Live data from Hacker News

Reporting a user to WhatsApp forwards a copy of recent messages from that chat

wabetainfo.com

1–10 of 173 posts

Re: Reporting a user to WhatsApp forwards a copy of recent messages from that chat

#2
E2E encryption in closed source automatically updated programs doesn't provide any real assurance: whoever makes the program can subvert your privacy at any time.

Do you trust the author of the program? Then E2E doesn't add much. Do you not trust the author of the program? E2E doesn't help. Either way, what's the point? Sure, I guess E2E provides some kind of additional privacy at the margin or something, but you can't rely on it for anything.

Re: Reporting a user to WhatsApp forwards a copy of recent messages from that chat

#4
> WhatsApp can now read your recent messages when you report a user

This feature is just an extension of manually making a screenshot and attaching it to the messages. As much as I like E2EE, I don't see where the problem lies? It's you who opts in into getting a third party involved. E2EE doesn't mean that no third party is ever going to see the content, it only means that nobody sees it by default.

Re: Reporting a user to WhatsApp forwards a copy of recent messages from that chat

#5

E2E encryption in closed source automatically updated programs doesn't provide any real assurance: whoever makes the program can subvert your privacy at any time. Do you trust the author of the program? Then E2E doesn't add much. Do you not trust the author of the program? E2E doesn't help. Either way, what's the point? Sure, I guess E2E provides some kind of additional privacy at the margin or something, but you can…

To achieve truly E2E encryption one must assume the channel they communicate with is not secure and then perform encryption themselves. For example you can exchange keys offline and then send messages encrypted with PGP between each other. You could also convert encrypted messages to text, so that it is less obvious it is encrypted.

Re: Reporting a user to WhatsApp forwards a copy of recent messages from that chat

#6

E2E encryption in closed source automatically updated programs doesn't provide any real assurance: whoever makes the program can subvert your privacy at any time. Do you trust the author of the program? Then E2E doesn't add much. Do you not trust the author of the program? E2E doesn't help. Either way, what's the point? Sure, I guess E2E provides some kind of additional privacy at the margin or something, but you can…

Yep that's a weird title, in layman terms, whatsapp can read all your messages.

Re: Reporting a user to WhatsApp forwards a copy of recent messages from that chat

#8

E2E encryption in closed source automatically updated programs doesn't provide any real assurance: whoever makes the program can subvert your privacy at any time. Do you trust the author of the program? Then E2E doesn't add much. Do you not trust the author of the program? E2E doesn't help. Either way, what's the point? Sure, I guess E2E provides some kind of additional privacy at the margin or something, but you can…

Are you verifying that all your OSS binaries you’re running match a reproducible build hash that’s been validated by multiple trusted sources? If not, you’re already engaging in a level of trust.

The real question is how do you establish trust in the code you run and while OSS provides benefits at the margin or something, you can’t really rely on it for anything.

For an example to illustrate the fallacious reasoning of OSS = trust, consider the malicious compiler that Ken Thompson presented[1].

[1] https://wiki.c2.com/?TheKenThompsonHack

Re: Reporting a user to WhatsApp forwards a copy of recent messages from that chat

#9

E2E encryption in closed source automatically updated programs doesn't provide any real assurance: whoever makes the program can subvert your privacy at any time. Do you trust the author of the program? Then E2E doesn't add much. Do you not trust the author of the program? E2E doesn't help. Either way, what's the point? Sure, I guess E2E provides some kind of additional privacy at the margin or something, but you can…

[deleted]

Re: Reporting a user to WhatsApp forwards a copy of recent messages from that chat

#10

E2E encryption in closed source automatically updated programs doesn't provide any real assurance: whoever makes the program can subvert your privacy at any time. Do you trust the author of the program? Then E2E doesn't add much. Do you not trust the author of the program? E2E doesn't help. Either way, what's the point? Sure, I guess E2E provides some kind of additional privacy at the margin or something, but you can…

> Do you trust the author of the program?

I agree, but also if you don't trust the recipient you're sunk to.

Perhaps the better way to do this is to ask for permission to screenshot the message.

either way, if there is no way to send info about the messages that are "offending" there is no real way to police the spread of it. (assuming that you've done your encryption properly.)

Post reply on HN