8 jul. 2024

I did not expect the ChatGPT app to encrypt local chat history, but I *did* assume Signal’s Mac app would store its encryption key in the keychain 🤨

Apparently it’s also trivial to clone a session from local files and receive some of the user’s messages 😨 And, sure, you’d notice that some messages on your phone aren’t reaching your computer, but you’d likely just assume it’s a technical issue rather than your security being compromised.

Michael Tsai - Blog - Signal for Mac’s “Encrypted” Database

