USENIX Security '23 – Three lessons from Threema: analysis of a secure messenger

USENIX Security '23 – Three lessons from Threema: analysis of a secure messenger

HomeUSENIXUSENIX Security '23 – Three lessons from Threema: analysis of a secure messenger
USENIX Security '23 – Three lessons from Threema: analysis of a secure messenger
ChannelPublish DateThumbnail & View CountDownload Video
Channel AvatarPublish Date not found Thumbnail
0 Views
USENIX Security '23 – Three lessons from Threema: analysis of a secure messenger

Kenneth G. Paterson, Matteo Scarlata and Kien Tuong Truong, ETH Zurich

We provide a comprehensive cryptographic analysis of Threema, a Swiss-based encrypted messaging application with over 10 million users and 7,000 enterprise customers. We present seven different attacks on the protocol in three different threat models. We discuss the impact and solutions to our attacks, all of which have been responsibly disclosed and patched to Threema. Finally, we draw broader lessons for developers of secure protocols.

View the full USENIX Security '23 program at https://www.usenix.org/conference/usenixsecurity23/program

Please take the opportunity to connect and share this video with your friends and family if you find it helpful.