Beeper reverse-engineered iMessage to bring blue bubble texts to Android users | TechCrunch
techcrunch.com
external-link
The push to bring iMessage to Android users today adds a new contender. A startup called Beeper, which had been working on a multi-platform messaging

Beeper reverse-engineered iMessage to bring blue bubble texts to Android users::The push to bring iMessage to Android users today adds a new contender. A startup called Beeper, which had been working on a multi-platform messaging

removed by mod

@felixwhynot@lemmy.world
link
fedilink
English
7
edit-2
10M

Seems like Beeper will see the cleartext of the replies, though, since they send the notifications via BPNs, right?

[edit: thanks for the replies. I see now the footnote on their BPNs diagram: “Push notification does not contain message contents” so it seems like the answer is “no they will not”]

No, with this new app messages are encrypted between you and Apple’s iMessage servers using iMessage encryption more or less the same way an iPhone does.

The push service simply notifies your device it has a message waiting, no message content passes through Beeper servers.

Lantern
link
fedilink
English
1010M

Assuming that it’s actually reverse engineered, this is great news. If not, there’s a massive lawsuit brewing.

@pastabatman@lemmy.world
link
fedilink
English
710M

It still needs Apple’s servers, which tells me they will try and find a way to shut it down. Now that Apple is going to implement RCS, I care a lot less about this.

asudox
link
fedilink
English
-210M

deleted by creator

@pastabatman@lemmy.world
link
fedilink
English
210M

I don’t, I want modern messaging features like typing indicators, read receipts, and videos that have more than 10 pixels total

@Unreliable@lemmy.ml
link
fedilink
English
1
edit-2
10M

deleted by creator

@poopkins@lemmy.world
link
fedilink
English
110M

What exactly do you mean with it requiring Apple’s servers? All of the services Beeper integrates with require it to communicate with the servers those services belong to.

@Fades@lemmy.world
link
fedilink
English
-4
edit-2
10M

In exchange for security loss, is it really worth it?

Edit: the downvotes are very expected. You people need to lean about why this is important

https://www.androidauthority.com/beeper-app-opinion-3345142/

First, the elephant in the room needs to be addressed: security. In Beeper’s start-up guide, the first thing you see is a huge alert box: “Beeper may be less secure than using encrypted chat apps by themselves.” Fundamentally, there’s no way to fix this. To use any of the chat apps, you need to link Beeper to that service using your credentials, which is inherently more insecure than logging into the app directly. Beeper is quick to defend itself by pointing out its robust privacy policy, its ethical business practices with a user-centered focus, and its use of end-to-end encryption (E2EE). However, that doesn’t protect your credentials from hackers that could gain access to Beeper and send your grandma a message through WhatsApp pretending to be you and asking to wire $1,000 to an account in China.

More in depth: https://www.reddit.com/r/beeper/comments/13hhx9e/transient_key_retention_a_suggestion_to_solve/?rdt=61709

@drislands@lemmy.world
link
fedilink
English
210M

What security loss, mate?

@Fades@lemmy.world
link
fedilink
English
1
edit-2
10M

These: https://www.androidauthority.com/beeper-app-opinion-3345142/

First, the elephant in the room needs to be addressed: security. In Beeper’s start-up guide, the first thing you see is a huge alert box: “Beeper may be less secure than using encrypted chat apps by themselves.” Fundamentally, there’s no way to fix this. To use any of the chat apps, you need to link Beeper to that service using your credentials, which is inherently more insecure than logging into the app directly. Beeper is quick to defend itself by pointing out its robust privacy policy, its ethical business practices with a user-centered focus, and its use of end-to-end encryption (E2EE). However, that doesn’t protect your credentials from hackers that could gain access to Beeper and send your grandma a message through WhatsApp pretending to be you and asking to wire $1,000 to an account in China.

More in depth: https://www.reddit.com/r/beeper/comments/13hhx9e/transient_key_retention_a_suggestion_to_solve/?rdt=61709

@drislands@lemmy.world
link
fedilink
English
210M

My understanding is that this absolutely applies to their previous iterations, but not this – there’s no authenticating with your Apple ID, for example. It’s sending and receiving iMessage data directly between the Apple servers and your device, now.

@Stephen304@lemmy.ml
link
fedilink
English
310M

That’s about beeper, not beeper mini. Mini was just launched, that’s older information that only applies to the MITM version (beeper which is now beeper cloud).

Beeper mini talks directly to the services you use, no MITM, which is why they plan on adding more services to mini until it can replace the older Beeper (cloud).

Create a post

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


  • 1 user online
  • 186 users / day
  • 583 users / week
  • 1.37K users / month
  • 4.49K users / 6 months
  • 1 subscriber
  • 7.41K Posts
  • 84.7K Comments
  • Modlog