Phoenix R&D's Avatar

Phoenix R&D

@phoenixrd.bsky.social

More end-to-end-encryption. More privacy.

52 Followers  |  2 Following  |  21 Posts  |  Joined: 30.07.2023  |  1.702

Latest posts by phoenixrd.bsky.social on Bluesky

Preview
Combining TLS and MLS: An experiment We did a thing. We combined TLS and MLS into a hybrid protocol. Of course, when things get serious, full names are in order: We combined the Transport Layer Security protocol and the Messaging Layer S...

We did a thing. We combined TLS and MLS into a hybrid protocol.

Why? Because sometimes you need connections that last for weeks, quantum-resistant security, or simpler certificates.

The experiment is open-source. Here's the story ๐Ÿ‘‡

02.07.2025 08:06 โ€” ๐Ÿ‘ 3    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 2
Preview
Phoenix R&D (Remote): Freelance Junior Product Manager (all genders, part-time) Phoenix R&D GmbH has a remote job opening for Freelance Junior Product Manager (all genders, part-time) (published: 15.05.2025). Apply now or check the other available jobs.

We are #hiring a Freelance Junior Product Manager to help us build the next generation of private & secure messaging.

If youโ€™re interested in joining our team, please apply today!
For friends of secure messaging ๐Ÿฅท, please share our post with potential candidates.

15.05.2025 09:51 โ€” ๐Ÿ‘ 5    ๐Ÿ” 5    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Happy to announce that Iโ€™ll be speaking at @passthesaltcon.bsky.social on July 2nd!

Iโ€™ll discuss end-to-end encryption with MLS, the growing MLS ecosystem, the MIMI IETF working group, and metadata protection.
Itโ€™s my first time attending, and I look forward to connecting with the French community!

14.05.2025 08:08 โ€” ๐Ÿ‘ 2    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Information on RFC 9750 ยป RFC Editor

The MLS Architecture document โ€“ the companion document to the MLS Protocol document โ€“ is now finally available as RFC 9750:

www.rfc-editor.org/info/rfc9750

22.04.2025 21:08 โ€” ๐Ÿ‘ 7    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

MLS is efficient, but what does that mean in practice?

This paper sheds some light on the question by building a test framework for OpenMLS.

arxiv.org/pdf/2502.18303

27.02.2025 00:18 โ€” ๐Ÿ‘ 5    ๐Ÿ” 4    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

We are happy @opentechfund.bsky.social is supporting our mission to bridge the gap in the secure messenger space by developing a new technological foundation for secure and private messaging that combines functional, privacy, and security features in a way that addresses a variety of threat models.

21.01.2025 13:17 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Phoenix R&D More end-to-end encryption. More privacy. Building messaging technology thatโ€™s raising the bar.

A good part of the team joined the #38C3 which was a good way to end the year. 2025 will be an exciting year for us, we will share updates about our work along the way. You can follow us here or subscribe to our blog at blog.phnx.im/#/portal/signup.

(๐Ÿงต2/2)

๐Ÿ“ธ Leah Oswald (CC BY-SA 2.0)

07.01.2025 10:05 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Happy New Year! Phoenix R&D enters 2025 with some good news! Over the last few months we have doubled our team size, which will help us shorten our development cycles.

We are excited about the new research projects. These projects also allow us to further diversify our sources of income.

(๐Ÿงต1/2)

07.01.2025 10:05 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post image

This weekend, @raphaelrobert.bsky.social and @julianmair.com are joining the #GlobalGathering.

We will be hosting a booth and circle on Saturday to discuss the current state of privacy preserving and decentralized messengers.

We look forward to seeing you at there! Feel free to ping us!

26.09.2024 12:21 โ€” ๐Ÿ‘ 3    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1
Preview
Jobs at Phoenix R&D GmbH | JOIN Jobs at Phoenix R&D GmbH. Browse all open positions and become part of our growing team! We are currently looking for additions to our company. Apply today!

We #hiring a full-time and a freelance Senior Rust Engineer to help us build the next generation of private & secure messaging.
If youโ€™re interested in joining our team, please apply today! For friends of secure messaging ๐Ÿฅท, please share our post with potential candidates.

04.09.2024 10:50 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 2

- Prospective integration in platforms, like Firefox and Android
- Metadata protection in MLS
- Using MLS as a general purpose key establishment mechanism beyond messaging in e.g.: video conferencing, password managers, hypervisors, enclaves, etc.

(๐Ÿงต2/2)

28.03.2024 09:25 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Raphael Robert standing on RWC stage

Raphael Robert standing on RWC stage

We attended the Real World Crypto Symposium in Toronto ๐Ÿ‡จ๐Ÿ‡ฆ where @raphaelrobert.bsky.social talked about how far MLS has come since RWC 2019.
Highlights:
- Post-quantum resistance and how easy it is to upgrade from current schemes
- Deployment in existing products like Webex and Discord
(๐Ÿงต1/2)

28.03.2024 09:24 โ€” ๐Ÿ‘ 4    ๐Ÿ” 2    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 1
Preview
Interoperabilitรคt: WhatsApp soll bald mit anderen Messengern reden kรถnnen โ€“ netzpolitik.org Wegen neuer Regeln in der EU muss WhatsApp sich so รถffnen, dass die Nutzer:innen auch mit Kontakten auf anderen Messengern kommunizieren kรถnnen. Nun hat WhatsApp erste Details verraten, wie das gehen soll. Doch grundsรคtzliche Probleme bleiben.

WhatsApp shared first details on how they will comply with the #DMA. We are critical of the Signal protocol, as there has never been a complete specification that allows secure implementation of the protocol. This was one of the main reasons to develop MLS.
Our conversation with @netzpolitik.org๐Ÿ‘‡

09.02.2024 09:25 โ€” ๐Ÿ‘ 4    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
RFC 9420 or how to scale end-to-end encryption with Messaging Layer Security They call it RFC 9420, we say MLS: A new IETF standard for end-to-end encryption was published in July and brings large improvements in p...

In case you missed our talk about Messaging Layer Security (MLS) at #37C3, you can re-watch it now.

MLS brings substantial improvements in performance and security compared to existing protocols.

#securemessaging #encryption #e2ee #messaginglayersecurity

09.01.2024 09:35 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Raphael presenting MLS at 37C3

Raphael presenting MLS at 37C3

We ended 2023 with a talk at #37C3. @raphaelrobert.bsky.social and Konrad presented Messaging Layer Security (MLS).
The room was packed and some people couldn't attend โ€“ luckily the talk is now online.
๐Ÿฟ media.ccc.de/v/37c3-12064...

#securemessaging #encryption #e2ee #messaginglayersecurity

03.01.2024 09:25 โ€” ๐Ÿ‘ 7    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Lecture: RFC 9420 or how to scale end-to-end encryption with Messaging Layer Security | Friday | Sch...

Today at #37c3, 3:45pm, Konrad and I will give a talk in hall Zuse about Messaging Layer Security (MLS).

They call it RFC 9420, we say MLS: A new IETF standard for end-to-end encryption, bringing improvements in performance and security.

๐Ÿ‘‰ fahrplan.events.ccc.de/congress/202...

29.12.2023 12:25 โ€” ๐Ÿ‘ 5    ๐Ÿ” 4    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@julianmair.com will be buzzing through the corridors and can be reached via DECT at 4109. If you want to talk about secure messaging or E2EE, let us know!

26.12.2023 13:37 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Picture from the train with a computer on the table with an open presentation: "RFC 9420 - or how to scale end-to-end encryption with Messaging Layer Security (MLS)".

Picture from the train with a computer on the table with an open presentation: "RFC 9420 - or how to scale end-to-end encryption with Messaging Layer Security (MLS)".

We are very excited to be at #37c3 in Hamburg after a long pandemic break. On day 3 (29.12., 3:45pm), @raphaelrobert.bsky.social and Konrad will give a talk on โ€œRFC 9420 โ€“ or how to scale end-to-end encryption with Messaging Layer Security (MLS)โ€
๐Ÿ‘‰ fahrplan.events.ccc.de/congress/202...

26.12.2023 13:36 โ€” ๐Ÿ‘ 4    ๐Ÿ” 2    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
On the privacy of push notifications Push notifications are a mechanism through which applications can send and display notifications to users of smartphones. The infrastructure that drives these notifications in the background is a comp...

After @netzpolitik.orgโ€™s recent investigation into surveillance through push notifications, many people have been concerned about how their own privacy is affected when using messengers anonymously.
In this blog post we examined the problem and what to do about it. Check it out ๐Ÿ‘‡

20.12.2023 15:49 โ€” ๐Ÿ‘ 4    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
On the privacy of push notifications Push notifications are a mechanism through which applications can send and display notifications to users of smartphones. The infrastructure that drives these notifications in the background is a comp...

Check out our blog post where we examine the push notification problem and address potential misconceptions!

In the wake of recent reports on surveillance via push notifications, many people have been confused about it and how it affects their own privacy when using messengers anonymously.

20.12.2023 11:01 โ€” ๐Ÿ‘ 2    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1

First impactful measure following last week's splash about push notification surveillance:
www.reuters.com/technology/a...

13.12.2023 14:01 โ€” ๐Ÿ‘ 2    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Let's make this crystal clear: If you think you are anonymous because you
- used a throwaway number for Signal
- picked a completely random username for Wire/Matrix
- were given a random username with Threema/Session

YOU ARE NOT! You can be identified by the push tokens.

07.12.2023 09:48 โ€” ๐Ÿ‘ 7    ๐Ÿ” 6    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 1
Preview
Push-Dienste: Behรถrden fragen Apple und Google nach Nutzern von Messenger-Apps โ€“ netzpolitik.org Smartphone-Apps verschicken Benachrichtigungen รผber Apple und Google, auch vermeintlich sichere Messenger. Damit kรถnnen Behรถrden Nutzer-Daten bei Smartphone-Firmen abfragen. Bis jetzt verweigern al...

This has been bothering me for a while and I'm glad there's finally more discussion about this. Push notifications are a problem for privacy, we need more transparency and changes in the way they work.

netzpolitik.org/2023/push-di...

06.12.2023 19:08 โ€” ๐Ÿ‘ 2    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
RFC 9420 aka Messaging Layer Security (MLS) - An Overview Messaging Layer Security has been published. MLS is the first standardized, fully specified, freely accessible end-to-end encryption protocol.

These contributions from academia have been particularly useful in mitigating security issues before deploying in production environments.

New to MLS?
Check out our blog post for a high-level overview of MLS, its practical applications, and why it matters.

06.12.2023 08:55 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
USENIX Security '23 - TreeSync: Authenticated Group Management for Messaging Layer Security
USENIX Security '23 - TreeSync: Authenticated Group Management for Messaging Layer SecurityThรฉophile Wallez, Inria Paris; Jonathan Protzenko, Microsoft Resea... USENIX Security '23 - TreeSync: Authenticated Group Management for Messaging Layer Security

Numerous cryptography experts analyzed the Messaging Layer Security protocol. Thรฉophile Wallez presented at the USENIX Security '23 conference the contributions of Jonathan Protzenko, Benjamin Beurdouche, Karthikeyan Bhargavan, and himself and why it is not a good idea to roll your own crypto.

06.12.2023 08:54 โ€” ๐Ÿ‘ 1    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
photorealistic brass padlock broken into many pieces over a background of the EU flag

photorealistic brass padlock broken into many pieces over a background of the EU flag

After #chatcontrol, lawmakers are now trying to mandate government-controlled certificates in browsers. Along with 400 experts and researchers from around the world, our Head of Research Konrad Kohbrok has signed an open letter to abandon the #eIDAS plans.
eidas-open-letter.org

03.11.2023 15:33 โ€” ๐Ÿ‘ 1    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 2
Dicke Bretter, diesmal รผber Ende-zu-Ende-Verschlรผsselung und das Protokoll Messaging Layer Securit... Wie ein technischer Standard entsteht, der Ende-zu-Ende-Verschlรผsselung fรผr Millionen Smartphones ermรถglicht

Direkt zur Podcast-Episode geht es hier: chaosradio.de/cr284-dicke-...

31.10.2023 14:07 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Messaging und Gruppen-Chats: Wie die IETF Sicherheit fรผr Milliarden Menschen schafft โ€“ netzpoliti... Wie kรถnnen Gruppen-Chats massentauglich sein und zugleich hรถchsten Sicherheitseigenschaften genรผgen? Wie lรคsst sich technisch absichern, dass niemand Drittes mitlesen kann? Darรผber sprechen wir m...

@raphaelrobert.bsky.social hat im Chaosradio mit Constanze Kurz von @netzpolitik.org und Elisa darรผber gesprochen, welche dicken Bretter er mit anderen bei der IETF gebohrt hat und wie er Ende-zu-Ende-Verschlรผsselung fรผr alle zugรคnglich machen mรถchte.
Hรถrt rein ๐ŸŽง

31.10.2023 14:06 โ€” ๐Ÿ‘ 4    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0