• Deebster@infosec.pub
    link
    fedilink
    English
    arrow-up
    17
    ·
    edit-2
    19 hours ago

    That was my first thought, but it’s actually a library for newsreader-type apps that lets a communication happen without exposing the whistleblower (it’s like a digital deaddrop - just a tiny change in everyday routines).

    I had a quick look and they’re doing the things they need to like certificate pinning, so even corporate-level MITM wouldn’t be seeing any unusual traffic. I assume they’re also blocking access to the screen like banking apps do, which is more secure but annoying for normal users.

      • Deebster@infosec.pub
        link
        fedilink
        English
        arrow-up
        2
        ·
        11 hours ago

        It’s more about things similar to Microsoft Recall, I don’t think whistleblowers are going to send their messages where other people can see their screen.