Live data from Hacker News

Indian government to intercept, monitor, and decrypt citizens’ computers

venturebeat.com

1–10 of 170 posts

Re: Indian government to intercept, monitor, and decrypt citizens’ computers

#4
post #2

The first few lines of the story make it clear that there is not (necessarily) some physical seizing of computers going on here; it is the data that are being intercepted, monitored, and decrypted.

...and 7 years of prison if the service provider does not hand the authorities the encryption keys...

MITM for iMessage, Whatsapp etc seems to be guaranteed here.

Re: Indian government to intercept, monitor, and decrypt citizens’ computers

#7

It is easy to task authorities with intercept and decryption duties; actually doing it successfully is another matter entirely. Mathematics works both ways, friends.

>>It is easy to task authorities with intercept and decryption duties; actually doing it successfully is another matter entirely. Mathematics works both ways, friends.

Actually if Apple, Goog, FB etc are forced to surrender the key--at the penalty of being excluded from 1.x billion people in India--math works only one way...

Re: Indian government to intercept, monitor, and decrypt citizens’ computers

#9
TL;DR This is a a decade old directive . This was a 2009 directive, if at all anything that has changed now it is instead of open ended notification in 2009 which said any company can access the data, this directive limits the number of companies to specific 10 agencies that can access that too after getting necassary permission. Details in https://www.opindia.com/2018/12/fact-check-congress-lies-mha...

Re: Indian government to intercept, monitor, and decrypt citizens’ computers

#10

It is easy to task authorities with intercept and decryption duties; actually doing it successfully is another matter entirely. Mathematics works both ways, friends.

>> It is easy to task authorities with intercept and decryption duties; actually doing it successfully is another matter entirely. Mathematics works both ways, friends. Actually if Apple, Goog, FB etc are forced to surrender the key--at the penalty of being excluded from 1.x billion people in India--math works only one way...

they can't surrender keys they don't have (e2e). the only issue is that they may be forced to do a key change. one way around this would be to show a prominent notice if your peer changed keys, which would make it immediately obvious what was going on.
Post reply on HN