←back to thread

833 points Bluestein | 3 comments | | HN request time: 0.411s | source
Show context
mro_name ◴[] No.40715944[source]
I wonder how it can be legal to repeatedly undermine constitution and push or vote for later high-court-nullified laws and be allowed to repeat as if nothing was wrong with that. Like drunk driving forever. We ban counter-constitutional activities outside parliament and authorities. Why not inside?

I am much for 3-strikes here.

replies(6): >>40716013 #>>40716069 #>>40716073 #>>40716129 #>>40716284 #>>40717138 #
sneak ◴[] No.40716069[source]
It’s because we aren’t actually nations of laws. There are certain groups in every nation (yes, even the ones you like or perhaps respect) who operate outside of the law as if it doesn’t exist.

The most popular “e2ee” messengers in use (WhatsApp, iMessage) are already clientside backdoored in this manner. Most people in most societies are already under this type of surveillance. This is just to tidy up the small loopholes like Signal etc.

replies(2): >>40716167 #>>40716368 #
1. worldsayshi ◴[] No.40716167[source]
> The most popular “e2ee” messengers in use (WhatsApp, iMessage) are already clientside backdoored in this manner.

Do you have a source for this?

Can this be concluded by looking at the app traffic?

replies(2): >>40716744 #>>40722273 #
2. Cthulhu_ ◴[] No.40716744[source]
"clientside backdoored" is a vague statement, but they may mean e.g. Snowden's revelations that the NSA has secret backdoor access to the big tech companies.
3. sneak ◴[] No.40722273[source]
iCloud Backup backs up the entirety of someone's iMessage history (or their endpoint iMessage sync keys, which equate to the same thing) each night to Apple without e2ee.

If you enable e2ee for iCloud/iCloud Backup, all of your iMessage traffic will still be escrowed, simply from the other end of all of your conversations because they still have iCloud e2ee turned off (because it's off by default).

If the endpoint sends the plaintext post-decryption to the middle transit service (Apple) in a way that is readable to that middle service (iCloud Backups contain complete iMessage history and are encrypted to Apple keys), then it's not e2ee. This is called "plaintext escrow".

Same goes for WhatsApp. It backs up its message history to iCloud or Google Drive, which are, in the usual case (99.9%+ of users) non-e2ee.