cross-posted from : https://lemmy.zip/post/71321898
Netzpoltik details that police are able to gain access in this way either through physical access to someone’s phone or by intercepting verification codes via a state-sanctioned phishing attack or intercepting SMS messages via telephone surveillance


the only time they mention signal is when they explain they used linked devices to obtain signal messages. not SMS! if you lose your phone or whatever, and log in on a new device, your messages won’t magically reappear, they are lost, and all your contacts get a warning that your safety numbers have changed.
simplex messages stay on your phone. you can’t switch phones and have them follow you because there’s no way to sign in because there’s no account for you to sign in with.
simplex doesn’t require a phone number or email. the trust is made between users, keeping users safer because it requires physical access between users. sure you can share your code over SMS or otherwise, but that’s a user issue that breaks usage policy, not a problem with the software.
I think that’s what I said with signal too. the exception is you can have your messages follow you, if you still have the old phone, because the app supports transferring the data.
if it can transfer the data, there’s more opportunity to successfully steal it.
convenience will always negate security.
I have bad news for you, simplex also has this “security flaw”: https://simplex.chat/docs/guide/managing-data.html