PSA: we have seen the vague viral reports alleging a Signal 0-day vulnerability.

After responsible investigation *we have no evidence that suggests this vulnerability is real* nor has any additional info been shared via our official reporting channels.

@signalapp

Hi,

Could you add a link on signal.org, pointing to your Mastodon profile, with a rel="me" attribute. And then add a link to signal.org on your mastodon profile?
So that your account appears to be certified (to be sure you are not a fake account).

More info here:
https://joinmastodon.org/verification
("here's how" section).

Verification

Learn how to get verified on Mastodon

@John_Livingston @signalapp yes! please please please do this, it makes your account here trustable at a glance.

@John_Livingston @signalapp You've tweeted your handle once, but verifying your account would be waaay better.

https://x.com/signalapp/status/1593678164319997953

Signal on X

Hello, Mastodon - [email protected]

X (formerly Twitter)
@katzentratschen @John_Livingston @signalapp yes, please verify via mastodon’s native mechanism. The tweet would have been useful in the old world where it was leveraging twitter’s own verification, but, alas
@John_Livingston @signalapp I came here to say the same thing. It would be comforting to know that the Mastodon account officially owned by Signal (and not some elaborate impersonation) is dismissing news of a 0-day.