Kevin Karhan :verified:<p>I mean, these ain't like in the old days where a few Megabytes got you <a href="https://infosec.space/tags/Pidgin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Pidgin</span></a> and other <a href="https://en.wikipedia.org/wiki/Comparison_of_cross-platform_instant_messaging_clients" rel="nofollow noopener" target="_blank">Multi-Protocol Clients</a> of <em>the old days</em> where everyone had to implement bespoke, custom and incompatible and *often completely undocumented, proprietary * protocols like <a href="https://infosec.space/tags/ICQ" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ICQ</span></a>, <a href="https://infosec.space/tags/AIM" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AIM</span></a>, <a href="https://infosec.space/tags/SIPE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SIPE</span></a>, etc.</p><ul><li>Nowadays all these do have <em>some kind of <a href="https://infosec.space/tags/WebApp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WebApp</span></a></em> or <em>Web Interface</em> one can just login (because *none of them do proper <a href="https://infosec.space/tags/E2EE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>E2EE</span></a> with <a href="https://infosec.space/tags/SelfCustody" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SelfCustody</span></a> of all the keys!) so this should be way easier these days: All they do is do HTTP(S) GET/POST so the most critical part is to attain credentials like a <a href="https://infosec.space/tags/Login" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Login</span></a> <a href="https://infosec.space/tags/cookie" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cookie</span></a> and to basically run a console on i.e. <a href="https://infosec.space/tags/Firefox" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Firefox</span></a> to reverse-engineer the <a href="https://infosec.space/tags/API" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>API</span></a>...</li></ul>