• 0 Posts
  • 1.25K Comments
Joined 1 year ago
cake
Cake day: July 26th, 2023

help-circle



  • It’s missing basic features. The stuff that any normal human would assume it can do it just can’t do. It’s absolutely terrible if you use it in a large organization where you have to speak to multiple different people.

    For one-on-one conversations I guess it’s okay but the moment you try and get anything more complicated than that going on it becomes a nightmare.




  • I do not believe anyone at Microsoft actually uses it because if they did there’s no way in hell that they would have let it be that bad.

    It literally keeps every single conversation you’ve ever had in a big long list on the left, with absolutely no way to organize it, categorize it, order it, or in any way manage it other than deleting history, that’s it you can delete history.











  • There are attacks where rather than trying to crank the password you just capture the hash which is stored in memory somewhere and then using a tool that lets you bypass the standard login inject that hash into the app, totally bypassing the UI interface and the password hashing algorithm.

    The app sees the hash is correct and isn’t aware that the information has been input via nonstandard methods, and so allows access.

    The attacker still doesn’t have a clue what your password was, but they don’t need to. Interestingly enough this means that every time they want access to your data they have to do this because they don’t have a way of actually changing the password or finding out what it was.


  • It’s not destruction of evidence though because without a warrant the information on the phone isn’t evidence, it’s just stuff on a phone. Stuff which is your stuff and you have every right to delete it whenever you want.

    They would actually have to arrest you and acquire a warrant, try it to getting you to unlock the phone for it to be “evidence”.

    The police would have a very hard time in court saying that there was evidence on the phone when they can’t produce any documentation to indicate they had any reason to believe this to be the case. Think about the exchange with the judge.

    “Your honor this individual wiped their phone, thus destroying evidence”

    “Very well, may I see the warrant?”

    “Yeah… Er… Well about that…”

    It doesn’t matter what the police may think you have done, if they don’t go via the process the case will be dismissed on a technicality. They hate doing that but they don’t really have a choice.