Skype backdoor confirmation
61–70 of 126 posts
Re: Skype backdoor confirmation
#62Re: Skype backdoor confirmation
#63Earlier quoted context omitted.
No. No. No, no, no, no. These are two different things. One is a feature designed to allow them to check URLs, fetch thumbnails, etc. The other is a very pivotal core decision in how Skype works. Skype has always been primarily node-to-node. Doing p2p connections like that required signaling/directory services. In the past, users' computers were used for that functionality. After their purchase, Microsoft transitione…
I think you are missing the point - the article proves (unless the author is flat out lying) that text chat through skype, which is claimed to be end-to-end encrypted, is not, as requests are being made to the URL. It may currently be for innocent purposes (check URLs, thumbnails etc as you said). However the fact is that they can make these requests at all show that the encryption is not end-to-end, otherwise they w…
Re: Skype backdoor confirmation
#64The main problem is most of my friends (even those who are programmers) cannot be bothered to spend the 20 minutes picking up alternative software so I'm stuck with Skype and Facebook as my primary means of talking to people.
Re: Skype backdoor confirmation
#65Earlier quoted context omitted.
I don't think it's nitpicky at all - it would be different if Skype, Microsoft or anyone else had actually made a promise that messages that pass through their service are unreadable to them. While it's technically possible it's not the norm and it's hard to come up with examples of services that actually do make this promise - tarsnap is one that comes to mind.
Readable is one thing. Read and used is a completely different thing.
Re: Skype backdoor confirmation
#66I guess it's time for Google Hangouts to shine.
Why? I don't think it's encrypted in such a way that Google can't read it. References? I don't think you can trust Google with your chat and docs as well. From: http://www.wired.com/threatlevel/2010/09/google-spy/ >Google acknowledged Wednesday that two employees have been terminated after being caught in separate incidents allegedly spying on user e-mails and chats. >David Barksdale, 27, was fired in July after he r…
Re: Skype backdoor confirmation
#67I guess it's time for Google Hangouts to shine.
Why? I don't think it's encrypted in such a way that Google can't read it. References? I don't think you can trust Google with your chat and docs as well. From: http://www.wired.com/threatlevel/2010/09/google-spy/ >Google acknowledged Wednesday that two employees have been terminated after being caught in separate incidents allegedly spying on user e-mails and chats. >David Barksdale, 27, was fired in July after he r…
The difference being that Google doesn't play at being encrypted end-to-end.
Re: Skype backdoor confirmation
#68Earlier quoted context omitted.
Readable is one thing. Read and used is a completely different thing.
Is it? Gmail reads and uses all mail and this doesn't seem to have generated a great outburst of controversy.
While both Skype and Gmail store your messages (if you Skype across multiple devices, you'll see logs of conversations that happened on different devices), I don't think Gmail probes every URL you send in your messages. Also, SMTP is not always done under SSL, so, privacy cannot be assured.
But that's easily testable. I'll get back to you in a couple hours.
Re: Skype backdoor confirmation
#69We might find somewhere in Skype's ToS a reference to URL checking, for any URLs you send through the service.
The URL checks could also be anonymized.
Re: Skype backdoor confirmation
#70Earlier quoted context omitted.
I have reason to believe that you're wrong, because if you're under surveillance by the FBI or whatever, they will be able to read your mail. Unless you're the ultra-paranoid guy there are ways to get to your password physically :( (so, since you're coming up with GPG which i obviously was not referring to i can also come up with some unlikely scenario, ok?)
I can't really think of how one gets around that link. I'm not sure what you mean.
Of course that excludes GPG (or pasting encrypted text into your skype chat). And that is only true as long as your law enforcement doesn't have you on surveillance. Or unless you can be 100% sure that the NSA really really really can't crack your encryption. And even Bruce Schneier isn't sure about that: https://www.schneier.com/blog/archives/2012/03/can_the_nsa_b...