's really sad how much that can limit staying in touch with international friends though.
> Furthermore, they frequently "ban" channels that they deem contain "inappropriate" or "adult" content. Clearly they're reviewed by either humans or AI of some sort. So... that makes me uncomfortable.
If you are uncomfortable about content being read by humans -- (they claim) that only happens for public channels (open for anyone to read/search)
Sorry, you are right. That being said, it's a remarkable approach to messaging. E2E, decentralized, can be used over WiFi, Tor, Bluetooth (In case there is a blockage)[1]. Has been pentest reviewed[2] before the first release.
Or to sum up:
"Briar is a messaging app designed for activists, journalists, and anyone else who needs a safe, easy and robust way to communicate. Unlike traditional messaging tools such as email, Twitter or Telegram, Briar doesn't rely on a central server - messages are synchronized directly between the users' devices. If the Internet's down, Briar can sync via Bluetooth or Wi-Fi, keeping the information flowing in a crisis. If the Internet's up, Briar can sync via the Tor network, protecting users and their relationships from surveillance."
Furthermore, they frequently "ban" channels that they deem contain "inappropriate" or "adult" content. Clearly they're reviewed by either humans or AI of some sort. So... that makes me uncomfortable.
Their reason for why you can trust them with encryption keys was "we didn't hand them over to <insert country here> and so they banned us where we could have cooperated and continued to have operating in said country", which seems like a pretty weak argument.
For truly decentralised, private and encrypted communication, I highly recommend matrix+riot.im.
EDIT:
> To support this idea, Pavel Durov claims that Telegram is banned in Russia and Iran, where both governments asked him for encryption keys to access the platform’s messages. Hence for refusing the proposal given by the governments of those countries, the app was banned.
From https://outline.com/BK8f7h
Even if telegram hasn't handed over keys so far, the fact remains that the keys are still controlled by them and tomorrow if they wished they could read/expose/publish/share all "private" communication.
Think of it this way. If Bezos had been using telegram like is recommended in the article and the CEO of telegram wanted to spy on Bezos' chats, he would have totally been able to.
They say that chats don't have e2e by default so that they can be backed up to the cloud [0], but there's no reason why you can't back up encrypted chats and ask the user for a pin and decrypt them on-device.
Furthermore, telegram forces you to link your account with a phone number, and that acts as the primary (or only) form of authentication, opening you up to sim-jacking.
Also, this means that anyone who has your phone number is told you're on the app and given your username, which you may not want for privacy reasons.
[0] https://telegra.ph/Why-Isnt-Telegram-End-to-End-Encrypted-by...