Apple Announces 'Groundbreaking' New Security Protocol for iMessage - eviltoast

Apple Announces ‘Groundbreaking’ New Security Protocol for iMessage::Apple today announced a new post-quantum cryptographic protocol for iMessage called PQ3. Apple says this “groundbreaking” and…

  • BearOfaTime@lemm.ee
    link
    fedilink
    English
    arrow-up
    10
    arrow-down
    2
    ·
    9 months ago

    So are they going to use Perfect Forward Secrecy with this protocol? Because that’s their big problem.

    • bamboo@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      32
      ·
      9 months ago

      the symmetric ratchet, protects older messages in a conversation to achieve forward secrecy. For every message, we derive a per-message encryption key from the current session key. The current session key itself is then further derived into a new session key, ratcheting the state forward. Each message key is deleted as soon as a corresponding message is decrypted, which prevents older harvested ciphertexts from being decrypted by an adversary who is able to compromise the device at a later time, and provides protection against replayed messages. This process uses 256-bit keys and intermediate values, and HKDF-SHA384 as a derivation function, which provides protection against both classical and quantum computers.

      https://security.apple.com/blog/imessage-pq3/