Jan. 19, 2023, 12:21 p.m. | Bruce Schneier

Schneier on Security www.schneier.com

A group of Swiss researchers have published an impressive security analysis of Threema.


We provide an extensive cryptographic analysis of Threema, a Swiss-based encrypted messaging application with more than 10 million users and 7000 corporate customers. We present seven different attacks against the protocol in three different threat models. As one example, we present a cross-protocol attack which breaks authentication in Threema and which exploits the lack of proper key separation between different sub-protocols. As another, we demonstrate a compression-based …

academic papers analysis application attack attacks authentication corporate cryptanalysis customers encrypted encrypted messaging encryption exploits key messaging protocol protocols researchers security security analysis side-channel attacks threat threat models threema vulnerabilities

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Security Engineering Professional

@ Nokia | India

Cyber Intelligence Exercise Planner

@ Peraton | Fort Gordon, GA, United States

Technical Lead, HR Systems Security

@ Sun Life | Sun Life Wellesley

SecOps Manager *

@ WTW | Thane, Maharashtra, India

Consultant Appels d'Offres Marketing Digital

@ Numberly | Paris, France