Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Open Rights Group
@openrightsgroup@social.openrightsgroup.org  ·  activity timestamp 6 days ago

Practice Safe Text for Global Encryption Day 🔒

Messaging apps we use to chat, share and plan shield us from scams, stalking and sextortion.

But the UK Online Safety Act contains a time bomb that lets the government break encryption for surveillance.

Find out more about our campaign ➡️ https://www.openrightsgroup.org/campaign/save-encryption/

#PracticeSafeText #GlobalEncryptionDay #encryption #e2ee #privacy #cybersecurity #security #OnlineSafetyAct #ukpolitics #ukpol #surveillance

Open Rights Group

Save Encryption

Message scanning breaks end-to-end encryption, which puts everyone’s privacy and security at risk.
Image of a red and yellow message icon as a 3D baloon with a children crossing sign on the skin. Text reads: Save Encryption – Practice Safe Text.
Image of a red and yellow message icon as a 3D baloon with a children crossing sign on the skin. Text reads: Save Encryption – Practice Safe Text.
Image of a red and yellow message icon as a 3D baloon with a children crossing sign on the skin. Text reads: Save Encryption – Practice Safe Text.
  • Copy link
  • Flag this post
  • Block
ad3y
@ad3y@infosec.exchange replied  ·  activity timestamp 6 days ago

Almost all popular secure messenger systems are run by a single
legal entity.
e.g. WhatsApp by Meta, Signal by Whisper Systems, Telegram etc

Well, these generally are useful for solving the message delivery
problem - locating the device that your contact is using in order to
ensure they receive the message.

To do this they create a client and implement end to end encryption.

Governments would like to force them to implement client side scanning
of messages before they are encrypted and sent.
Because they are legal entities then they are bound by law to obey the
Government in the legal jurisdiction where their clients are used.

Maybe a solution to this is to create a client that isn't owned or
managed by any of these legal entities - just an open source app
published on the internet that anyone can download.

The client would implement end to end encryption but then be able to
use ANY of the messengers simply as a transport for it's encrypted
message.
It could even use SMS as the message would be encrypted BEFORE being
sent using SMS.

No legal entity controlling the client = no Government ability to
enforce backdoors or client side scanning.

  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0-rc.3.21 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login