
New concerns are surfacing regarding the security of the seemingly encrypted messaging feature on the platform formerly known as Twitter. Despite being marketed with privacy protections, recent analysis indicates that the implementation falls short of true end-to-end encryption standards, raising significant security risks for users.
Experts point out that the system exhibits several critical vulnerabilities similar to past security lapses seen on other platforms. One primary issue is the handling of metadata, which can often reveal sensitive information about communication patterns even if message content is scrambled. Furthermore, there are suggestions that messages might be accessible under certain conditions, potentially through backups or server-side decryption mechanisms, which undermines the core promise of encryption.
This situation means that user conversations are not as private or secure as they might believe. The potential for unauthorized access or data exposure due to these implementation flaws poses a serious threat to user privacy and could have significant implications for sensitive communications. Users relying on this feature for confidential discussions should be aware of these security gaps and consider alternative, verifiably secure messaging applications for truly private conversations. The platform needs to address these fundamental security design flaws to provide genuine protection for user data.
Source: https://go.theregister.com/feed/www.theregister.com/2025/06/03/xs_new_encrypted_xchat_feature/