all InfoSec news
Security Analysis of Threema
Security Boulevard securityboulevard.com
A group of Swiss researchers have published an impressive security analysis of Threema.
We provide an extensive cryptographic analysis of Threema, a Swiss-based encrypted messaging application with more than 10 million users and 7000 corporate customers. We present seven different attacks against the protocol in three different threat models. As one example, we present a cross-protocol attack which breaks authentication in Threema and which exploits the lack of proper key separation between different sub-protocols. As another, we demonstrate a compression-based …
academic papers analysis application attack attacks authentication corporate cryptanalysis customers encrypted encrypted messaging encryption endpoint exploits identity & access key messaging protocol protocols researchers security security analysis side-channel attacks threat threat models threema vulnerabilities