Signal has added Automatic Key Verification to help users detect server-side key substitution and other man-in-the-middle risks in one-to-one chats. The feature uses key transparency so Signal clients can periodically confirm that the public keys tied to an account are globally consistent and actually belong to that user’s devices, warning users if verification fails. Trail of Bits said it built and operates one of three external auditors for the system, alongside Signal and Cloudflare, with each auditor maintaining a local Merkle-tree copy of the key map and signing consistent tree heads so clients can detect split-view behavior from a malicious server.
The new mechanism complements Signal’s existing safety number protections rather than replacing them. Safety numbers remain unique to each one-to-one conversation and are used to manually verify end-to-end encryption, with Signal alerting users when a number changes—most often after a contact changes phones or reinstalls the app—and requiring approval before new messages are sent. Signal clients reportedly require recent signatures from all three auditors within seven days, limiting how long a compromised or malicious server could hide an inconsistent key view, and users are advised to fall back to manual safety number comparison if automatic verification does not succeed.

See the reporting duties and controls this puts on the clock.
5 events from the most recent confirmed update back to the earliest known activity.
Trail of Bits disclosed how its auditor works, including that clients require signatures from all three auditors within the last seven days and that a fully malicious server could hide an inconsistent view for at most about one week before warnings appear. The post also published the auditor's current public key and noted the code is open source.
Signal announced a redesign of its verification system that replaced older per-user fingerprint comparisons with per-conversation safety numbers using localized numeric encoding and simpler QR-based verification. In the same release, Signal removed embedded user identifiers from QR codes after recognizing that some users had exposed phone numbers by publicly sharing screenshots, and added an optional advisory mode for safety number changes.
Trail of Bits built and operates one of the three external auditors used by Signal's Automatic Key Verification system. Its independently implemented auditor maintains a local Merkle-tree copy of the key map and signs consistent tree heads so clients can detect split-view behavior.
Signal introduced Automatic Key Verification as an alternative to manual safety number comparison, using key transparency to detect server-side key substitution and other hidden inconsistencies. The system relies on three auditors—Signal, Cloudflare, and Trail of Bits—and warns users if verification fails.
Signal's support documentation explains that each one-to-one chat has a unique safety number used to verify the security of messages and calls, and that users are alerted when a safety number changes. The guidance says changes commonly occur after a contact switches phones or reinstalls the app, and recommends manual comparison for sensitive conversations.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See what this changes for your reporting obligations and which controls it puts on the clock.
8 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcehelpnetsecurity.com
Open sourcebleepingcomputer.com
Open sourcetheregister.com
Open sourceblog.trailofbits.com
Open sourcesignal.org
Open sourcesignal.org
Open sourcesupport.signal.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.