4 ms·
WhatsApp encryption is useless
- tsunamifury 10y agoThis is offset by two factor authentication: Pin-based or email based. If you want extra security the encrypt your device and two-factor your phone number based messenger.
- merqurio 10y agoIf this is true, It's really sad. Whatsapp penetration is so high around me that not using it's... very impractical. I do use other channels with some friends, but I don't think people will adopt other channels any time soon.
- alainv 10y agoTurn on the setting to warn you when the other party's encryption key changes and go about your business. This is non-news unless you have unusually good cause to worry about targeted attacks.
- thesimon 10y agoDon't have the link, but there was a better discussion and source a few days ago
- skrebbel 10y agoWhy are crypto geeks always so black and white? Is there really only "perfect" or "useless" with nothing in-between? Notably, a noted goal of WhatsApp encryption was to stop mass surveillance. I'm no expert but I dont see how these objections make mass surveillance of messages remotely as easy as it was when WhatsApp was entirely unencrypted
- secalex 10y agoThis is a great example of security nihilism. "This tool can't protect against every possible attack from every possible adversary, therefore it is useless." Building safe, secure products at scale for real populations is a process of balancing multiple equities and addressing the most pressing and realistic threat scenarios. This always means building security protections that have theoretical failure modes. The real art is in trying to make those failures as graceful as possible while educating your huge, diverse set of users on the security properties of the product and in what situations they can rely upon it. Doing this well is still something the entire industry needs to work on, but giving it a shot and building practical protections for real people is always a better option than throwing up your hands and giving up.
- aavotins 10y agoI agree. Every encryption can be cracked given either infinite resources or time. The goal of encryption is to make it (much) harder to eavesdrop on communications, often to a point that it's not feasible to do so anymore. Even if SS7 can be exploited in such a way that actually breaks encryption, it adds layers and layers of complexity that makes large scale spying hard or nearly impossible. These kind of attacks require individual approach, which is harder than, for example, logging all plaintext traffic.
- mikegerwitz 10y ago> Is there really only "perfect" or "useless" with nothing in-between? Are you suggesting that the ability to completely circumvent a system doesn't make that system broken? If the goal of WhatsApp encryption is to protect against surveillance, and there's a way to surveil users using WhatsApp, then it's broken, full stop. Are you going to place your trust in a home security system that works pretty well, but only against unskilled burglars? Or what about an authentication system to a server holding sensitive customer information? Or your banking information? Or information that might put your life at risk as a dissident in a repressive state?
- khedoros 10y ago> Are you suggesting that the ability to completely circumvent a system doesn't make that system broken? A system can be broken without being useless. >If the goal of WhatsApp encryption is to protect against surveillance You skipped an import word from the post you replied to: "mass". Even with a hole in SS7, it makes it impractical to collect messages from everyone, even if it's practical to collect messages from specific targets.
- mikegerwitz 10y ago> A system can be broken without being useless. Sure, just as a completely insecure system can be useful. I'm not arguing that. But not useful for the purpose of protecting users against surveillance. > You skipped an import word from the post you replied to: "mass". skrebbel made a blanket statement, which I was replying to.
- khedoros 10y ago>But not useful for the purpose of protecting users against surveillance. I'd argue that it can be useful for that purpose without being perfect. If it stops my communication from being caught in a mass dragnet, then it's useful for protecting me against surveillance even when it's possible to circumvent the security on the scale of individuals (rather than populations). > skrebbel made a blanket statement, which I was replying to. Right, they did. They made the statement that even flawed security makes mass surveillance much more difficult than an unencrypted system would (or words to that effect). It seems like "stop mass-scale surveillance" is a separate goal from "stop individual-scale surveillance". I feel like you set up a strawman, rather than actually addressing what skrebbel originally said.
- SkyMarshal 10y agoThey tend to be black and white b/c, unlike most other areas of engineering, a flaw of any severity in a crypto system can lead to its total compromise. Those systems are also subject to active opposition, and breaches tend to be both catastrophic and not known till after the damage is done. By way of comparison, when Boeing builds a jumbo jet, its "threat model" is gravity and drag and other laws of nature, and if the in-flight entertainment system breaks they don't have to worry about the plane falling out of the sky. Also compare to the "move fast, break things" web/app dev community for even more stark contrast. Those differences tend to lead to crypto folks being more black and white on average.
- infodroid 10y agoThere was a fine discussion about it yesterday https://news.ycombinator.com/item?id=11668567 https://news.ycombinator.com/item?id=11668567
- mikek 10y agoIn the case of WhatsApp, your data is only on your device and, optionally, in iCloud. So even if an attacker is able to take over your WhatsApp account, your existing data is still private unless the attacker can obtain your device password (and your device) or your iCloud password.
- leecarraher 10y agoday late and a dollar short
- deleted 10y ago[deleted]
- Robin_Message 10y agoFlagged for misleading headline; if keys are verified WhatsApp is secure against this attack. If you don't have out of band comms or a pre-shared key, mitm attacks are provably impossible to prevent.
- emdd 10y agoCan we have weekly whining threads about WhatsApp now? Just make it like an automated thing; maybe a sticky!