It’s time to stop using Blabber.im
The abandoned fork of #Conversations_im has a critical security issue: attackers can bypass STARTTLS negotiation, resulting in an unencrypted connection to a fake server. This vulnerability is similar to the STARTLS attack discovered in various email clients¹
Fixed in Conversations 2.13.1 (Feb 2024)
Please migrate to Conversations immediately! It's free on Google Play until the end of the year and always free on #fdroid
@daniel
Thanks for sayin'. Directly deinstalled blabber.