XSF Discussion - 2023-07-20

  1. MattJ

    https://security.googleblog.com/2023/07/an-important-step-towards-secure-and.html?m=1 > we intend to build MLS into Google Messages and support its wide deployment across the industry by open sourcing our implementation in the Android codebase.

  2. Daniel

    Google messages is the SMS / RCS app, no?

  3. root

    > Google messages is the SMS / RCS app, no? I think so?

  4. Daniel

    So they want to put that into RCS which literally nobody uses

  5. MattJ


  6. Fishbowler

    When one Android user texts another in a country where SMS is still inexplicably popular, RCS happens accidentally. Are there other cases I've missed?

  7. singpolyma

    Messages is Google's play vs iMessage and where all of their messaging efforts go these days. One of their attempted selling points with it is that it uses standards (sms, RCS, etc) unlike iMessage. MLS seems like a natural fit therefore as a standardized e2ee system

  8. singpolyma

    If MLS also goes into AOSP as that statement implies, it'll be a big win for any app on Android wanting to use it for their e2ee I guess

  9. MSavoritias fae.ve

    so that mls based omemo sounds more desirable

  10. robertooo

    > MLS also goes into AOSP Perfect place for a backdoor.

  11. singpolyma

    Don't really need a backdoor since Google can already read every message from every app no matter what crypto is used if they want to. On their ROMs at least