Frédéric Jacobs on Nostr: 🧵 Short Authentication Strings (SAS) in the Age of Generative AI When ZRTP was ...
🧵 Short Authentication Strings (SAS) in the Age of Generative AI
When ZRTP was released by Phil Zimmermann and team in the mid-2000s, one of it's main innovations was to use SAS in order to verbally authenticate the other party on the call and rule out person-in-the-middle attacks. This worked by reading aloud a SAS value over the voice connection and ensure that it matched the value on the other side.
When we shipped Signal 1.0 with ZRTP, those were the words on the display during calls.
Published at
2026-01-05 09:12:49 UTCEvent JSON
{
"id": "cbfb4ad90726e7821e751f4fb2067b337bf7359e55bc3ff064cc064961103594",
"pubkey": "5123c20a62f3990d9093ea2134c4319890761b483902065f5071ce23010eb99a",
"created_at": 1767604369,
"kind": 1,
"tags": [
[
"imeta",
"url https://files.mastodon.social/media_attachments/files/115/841/717/707/560/468/original/ccc4aa369bb37651.webp",
"m image/webp"
],
[
"proxy",
"https://mastodon.social/@fj/115841719958800779",
"web"
],
[
"proxy",
"https://mastodon.social/users/fj/statuses/115841719958800779",
"activitypub"
],
[
"L",
"pink.momostr"
],
[
"l",
"pink.momostr.activitypub:https://mastodon.social/users/fj/statuses/115841719958800779",
"pink.momostr"
],
[
"-"
]
],
"content": "🧵 Short Authentication Strings (SAS) in the Age of Generative AI\n\nWhen ZRTP was released by Phil Zimmermann and team in the mid-2000s, one of it's main innovations was to use SAS in order to verbally authenticate the other party on the call and rule out person-in-the-middle attacks. This worked by reading aloud a SAS value over the voice connection and ensure that it matched the value on the other side.\n\nWhen we shipped Signal 1.0 with ZRTP, those were the words on the display during calls.\nhttps://files.mastodon.social/media_attachments/files/115/841/717/707/560/468/original/ccc4aa369bb37651.webp\n",
"sig": "baa8aaf7a6bf13bca68d67c8d89d7eac572ae5707e508b0255c12de3cb52674a52d879e0e41889f3d3b4ad6f1a0f28094c01292eede15ad280f16b48a92f0638"
}