www-new/content/tech-talks/off-the-record-messaging-us...

1.6 KiB

index title presentors thumbnails links
43 Off-the-Record Messaging: Useful Security and Privacy for IM
Ian Goldberg
small large
http://mirror.csclub.uwaterloo.ca/csclub/ian-goldberg-otr-thumb-small.jpg http://mirror.csclub.uwaterloo.ca/csclub/ian-goldberg-otr-thumb-large.jpg
file type
http://mirror.csclub.uwaterloo.ca/csclub/ian-goldberg-otr.avi XviD
file type
http://mirror.csclub.uwaterloo.ca/csclub/ian-goldberg-otr.ogg Ogg/Theora
file type
http://mirror.csclub.uwaterloo.ca/csclub/ian-goldberg-otr.mp4 MP4
file type
http://mirror.csclub.uwaterloo.ca/csclub/ian-goldberg-otr.mpg MPG

Instant messaging (IM) is an increasingly popular mode of communication on the Internet. Although it is used for personal and private conversations, it is not at all a private medium. Not only are all of the messages unencrypted and unauthenticated, but they are all routedthrough a central server, forming a convenient interception point for an attacker. Users would benefit from being able to have truly private conversations over IM, combining the features of encryption, authentication, deniability, and forward secrecy, while working within their existing IM infrastructure.

In this talk, I will discuss "Off-the-Record Messaging" (OTR), a widely used software tool for secure and private instant messaging. I will outline the properties of Useful Security and Privacy Technologies that motivated OTR's design, compare it to other IM security mechanisms, and talk about its ongoing development directions.