On cryptographic security of end-to-end encrypted connections in WhatsApp and Telegram messengers

  • Zapechnikov S
  • Kozhukhova P
N/ACitations
Citations of this article
7Readers
Mendeley users who have this article in their library.

Abstract

The aim of this work is to analyze the available possibilities for improving secure messaging with end-to-end connections under conditions of external violator actions and distrusted service provider. We made a comparative analysis of cryptographic security mechanisms for two widely used messengers: Telegram and WhatsApp. It was found that Telegram is based on MTProto protocol, while WhatsApp is based on the alternative Signal protocol. We examine the specific features of messengers implementation associated with random number generation on the most popular Android mobile platform. It was shown that Signal has better security properties. It is used in several other popular messengers such as TextSecure, RedPhone, GoogleAllo, FacebookMessenger, Signal along with WhatsApp. A number of possible attacks on both messengers were analyzed in details. In particular, we demonstrate that the metadata are poorly protected in both messengers. Metadata security may be one of the goals for further studies.

Cite

CITATION STYLE

APA

Zapechnikov, S. V., & Kozhukhova, P. O. (2017). On cryptographic security of end-to-end encrypted connections in WhatsApp and Telegram messengers. Bezopasnost Informacionnyh Tehnology, (4), 35–43. https://doi.org/10.26583/bit.2017.4.04

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free