4 ms·
Sure, that's a fair point. Backups were initially not encrypted, but as you mentioned, this option is now available. Without going into too much detail, I can
by xerxesaa 4y ago
Sure, that's a fair point. Backups were initially not encrypted, but as you mentioned, this option is now available.
Without going into too much detail, I can tell you a huge challenge with encrypted backups is compliance - many people simply do not opt-in to using encrypted backups. It's a difficult line to walk because ultimately you don't want to pester users too much about using encrypted backups either. In case it's not clear, the reason it requires opt-in is because you (i.e., the user) control the encryption keys and therefore you must take some action to write down a key or passphrase. As you may imagine, the average messaging app user is not as tech savvy as the average Hacker News user and many simply don't want to go through this extra step. Even worse, if they opt-in to encrypted backups and lose their keys, they will end up blaming Meta for not giving them a way to restore their message history when their phone gets lost (it's not easy to explain that it's your responsibility as the user to keep your keys safely stored).
- est31 4y agoDefinitely, this is a hard tradeoff to make. Users very often care more about having access to their messages than them being not accessible to authorities/advertisers/etc, and they are very often not very savvy. As you say they also probably don't choose the most secure passwords. Signal on the other hand sides on the side of security so much that it makes the app purposefully less useable, e.g. with their pin feature. But it doesn't have this backup problem. It's not a situation that has an easy solution atm. But I think it's important to note that the belief of many users is wrong that end-to-end encryption implies that message content is unavailable to governments unless they get unlocked access to devices of communication partners.
- xerxesaa 4y agoAll fair points.