Confide

Last updated
Confide
Developer(s) Confide, Inc.
Initial release2013
Operating system Android, iOS, Windows, macOS
Type Encrypted instant messaging
Website getconfide.com

Confide is an encrypted instant messaging application for most major operating systems. [1] It was first released in 2013, on iOS, and is known for its self-destructing messaging system that deletes messages immediately after reading. [2] The platform offers both free and paid features for individuals and businesses.

Contents

In 2017, the news outlet Axios reported that it had gained popularity among, “numerous senior GOP operatives and several members of the Trump administration.” [3] After receiving more media attention, there were concerns about the security of the app, as it is closed source and an independent review by Kudelski Security indicated it may use an older, less secure version of OpenSSL. [4] The app's first full security audit found multiple critical vulnerabilities including impersonating another user by hijacking an account session or by guessing a password, learning the contact details of Confide users, becoming an intermediary in a conversation and decrypting messages, and potentially altering the contents of a message or attachment in transit without first decrypting it. [5] WIRED reported that the encryption in Confide was based on the "PGP standard," and used Transport Layer Security. [6]

In January 2018, Confide, Inc. developers announced their newly developed ScreenShieldKit SDK (Software Development Kit) which was originally intended only for the Confide application. [7] The API allows developers to incorporate the same screenshot-proof functionality of Confide into their own applications by simply importing the SDK replacing UITextView and UIImageView – two commonly used iOS development components used to display data to end users. The SDK prevents screenshots by blanking out the data and supports protection from a variety of capture methods including screenshots, screen recordings, screen mirrorings, and even screenshots from Apple's Xcode (the main development platform for iOS). [8]

Confide was referred to as an application that was used during communications between an accuser and a boss during the scandal surrounding the then governor in New York in 2021. [9]

See also

Related Research Articles

<span class="mw-page-title-main">AIM (software)</span> Instant messaging service

AIM was an instant messaging and presence computer program created by AOL, which used the proprietary OSCAR instant messaging protocol and the TOC protocol to allow registered users to communicate in real time.

<span class="mw-page-title-main">Instant messaging</span> Form of communication over the internet

Instant messaging (IM) technology is a type of online chat allowing immediate transmission of messages over the Internet or another computer network. Messages are typically transmitted between two or more parties, when each user inputs text and triggers a transmission to the recipient(s), who are all connected on a common network. It differs from email in that conversations over instant messaging happen in real-time. Most modern IM applications use push technology and also add other features such as emojis, file transfer, chatbots, voice over IP, or video chat capabilities.

The landscape for instant messaging involves cross-platform instant messaging clients that can handle one or multiple protocols. Clients that use the same protocol can typically federate and talk to one another. The following table compares general and technical information for cross-platform instant messaging clients in active development, each of which have their own article that provide further information.

End-to-end encryption (E2EE) is a private communication system in which only communicating users can participate. As such, no one, including the communication system provider, telecom providers, Internet providers or malicious actors, can access the cryptographic keys needed to converse.

iOS Mobile operating system by Apple

iOS is a mobile operating system developed by Apple Inc. exclusively for its smartphones. It was unveiled in January 2007 for the first-generation iPhone, launched in June 2007.

iOS SDK Software development kit for iOS

The iOS SDK, formerly the iPhone SDK, is a software development kit (SDK) developed by Apple Inc. The kit allows for the development of mobile apps on Apple's iOS and iPadOS operating systems.

Wickr is an American software company based in New York City, known for its instant messenger application of the same name. The Wickr instant messaging apps allow users to exchange end-to-end encrypted and content-expiring messages, and are designed for iOS, Android, Mac, Windows, and Linux operating systems. Wickr was acquired by Amazon Web Services (AWS) mid-2021 and shut down the free version of the app in December 2023.

<span class="mw-page-title-main">ChatSecure</span> Messaging application

ChatSecure is a messaging application for iOS which allows OTR and OMEMO encryption for the XMPP protocol. ChatSecure is free and open source software available under the GPL-3.0-or-later license.

TextSecure was an encrypted messaging application for Android that was developed from 2010 to 2015. It was a predecessor to Signal and the first application to use the Signal Protocol, which has since been implemented into WhatsApp and other applications. TextSecure used end-to-end encryption to secure the transmission of text messages, group messages, attachments and media messages to other TextSecure users.

<span class="mw-page-title-main">Open Whisper Systems</span> Open source software organization

Open Whisper Systems was a software development group that was founded by Moxie Marlinspike in 2013. The group picked up the open source development of TextSecure and RedPhone, and was later responsible for starting the development of the Signal Protocol and the Signal messaging app. In 2018, Signal Messenger was incorporated as an LLC by Moxie Marlinspike and Brian Acton and then rolled under the independent 501c3 non-profit Signal Technology Foundation. Today, the Signal app is developed by Signal Messenger LLC, which is funded by the Signal Technology Foundation.

<span class="mw-page-title-main">Proton Mail</span> End-to-end encrypted email service

Proton Mail is a Swiss end-to-end encrypted email service founded in 2013 headquartered in Plan-les-Ouates, Switzerland. It uses client-side encryption to protect email content and user data before they are sent to Proton Mail servers, unlike other common email providers such as Gmail and Outlook.com. The service can be accessed through a webmail client, the Tor network, or dedicated iOS and Android apps.

Threema is a paid cross-platform encrypted instant messaging app developed by Threema GmbH in Switzerland and launched in 2012. The service operates on a decentralized architecture and offers end-to-end encryption. Users can make voice and video calls, send photos, files, and voice notes, share locations, and make groups. Unlike many other popular secure messaging apps, Threema does not require phone numbers or email address for registration, only a one-time purchase that can be paid via an app store or anonymously with Bitcoin or cash.

Wire Swiss GmbH is a software company with headquarters in Zug, Switzerland. Its development center is in Berlin, Germany. The company is best known for its messaging application called Wire.

<span class="mw-page-title-main">Signal (messaging app)</span> Privacy-focused encrypted messaging app

Signal is an encrypted messaging service for instant messaging, voice, and video calls. The instant messaging function includes sending text, voice notes, images, videos, and other files. Communication may be one-to-one between users or may involve group messaging.

<span class="mw-page-title-main">Matrix (protocol)</span> Networking protocol for real-time communication and data synchronization

Matrix is an open standard and communication protocol for real-time communication. It aims to make real-time communication work seamlessly between different service providers, in the way that standard Simple Mail Transfer Protocol email currently does for store-and-forward email service, by allowing users with accounts at one communications service provider to communicate with users of a different service provider via online chat, voice over IP, and videotelephony. It therefore serves a similar purpose to protocols like XMPP, but is not based on any existing communication protocol.

Peerio was a cross-platform end-to-end encrypted application that provided secure messaging, file sharing, and cloud file storage. Peerio was available as an application for iOS, Android, macOS, Windows, and Linux. Peerio (Legacy) was originally released on 14 January 2015, and was replaced by Peerio 2 on 15 June 2017. The app is discontinued.

Firebase Cloud Messaging (FCM), formerly known as Google Cloud Messaging (GCM), is a cross-platform cloud service for messages and notifications for Android, iOS, and web applications, which as of May 2023 can be used at no cost. Firebase Cloud Messaging allows third-party application developers to send notifications or messages from servers hosted by FCM to users of the platform or end users.

Wire is an encrypted communication and collaboration app created by Wire Swiss. It is available for iOS, Android, Windows, macOS, Linux, and web browsers such as Firefox. Wire offers a collaboration suite featuring messenger, voice calls, video calls, conference calls, file-sharing, and external collaboration – all protected by a secure end-to-end-encryption. Wire offers three solutions built on its security technology: Wire Pro – which offers Wire's collaboration feature for businesses, Wire Enterprise – includes Wire Pro capabilities with added features for large-scale or regulated organizations, and Wire Red – the on-demand crisis collaboration suite. They also offer Wire Personal, which is a secure messaging app for personal use.

<span class="mw-page-title-main">Element (software)</span> Decentralized encrypted chat and collaboration software powered by the Matrix protocol

Element is a free and open-source software instant messaging client implementing the Matrix protocol.

References

  1. Crook, Jordan (18 August 2015). "Confide, The Self-Destructing Messenger, Goes Live On Desktop". TechCrunch. Retrieved 2017-02-14.
  2. Robertson, Adi (2017-02-09). "Republicans are reportedly using a self-destructing message app to avoid leaks". The Verge. Retrieved 2017-02-15.
  3. Swan, Jonathan (2017-02-08). "Confide: The app for paranoid Republicans". Axios. Retrieved 2017-02-15.
  4. "Confide, a favorite app of Trump's White House, is 'a triumph of marketing over substance' - Cyberscoop". Cyberscoop. 2017-02-14. Retrieved 2017-02-16.
  5. "Confide, the White House's favorite messaging app, has multiple critical vulnerabilities - Cyberscoop". Cyberscoop. 2017-02-14. Retrieved 2017-04-24.
  6. Newman, Lily Hay. "Encryption Apps Help White House Staffers Leak—and Maybe Break the Law". WIRED. Retrieved 2017-02-16.
  7. "Introducing ScreenShield - iOS Screenshot-Prevention for Confide, and Beyond". 2018-01-10.
  8. "ScreenShieldKit".
  9. Bragg, Chris (January 21, 2022). "'I can't wait to destroy your life': Takeaways of new Cuomo transcripts". www.timesunion.com. Retrieved January 21, 2022.