Impersonating users of 'protest' app Bridgefy was as simple as sniffing Bluetooth handshakes for identifiers

David Austin

You promoted your app as being "secure", which caused the (Admittedly unintended) side effect of protesters - a group that have a lot to lose up to and including their freedom if you get security and privacy wrong - misplacing their trust in you.

You were told about these defects in April, didn't publicly address them until August, and won't have a baseline secure version that includes such revolutions as "All payloads will be encrypted" ready until September

What you have done is borderline irresponsible.

