- SecureIM
SecureIM is an
encryption system built into the Trillian Instant Messenger Client.It encrypts messages from user-to-user, so no passively observing node between the two is supposedly able to read the encrypted messages. SecureIM does not authenticate its messages, and therefore it is susceptible to active attacks including simple forms of
man in the middle .According to
Cerulean Studios , the makers of Trillian, SecureIM enciphers messages with 128-bit Blowfish encryption. It only works with theOSCAR protocol and if both chat partners use Trillian.However, the key used for encryption is established using a Diffie-Hellmann Key Exchange which only uses a 128 bit prime number as modulus, which is extremely insecure and can be broken within minutes on a standard pc [ [http://www.mail-archive.com/cryptography@metzdowd.com/msg08129.html Trillian Secure IM ] ] .
References
See also
*
Instant messaging
*Off-the-Record Messaging
Wikimedia Foundation. 2010.