4 ms·
> Secure Messaging As A Service It's not secure in a traditional sense. BB have agreements with some governments to provide them with data as they need it.
by akandiah 10y ago
> Secure Messaging As A Service
It's not secure in a traditional sense. BB have agreements with some governments to provide them with data as they need it.
- geofft 10y agoHow is that possible if app developers are going to be generating their own keys that aren't in BlackBerry's possession? (That is, I think your criticism is valid and correct for the existing BBM service, but that's not what's being described here)
- dmix 10y agoAssuming their crypto is legit and not horribly broken, Blackberry could push out backdoored apps via updates for certain user ids or update a whitelist remotely via data push. Then package the mirrored plain text data in an encrypted format that looks the same on the wire as normal messages or contact syncing going to the Blackberry controlled transit server. There's a ton of trust involved that go beyond generating your own keys if Blackberry is making the app itself, closed source, and controls the servers. Blackberry/RIM openly bragged about giving law enforcement real time access, for the first time, to any messages for targeted individuals during G20 in Toronto. That was in 2010. At this point I wouldn't trust Blackberry with any data you wouldn't already be willing to hand over to government agencies.
- geofft 10y agoIsn't this an SDK that developers would put in their own apps? I don't thin BlackBerry would have the ability to push updates to those apps without the app developers being involved.
- dmix 10y agoAh I didn't know they were planning on allowing 3rd party apps as part of the commercialization process. This would depend more on how the SDK interacts with their service then. I'm curious to hear more then.