Live data from Hacker News

Zoom meetings aren’t end-to-end encrypted, despite marketing

theintercept.com

41–50 of 351 posts

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#41
post #27

how can you have end-to-end encryption with server side processing in conference calls with 50 participants?

1. Clients negotiate end-to-end encryption session key between themselves the same way as a chat app would.

2. Each client sends the server two (or more) encrypted video streams, varying in bandwidth and keyframes per second, with unencrypted markers showing where they can be sliced and joined. If you can upload a 1080p stream, chances are you've got the bandwidth to send a 360p stream too!

3. Each client tells the server which other call participants they'd like to see, and the server sends them the appropriate encrypted streams, switching between low and high bandwidth as appropriate.

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#42
post #38

I never saw anyone advertising zoom had E2E. Who expected that? There are so many privacy concerns with zoom... not surprising they don't encrypt meetings.

"Zoom... claims to implement end-to-end encryption, widely understood as the most private form of internet communication, protecting conversations from all outside parties. In fact, Zoom is using its own definition of the term, one that lets Zoom itself access unencrypted video and audio from meetings."

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#43
post #13

End-to-end encryption has been named as a required feature for telehealth in Australia. Interest in telehealth has gone from zero to infinity over the past two weeks for obvious reasons. So I've been trying really hard to work out if Zoom is E2E, and reached the same conclusions as the article. First, it isn't, and second, Zoom are really going out of their way to obscure that fact. It's great that The Intercept is t…

End-to-end encryption is hard to implement, might cost more processing or bandwidth or storage (depending on the product) and does not yield benefits for companies interested in processing user data.

If it's not clearly advertised on the front page, _emphasized_ and not a foot note, then it's NOT e2e encrypted.

Example: https://signal.org

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#44

Earlier quoted context omitted.

TBF it's mostly short sellers doing this, because the complaints have been... poor. The first one was about an advertisement pixel, which everybody is doing but for some reason surfaced only for Zoom. The second one is end-to-end encryption, which is not expected at all for VC apps. NOBODY does it!

>NOBODY does it! Irrelevant. That as nothing to due with the fact that they say they are. Zoom is being completely dishonest, and as some other commented here, some orgs like in health care area, have E2E encryption as requirement, Zoom says they have, but don't. It's literally fraud.

Where does it say they have e2e video encryption? I can only find something about chats.

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#45
post #17

It's disappointing to see a company that has better tech than its rivals playing these games. I have been singing Zoom's praises, but this really makes me want to look elsewhere. What a bummer.

Honest question, what do you find is better about zoom? Compared to webex, skype, slack call…

What do people like about zoom?

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#46
post #27

how can you have end-to-end encryption with server side processing in conference calls with 50 participants?

My problem with this is Zoom's misleading claims. If Zoom can't implement end-to-end encryption, it shouldn't claim that it does.

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#48
Original title: "Zoom Meetings Aren't End-to-End Encrypted, Despite Misleading Marketing"

For some reason, the title was trimmed an hour after submission to omit the "misleading marketing" part.

The ranking also appears to have artificially been lowered. Now it is below some other posts that are older and with fewer points.

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#49
post #13

End-to-end encryption has been named as a required feature for telehealth in Australia. Interest in telehealth has gone from zero to infinity over the past two weeks for obvious reasons. So I've been trying really hard to work out if Zoom is E2E, and reached the same conclusions as the article. First, it isn't, and second, Zoom are really going out of their way to obscure that fact. It's great that The Intercept is t…

Now I know why it was the only video conferencing service that worked in Dubai. Others, like meet, WhatsApp - video are not working for censorship reasons.

I'm pretty sure that Google Meet isn't end-to-end encrypted either. Nothing that Google does is.

WhatsApp does claim that videos are end-to-end encrypted as well, although given Facebook announced they'll implement client-side agents for processing user data and given its proprietary nature, I avoid WhatsApp for anything very sensitive as well.

Re: Zoom meetings aren’t end-to-end encrypted, despite marketing

#50
post #42
post #38

I never saw anyone advertising zoom had E2E. Who expected that? There are so many privacy concerns with zoom... not surprising they don't encrypt meetings.

"Zoom... claims to implement end-to-end encryption, widely understood as the most private form of internet communication, protecting conversations from all outside parties. In fact, Zoom is using its own definition of the term, one that lets Zoom itself access unencrypted video and audio from meetings."

That's what the article is saying, not Zoom. Can you point to a Zoom-owned page that says they have e2e video encryption?
Post reply on HN