There are chances for improving those attack vectors: I2P connections between relays and between clients solves a good chunk, sending random noise every so often makes it even harder to know when to track.

Clients don't need to talk only with main relays, they can ping hundreds for messages from an npub.

What I don't see are realistic ways to improve SimpleX. Where are the hundreds of relays run by volunteers with dozens of relay implementations and dozens of clients?

They don't exist, and won't exist. We both know that. NOSTR is still our best shot that can, and will be improved.

Reply to this note

Please Login to reply.

Discussion

I'm speaking to the current situation. Were moving toward a better solution, but out of the box I find it hard to imagine nostr currently, and even in the near future is a more secure solution to PRIVATE messaging than SimpleX and I read the white paper a while ago and don't remember most of it XD

I've read the protocol of SimpleX too, but maybe my previous posts were not clear enough: I'm not saying the encryption is weak.

I'm saying it is really easy to feed spoofed apps to target users that bypasses completely any algorithm. You don't even need 5 USD.