Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

(never tried cabal, it could be worse)

tox was accused of having a poor crypto implementation / playing silly buggers with libsodium. I've tried it on android, works ok but most apps at the time seemed older. not sure where tox stands re community liveliness but its certainly a good start on p2p messaging, my claims notwitshtanding.



>tox was accused of having a poor crypto implementation

The actual flaw: If _your_ *private* key is stolen, your friends can be impersonated to you.

Hardly worth the infamy.

There's a bug open on this, the solution is known, the opportunity for a fix, and when it will be made live, will be the next time a protocol break ("flag day") is necessary for other reasons.


I will be trying tox again after that event then.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: