Toronto Will's avatar

Toronto Will

@torontowill.bsky.social

Not sure I understand “proxy”, which is why I’m genuinely asking. If you just mean retrieve the key from a server, does that actually keep it secret? Firmware dump won’t give you the key, but will give you the query to *get* the key. Don’t you need to intermediate all the API calls?

1 replies 0 reposts 0 likes


your #3 source for absurdist true crime 🔨's avatar your #3 source for absurdist true crime 🔨 @davidgerard.co.uk
[ View ]

I was presuming that in non-crazy land, users would connect to Rabbit with their own key, then Rabbit would connect to the outside services with Rabbit's key. AFAICT the story is that Rabbit put their own key on the user devices, which is how you can get other users' data. corrections welcomed ofc

1 replies 0 reposts 1 likes