Outbox relay connections can spread through interactions and follows. If a client is vulnerable but a "trusted" relay was able to filter/block harmful events, an attacker can convince my client to connect directly to an malicious relay and possibly compromise my client.
Login to reply
Replies (2)
omg...I was asking this question here:
#asknostr tribe:
who is responsible of a breach (god forbid) in any nostr client?
Centralised platform, the org of the app is responsible.
I am not sure with nostr.
Has someone ever talked about it?
I understand users have to make sure they keep their private key.
But what about if the breach happen in relay or client level?
genuinely curious to know considering everything that is going on atm.
Whilst we seek freedom, it also means we are responsible to keep everyone secure and safe.
Perhaps this discussion already came up in the past? View quoted note →
View quoted note →
is this a common knowledge in nostr relay operators and client devs?