A brief history of the U.S. trying to add backdoors into encrypted data (2016)
1–10 of 207 posts
Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#2I know puri.sm[0] takes some steps to try to plug the hole, but haven't read up to see if it's effective or no.
Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#3Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#4 FBI director James Comey have publicly lobbied for the insertion of cryptographic “backdoors” into software and hardware to allow law enforcement agencies to bypass authentication and access a suspect’s data surreptitiously. Cybersecurity experts have unanimously condemned the idea, pointing out that such backdoors would fundamentally undermine encryption and could exploited by criminals, among other issues.
"could exploited by criminals" is sadly a disingenuous claim. A cryptographic backdoor is presumably a "Sealed Box"[1] type construct (KEM + symmetric-cipher-encrypted package). As long as the government can keep a private key secure only they could make use of it.There are plenty of reasons not to tolerate such a backdoor, but using false claims only provides potential ammunition to the opposition.
[1] https://libsodium.gitbook.io/doc/public-key_cryptography/sea...>
Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#5FBI director James Comey have publicly lobbied for the insertion of cryptographic “backdoors” into software and hardware to allow law enforcement agencies to bypass authentication and access a suspect’s data surreptitiously. Cybersecurity experts have unanimously condemned the idea, pointing out that such backdoors would fundamentally undermine encryption and could exploited by criminals, among other issues. "could e…
Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#6FBI director James Comey have publicly lobbied for the insertion of cryptographic “backdoors” into software and hardware to allow law enforcement agencies to bypass authentication and access a suspect’s data surreptitiously. Cybersecurity experts have unanimously condemned the idea, pointing out that such backdoors would fundamentally undermine encryption and could exploited by criminals, among other issues. "could e…
If the power doesn't exist, nobody can exploit it.
Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#7FBI director James Comey have publicly lobbied for the insertion of cryptographic “backdoors” into software and hardware to allow law enforcement agencies to bypass authentication and access a suspect’s data surreptitiously. Cybersecurity experts have unanimously condemned the idea, pointing out that such backdoors would fundamentally undermine encryption and could exploited by criminals, among other issues. "could e…
It's not a false claim, assuming the feds will keep such a key "secure" is not backed by evidence. Top secret materials are leaked all the time. Private keys from well secured systems are extracted from hacks. The FBI having such a key would make them a very profitable target for the various corps that specialize in hacking for hire. For example, NSO group. If the power doesn't exist, nobody can exploit it.
The times highly valuable cryptographic keys leaked for various cryptocurrency exchanges it has generally if not always been due to gross negligence.
Such a key would be highly sensitive and it would also require very little traffic to use. You would just need to send the secure system a KEM (I don't doubt they could secure it. Can even split the key into shares and require multiple parties to be present in the secure location.
Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#8FBI director James Comey have publicly lobbied for the insertion of cryptographic “backdoors” into software and hardware to allow law enforcement agencies to bypass authentication and access a suspect’s data surreptitiously. Cybersecurity experts have unanimously condemned the idea, pointing out that such backdoors would fundamentally undermine encryption and could exploited by criminals, among other issues. "could e…
Your devices would be secure as long as a private key that happened to be the most valuable intelligence asset in the United States, accessed thousands of times per day, by police spread across the entire nation, was never copied or stolen.
Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#9Earlier quoted context omitted.
It's not a false claim, assuming the feds will keep such a key "secure" is not backed by evidence. Top secret materials are leaked all the time. Private keys from well secured systems are extracted from hacks. The FBI having such a key would make them a very profitable target for the various corps that specialize in hacking for hire. For example, NSO group. If the power doesn't exist, nobody can exploit it.
Do military cryptographic keys leak often? Do nuclear codes leak? The times highly valuable cryptographic keys leaked for various cryptocurrency exchanges it has generally if not always been due to gross negligence. Such a key would be highly sensitive and it would also require very little traffic to use. You would just need to send the secure system a KEM ( I don't doubt they could secure it. Can even split the key…
Re: A brief history of the U.S. trying to add backdoors into encrypted data (2016)
#10FBI director James Comey have publicly lobbied for the insertion of cryptographic “backdoors” into software and hardware to allow law enforcement agencies to bypass authentication and access a suspect’s data surreptitiously. Cybersecurity experts have unanimously condemned the idea, pointing out that such backdoors would fundamentally undermine encryption and could exploited by criminals, among other issues. "could e…
And Apple has a backdoor that only Apple can use. Why don't criminals exploit Apple's backdoor?
Looks like criminals were using it for four years undetected.