Live data from Hacker News

Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

haddadi.github.io

51–60 of 164 posts

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#51
post #36

Total lack of response to this letter will speak volumes about the essential nature of this UK Government. The UK Opposition Party's view as of last January is here: https://www.theguardian.com/technology/2023/jan/01/labour-pl... . Background: https://www.theverge.com/23708180/united-kingdom-online-safe...

> The government disagrees and says the bill “does not represent a ban on end-to-end encryption, nor will it require services to weaken encryption.”

The bill mandates an end-run around E2E encryption. Government spokespeople are deeply disingenuous about this; the two ends are me and you, metaphorically; two users. If there's anything in the channel before the content is encrypted or after it's decrypted, then it isn't end-to-end any more.

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#52
post #46
post #44

As I understand it, most UK public are in favour of this bill almost Pavlovianly. There is a clear disconnect between us, the tech know-how, and the general public.

The UK public are extremely conservative, and extremely misinformed by conservative news sources. That's at the root of a lot of the demand for authoritarianism.

Conservative? Has Labour opposed any of it?

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#53
post #44

As I understand it, most UK public are in favour of this bill almost Pavlovianly. There is a clear disconnect between us, the tech know-how, and the general public.

Unfortunately, I think the only way for that situation to change is for enough members of the general public to be caught up in some kind of accidental suspicion or publication of their personal data.

And I think those who are proposing these kinds of bills know this, and are protected by how unlikely it would be to reach any kind of critical mass organically.

I'm sure there are laws against the encouragement of others to commit a crime, but ... wink wink.

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#54
post #9
post #7

Earlier quoted context omitted.

I don't see why it is inevitable. In fact, I very see the opposite. Passing this kind of legislation will kill e-commerce for sure, so it will never happen.

kill; e-commerce, in store payment terminals, online banking, all https, email, biometric passports etc. It would be a return to the pre internet era, so probably is the will of the people and on form for the UK. I kind of hope they pass it then realise what it actually means.

> kill; e-commerce, in store payment terminals, online banking, all https, email, biometric passports etc.

Hold on! Kill all HTTPS? Biometric passports? I haven't tried to read the bill, but AFAIK there are no provisions in the bill that attack HTPPS, and given that biometric passports are not a communications technology, I don't see how they could be impacted.

I don't see how the bill impacts email at all; opportunistic SMTP encryption isn't E2E in the first place, and PGP is rarely used in email. And when it is used, it's usually to sign rather than to encrypt.

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#55
post #46
post #44

As I understand it, most UK public are in favour of this bill almost Pavlovianly. There is a clear disconnect between us, the tech know-how, and the general public.

The UK public are extremely conservative, and extremely misinformed by conservative news sources. That's at the root of a lot of the demand for authoritarianism.

Starmer et al. aren't any less authoritarian than the Tories.

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#56
post #46

Earlier quoted context omitted.

The UK public are extremely conservative, and extremely misinformed by conservative news sources. That's at the root of a lot of the demand for authoritarianism.

Conservative? Has Labour opposed any of it?

I believe here it is used as an adjective, not the name of a political party.

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#57
post #16
post #9

Earlier quoted context omitted.

kill; e-commerce, in store payment terminals, online banking, all https, email, biometric passports etc. It would be a return to the pre internet era, so probably is the will of the people and on form for the UK. I kind of hope they pass it then realise what it actually means.

It's not going to be enforced that way even if that's what the text says. Although it might get spicy if one of the megacorps decides the legal risk is real and withdraws from the UK market.

It will be enforced against undesirable market places though. Winners and losers will be selected.

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#58
Sigh...

Beyond the security researchers' own little "computer savvy 1%" bubble, is there any intended audience for such Open Letters?

Could they actually communicate with normal people if they (somehow) wanted to?

Are there laws in the UK that make it too risky to just say something like "This bill will make it so much easier for the next Wayne Couzens to find his perfect Sarah Everard."?

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#59
post #44

As I understand it, most UK public are in favour of this bill almost Pavlovianly. There is a clear disconnect between us, the tech know-how, and the general public.

> As I understand it, most UK public are in favour of this bill

Do you understand this from polling? Can't trust UK media outlets on public opinion, they push, they don't pull. If the public doesn't agree with them, they all will run variations of the same story, aimed at the same targets, for years until they do.

Re: Open Letter from Security Researchers in Relation to the Online Safety Bill [pdf]

#60

Sigh... Beyond the security researchers' own little "computer savvy 1%" bubble, is there any intended audience for such Open Letters? Could they actually communicate with normal people if they (somehow) wanted to? Are there laws in the UK that make it too risky to just say something like "This bill will make it so much easier for the next Wayne Couzens to find his perfect Sarah Everard."?

This is directed primarily to politicians about to vote on the bill.
Post reply on HN