This is the same company that said that it "won't encrypt free calls so it can work more with law enforcement"[1]. I'd stay away. [1]: https://news.ycombinator.com/item?id=23399924
This blog post specifically says that it's a walk-back of the policy announced in your link.
Zoom to bring end-to-end encryption to all users, including non-paying
51–60 of 557 posts
Re: Zoom to bring end-to-end encryption to all users, including non-paying
#52Does anyone actually trust Zoom, though?
Re: Zoom to bring end-to-end encryption to all users, including non-paying
#53Re: Zoom to bring end-to-end encryption to all users, including non-paying
#54Earlier quoted context omitted.
Yes. The whole point of end-to-end encryption is that your data is safe even when it goes through untrusted servers. (I know they might have a backdoor, or might screw it up somehow. But in principle, if they do it securely, then this holds.)
Is it possible for Zoom / the CCP to hold the encryption keys? That would make it insecure, right? (genuine question).
Re: Zoom to bring end-to-end encryption to all users, including non-paying
#55I still use it, don't get me wrong. My threat model for the use case that I make of zoom does not need strong encryption, only being script kiddies proof.
Re: Zoom to bring end-to-end encryption to all users, including non-paying
#56Earlier quoted context omitted.
Because of its inevitable ties and implicit subservience to the CCP.
The only "relevant" information found in the quote in the GP comment is the nationality of the CEO. How does one jump from the CEO's nationality to inevitable ties and implicit subservience to CCP?
Re: Zoom to bring end-to-end encryption to all users, including non-paying
#57in any case, if the trust isn't there, you can't validate the E2EE, so your risk profile with regards to using the software doesn't change much.
Re: Zoom to bring end-to-end encryption to all users, including non-paying
#58The bright green "Start" and "Schedule Meeting" buttons just pop up an error. The correct button to progress is the dark grey (as if disabled) "Next" button.
It prompts me to create a "personal conference number", whatever that is. This errors and tells that I need set a PIN in my preferences. I search for the preferences for a while and eventually find that I _do_ have a host PIN set...
At this point I gave up.
Gripes on the participant side: Why does it ask me to provide my name in the browser when joining a meeting before launching the app which already knows my name? Why do I have to manually press the refresh button to discover scheduled meetings?
Cisco pulled a Boeing with the development of one of their crown jewels, and Zoom swooped in, even with shady practices, and snatched up significant market share.
Re: Zoom to bring end-to-end encryption to all users, including non-paying
#59It’s still only opt-in. Users have to submit an application (including text message verification and other personal info) to gain access to E2E encryption. Zoom has shown that it does not care about privacy.
Well to be fair if it was enabled by default it would break dial in (with traditional telephone) support as E2E doesn’t allow for that. This is a reason why even some large paying organisations haven’t enabled E2E
Re: Zoom to bring end-to-end encryption to all users, including non-paying
#60Earlier quoted context omitted.
Wait, your point is that Zoom is evil because the founder is Chinese?
Yeah what the fuck, that was some weird casual racism you don't expect to see on HN.