4 ms·
> That's why it's absolutely critical that everything you do is end-to-end encrypted. These government agencies have the resources to crack most encryption, too
by ThatGeoGuy 10y ago
> That's why it's absolutely critical that everything you do is end-to-end encrypted. These government agencies have the resources to crack most encryption, too [3] but at least you aren't making it trivial.
This comment in particular seems to imply that government agencies can break e2e encryption. However, other sources would suggest that's not entirely the case. Snowden, for example, still seems to believe PGP works. I don't have reason to believe that it doesn't, or that the NSA can currently crack any arbitrary 4096-bit RSA keys.
Further, there's a lot to be said about other modern encryption standards (ed25519 curves, forward secrecy and asymmetric double-ratchet protocols like Signal), which I don't believe have been shown to be compromised. I understand the importance of e2e encryption, but it seems that you're overstating the governments ability to crack it. I agree that SSL and TLS don't have the best history, and maybe we shouldn't rely on them, but it is also important to know that there are solutions out there which we still have quite a bit of reason to believe we can trust.
- jwtadvice 10y ago> This comment in particular seems to imply that government agencies can break e2e encryption. Much E2E encryption can be broken by government agencies. For HTTPS for instance, the government is a certificate authority accepted by your browser - as well as there having been multiple cases of collaboration with well known CAs to have certs minted for them. In this case there's no need to break RSA. In any case, much of TLS is open to various kinds of breakage (that is not as hard as RSA), and NSA docs showed a number of instances where intelligence agencies would sit behind load balancers and at data center chokepoints in domestic companies to gather information where PKI no longer poses a problem (behind the load balancers being referred to here as "end-to-end"). Basically, there's many ways to thwart "e2e" that isn't cracking 4096 bit RSA. Intelligence agencies do all of them.
- hendersoon 10y agoYes, very much this. Full circle back to the famous xkcd comic that's always posted in HN articles like this. https://xkcd.com/538/ https://xkcd.com/538/
- ThatGeoGuy 10y agoPerhaps we need to clarify our terminology. Typically when discussing HTTPS or TLS, we are discussing transport security, not end-to-end. I wouldn't classify either HTTPS or TLS as end to end, although I can see if you read my comment a certain way it almost seems as if I did. That said, I am still unconvinced that governments have somehow compromised most end-to-end systems, especially not the ones that experts suggest work (PGP, Signal Protocol, OMEMO, etc). I should make particular mention that compromising and end-to-end system has nothing to do with whether or not a specific target can be made to give you their key(s). If you're being solely targeted by a billion dollar agency, regardless of their origins or motives, you probably won't be able to run or hide for very long. It's important to consider targeted attacks too, but let's not assume Hollywood scenarios here when discussing whether entire crypto-systems have been compromised.
- jwtadvice 10y agoHere's a recent Thinktank summary of the encryption and what access is difficult for the government. https://csis-prod.s3.amazonaws.com/s3fs-public/publication/170203_Lewis_EffectOfEncryption_Web.pdf?Gqb5hXxckXykb3WAphuoVHrHfDTwuFkN https://csis-prod.s3.amazonaws.com/s3fs-public/publication/1... You will find that the following summary is correct: The federal government does not have an issue getting the plaintexts it desires today. This is because of a large number of capabilities come together: first most communications does not have unrecoverable encryption. Strong encryption is extremely rare, composing very small percentages of the communications available. Then, where encryption is available it isn't applied by default. Then, where encryption is available and applied by default, there are key escrow mechanisms for most of these cases. Then, there is a legal mechanism that requires communication service providers to provide decryption for any of the encryption that they provide. Then, what encryption can is build over the mechanisms for providers and services offer, most of it can be defeated. Then, what can not be defeated mathematically, access can be gained from other types of law enforcement activity, including lawful hacking exercises and capture of unlocked target devices. Then, what can't be gained by any of this can be inferred from metadata that is almost always available in plaintext, provided by mass surveillance collections. I encourage you to read the associated literature, both reports like the above, and the contents of the Snowden Disclosures. Namely: both law enforcement and intelligence operations are able to thwart the very vast majority of communications among Americans as well as those abroad. There do exist some systems that lead to unrecoverable encryption - they are in the very vast majority and can and are thwarted using other types of operations (if the cost-benefit analysis deems it necessary). And so it is not a reasonable position to remain skeptical in the face of overwhelming evidence. It should also be noted that a number of "Hollywood scenarios" have been disclosed and have been seriously debated on a national level: before the 90s all cryptography in the United States was mandated to be weak to government interception (this isn't that long ago) and can we go without mentioning DRGB? Apparently we can't. The sum total of all of this is that by and large, as a rule, federal intelligence and usually even regional law enforcement are able to access almost all civilian communications (in Seattle, for example, all of the cities communications including social media posts are hoovered up by our city police).
- Sir_Substance 10y ago>This comment in particular seems to imply that government agencies can break e2e encryption. I don't know about that, there is much speculation on all sides. However, I would say that if the FBI/NSA/CIA decides that you, specifically and in particular, are someone they want to surveil, there's probably not much the average person could do about it. Once you're finding yourself having to take photos of your desktops motherboard to make sure no one is replacing chips on it while you're at work, it's probably only a matter of time until you lose that fight. The main point of wide-spread e2e encryption is to force such agencies to actually make those choices. The reason they're doing dragnet surveillance is basically because they can. We're handing them a buffet, no one should be surprised they're digging in. The good news is that if we act en masse, we don't have to raise the standard of security by very much to make dragnet surveillance impractical. The HTTPS everywhere initiative is a great example of this. End users are having to do basically nothing, and yet we're cutting off a whole category of the dragnet in one go. If we can pull a similar coup in email, we'll have made real progress.