What is Nostr?
Nikolai Konovalov
npub1f8j…8v6f
2024-10-27 18:42:29

Nikolai Konovalov on Nostr: Current implementation of blinded id's in Session messenger are reversible, you can ...

Current implementation of blinded id's in Session messenger are reversible, you can get user id from blinded id + server public key.

The picture is simple algorithm for vulnerable
Author Public Key
npub1f8jkdgm92km2v6ynax4n5k85ljjf8w0k8vwh29vydghpzzezc0rspg8v6f