'Trust it': Results of Signal's first formal crypto analysis are in

Joe Harrison

Complexity is the enemy

The review implies that the app's internals with its mutating keys and so on are just too hard to understand. This doesn't sound good to me because effective crypto is already (as far as we know) a solved problem even using relatively simple algorithms and key material. Somebody understands how this app works and what's to stop them putting in their own unfindable backdoor.

