this post was submitted on 29 Jan 2025
111 points (98.3% liked)

Asklemmy

44615 readers
913 users here now

A loosely moderated place to ask open-ended questions

Search asklemmy πŸ”

If your post meets the following criteria, it's welcome here!

  1. Open-ended question
  2. Not offensive: at this point, we do not have the bandwidth to moderate overtly political discussions. Assume best intent and be excellent to each other.
  3. Not regarding using or support for Lemmy: context, see the list of support communities and tools for finding communities below
  4. Not ad nauseam inducing: please make sure it is a question that would be new to most members
  5. An actual topic of discussion

Looking for support?

Looking for a community?

~Icon~ ~by~ ~@Double_A@discuss.tchncs.de~

founded 5 years ago
MODERATORS
 

Greetings!

A friend of mine wants to be more secure and private in light of recent events in the USA.

They originally told me they were going to use telegram, in which I explained how Telegram is considered compromised, and Signal is far more secure to use.

But they want more detailed explanations then what I provided verbally. Please help me explain things better to them! ✨

I am going to forward this thread to them, so they can see all your responses! And if you can, please cite!

Thank you! ✨

(page 2) 24 comments
sorted by: hot top controversial new old
[–] Fake4000@lemmy.world 6 points 1 day ago

The fact that telegram operates in a country that scores 18/100 on global freedom and 30/100 on internet freedom.

https://freedomhouse.org/country/united-arab-emirates

[–] flux@lemmy.world 5 points 1 day ago* (last edited 1 day ago)

I'm not an expert but I'll use this analogy.

Signal is you meeting a person who gives you secure devices. This person then can only ever provide the following information to someone else. From Signal website. "The phone number. the date and time a user registered with Signal and the last date of a user's connectivity to the Signal service." Only your device and your friends device can read the messages. It goes direct from you to them. The only way to read any message is having the device.

Telegram is like you making an agreement with another person. By default messages are encrypted but go to the other person for decryption before going to your friends device. This other person Telegram has and will give the phone number, messages, serverlogs, dates to legal entities by request. Now there is an option to bypass this person by using "secret chats" . This will make it so the message is directly from your device to their device. Telegram can't read messages but as I understand they can still potentially have metadata, server logs of when messages are sent, how many, what device they are sent from. Bottomline is they have activity logs Signal can only provide the date you signed up and the last time you used the app. Not only that but just being on the Telegram platform which allows bots makes you a target. Bots will contact you like spam. Sending you harmful links, etc.

Almost every security person I've ever read says. "I use Signal". Why wouldn't you go with the service that by default has end to end encryption? Telegram makes it a option you have to select for each person. Both use your phone number.

These are very basic descriptions. I'm Happy to remove or update if I got anything wrong.

More signal encryption info

[–] gazby@lemmy.dbzer0.com 2 points 1 day ago (4 children)

I won't be popular in this thread, but I don't fight this battle anymore. Telegram beats Signal in virtually every aspect of user experience. If a person is unlikely to be convinced that e2ee is worth taking all the UX hits, I don't try anymore.

[–] Zak@lemmy.world 2 points 1 day ago (1 children)

I keep seeing this claim, but I may be too much of a computer nerd to notice when using them both. What does Telegram do better and how?

[–] gazby@lemmy.dbzer0.com 2 points 1 day ago* (last edited 1 day ago) (1 children)

I may be too much of a computer nerd to notice when using them both

That's probably true of just about everyone on Lemmy.

What does Telegram do better and how?

User experience, like I said. How many less technically inclined people do you know who will understand why they have no message history in Signal after moving devices? Yes, they could have kept it if they'd had backups enabled and moved the archive over and restored from it, but it's too late now, their entire contact list has been notified that their safety number's changed (another aspect we get to attempt to explain). It's a bummer.

load more comments (1 replies)
load more comments (3 replies)
[–] Aria@lemmygrad.ml -3 points 1 day ago (3 children)

Signal is USA government approved. Definitely don't trust it. Use Matrix.

[–] Hadriscus@lemm.ee 1 points 1 day ago (1 children)
[–] Aria@lemmygrad.ml 0 points 1 day ago (4 children)

Sure. You can trust your own fork. Just don't use the official repos or their servers. The client isn't where the danger is.

load more comments (4 replies)
load more comments (2 replies)
[–] Lawn_and_disorder@hexbear.net -1 points 1 day ago (1 children)

Use signal and matrix. Telegram is as people pointed out usually unencrypted. Also unverifieble in its code . Signal is easy uses but phonenumbers ( you can register a fake one however) but always EE2E. Matrix does not require a number at all. But definatly is a bit harder to get started with and are therefore harder to get your contact to use it.

[–] toastal@lemmy.ml 1 points 1 day ago (2 children)

If we care about the planet & sustainability, we would not be recommending a eventual-consistency model for chat communications. Matrix’s protocol is so wasteful & expensive.

load more comments (2 replies)
[–] TokenBoomer@lemmy.world -2 points 1 day ago

You don’t have to learn Morse code.

load more comments
view more: β€Ή prev next β€Ί