private messages on dbus

khc at hxbc.us khc at hxbc.us
Tue Dec 20 18:11:39 EST 2011


On Tue, 20 Dec 2011 12:02:38 +0200, Dimitris Glynos wrote:
> Hello all,
>
> I was wondering if pidgin could allow for certain chat types
> to be flagged as private and not transmit these over dbus.
> I don't know how much dbus is hardwired to pidgin (is it used
> also for capturing the messages displayed on the pidgin GUI?)
> but the fact that a local attacker can access OTR plaintext
> from a dbus session monitor is quite unnerving.

a local attacker can already ptrace the pidgin process and do
pretty much anything.

-khc




More information about the Devel mailing list