NoGoolag
4.54K subscribers
13.1K photos
6.88K videos
587 files
14.1K links
Download Telegram
WhatsApp, Threema, Wire and Telegram to cooperate and decrypt in Germany

According to SPIEGEL information, the Ministry of the Interior (Germany) wants to force providers such as WhatsApp,
Threema, Wire and Telegram to cooperate and decrypt. They are to give readable chats to the authorities on a court order.

Federal Interior Minister Horst Seehofer (CSU) wants to give security authorities access to standard end-to-end encrypted chats and telephone calls. Messenger services such as WhatsApp or Telegram are to be obligated to record the communications of their customers on court order and send them to the authorities - in readable form, i.e. unencrypted. As SPIEGEL reports in its current issue, providers who do not comply with this obligation should be able to be blocked for Germany by order of the Federal Network Agency.

So far, only so-called source telecommunications surveillance is legally possible. To do this, you have to play a Trojan on each suspect's smartphone. The new obligations are to be launched by the end of the year.

The project is provoking protests from the companies concerned. Like WhatsApp, many offer their customers complete encryption ("end-to-end") of all communication content and so far have no access to such messages themselves. "This would have catastrophic consequences," says Alan Duric, co-founder of Wire, the Berlin-based messenger service. The project is dangerous, it would expose users to unacceptable risks.

The creators of Threema, of whose approximately five million users more than 80 percent live in the German-speaking world, are also reacting negatively. "Absolute confidentiality of communication" is "in the DNA of Threema", said a company spokesman. "We are not prepared to make any compromises. They do not have any infrastructure in Germany and therefore do not fall under German law. Should Germany want to prevent the use of Threema, "the country would seamlessly join the ranks of totalitarian states such as China or Iran".

https://www.spiegel.de/netzwelt/netzpolitik/horst-seehofer-will-messengerdienste-zum-entschluesseln-zwingen-a-1269121.html

#decrypt #whatsapp #telegram #wire #threema #germany #statetrojan #backdoor #why
📡@cRyPtHoN_INFOSEC_DE
📡@cRyPtHoN_INFOSEC_EN
📡@cRyPtHoN_INFOSEC_ES
📡@FLOSSb0xIN
Letter to the eff (Electronic Frontier Foundation)

Dear ladies and gentlemen,

The legal situation in the EU and especially in Germany is getting worse every week.
After the upload filters, the state now demands that backdoors be built into the new 5G network so that the state can listen in and stingrays can be used effectively again (https://fm4.orf.at/stories/2982118/).


The highlight today is the news that Federal Interior Minister Horst Seehofer (CSU) wants to give security authorities access to standard end-to-end encrypted chats and telephone calls.
Messenger services such as WhatsApp or Telegram are to be obligated to record the communication of their customers on court order and send it to the authorities - in readable form, i.e. unencrypted. As SPIEGEL reports in its current issue, providers who do not comply with this obligation should be able to be blocked for Germany by order of the Federal Network Agency. (https://www.spiegel.de/netzwelt/netzpolitik/horst-seehofer-will-messengerdienste-zum-entschluesseln-zwingen-a-1269121.html)


These are all serious measures and the EU and Germany in particular are increasingly developing into a surveillance state.


We need help, we need attention, we need to make people think.


I would be happy to hear from you and be very grateful for any advice.


Yours sincerely

📡 @NoGoolag
#eff #decrypt #whatsapp #telegram #wire #threema #germany #statetrojan #backdoor #why #eu
Germany mulls giving end-to-end chat app encryption das boot: Law requiring decrypted plain-text is in the works

Officials want to upgrade rules from device searching to message interception


Government officials in Germany are reportedly mulling a law to force chat app providers to hand over end-to-end encrypted conversations in plain text on demand.

According to Der Spiegel this month, the Euro nation's Ministry of the Interior wants a new set of rules that would require operators of services like WhatsApp, Signal, Apple iMessage, and Telegram to cough up plain-text records of people's private enciphered chats to authorities that obtain a court order.

This would expand German law, which right now only allows communications to be gathered from a suspect's device itself, to also include the companies providing encrypted chat services and software. True and strong end-to-end encrypted conversations can only be decrypted by those participating in the discussion, so the proposed rules would require app makers to deliberately knacker or backdoor their code in order to comply. Those changes would be needed to allow them to collect messages passing through their systems and decrypt them on demand.

Up until now, German police have opted not to bother with trying to decrypt the contents of messages in transit, opting instead to simply seize and break into the device itself, where the messages are typically stored in plain text.

The new rules are set to be discussed by the members of the interior ministry in an upcoming June conference, and are likely to face stiff opposition not only on privacy grounds, but also in regards to the technical feasibility of the requirements.

Spokespeople for Facebook-owned WhatsApp, and Threema, makers of encrypted messaging software, were not available to comment.

The rules are the latest in an ongoing global feud between the developers of secure messaging apps and the governments. The apps, designed in part to let citizens, journalists, and activists communicate secured from the prying eyes of oppressive government regimes.

https://www.theregister.co.uk/2019/05/28/german_government_encryption/

Read as well:
Germany Seeks Access to Encrypted Messages on WhatsApp, Telegram
https://www.infosecurity-magazine.com/news/germany-seeks-access-to-encrypted/

📡 @NoGoolag
https://t.me/NoGoolag/1259

#decrypt #encrypt #whatsapp #telegram #wire #threema #germany #statetrojan #backdoor #why #eu
📡@cRyPtHoN_INFOSEC_DE
📡@cRyPtHoN_INFOSEC_EN
📡@cRyPtHoN_INFOSEC_ES
📡@FLOSSb0xIN
Electronic Frontier Foundation reply regarding "The legal situation in the EU and especially in Germany is getting worse every week."

👉🏼 https://t.me/NoGoolag/1261

📡 @NoGoolag
#eff #decrypt #whatsapp #telegram #wire #threema #germany #statetrojan #backdoor #why #eu
Threema Goes Open Source, Welcomes New Partner

Strengthened Through Partnership

After an intense startup phase, Threema lays the foundation for continuity, further growth, and an acceleration of the product development thanks to the entry of the German-Swiss investment company Afinum Management AG.

Afinum fully shares our values regarding security and privacy protection. The additional resources gained through this partnership enable Threema to grow beyond the German-speaking part of Europe, and we can use our energy for visionary new ideas and projects. That said, Threema’s founders – Manuel Kasper, Silvan Engeler, and Martin Blatter, all software developers – will continue to lead the company and still retain a significant ownership interest.

Open Source and Multi Device

Security and privacy protection are deeply ingrained in Threema’s DNA, which is why our code gets reviewed externally on a regular basis. Within the next months, the Threema apps will become fully open source, supporting reproducible builds. This is to say that anyone will be able to independently review Threema’s security and verify that the published source code corresponds to the downloaded app.

In the future, it will be possible to use multiple devices in parallel thanks to an innovative multi-device solution. In contrast to other approaches, no trace of personal data will be left behind on a server. Thanks to this technology, Threema can be used on a PC without a smartphone.

In conclusion, Threema will become even more trustworthy and even more convenient to use.

👀 👉🏼 https://threema.ch/en/blog/posts/open-source-and-new-partner

#threema #opensource #afinum #swiss #germany
📡@cRyPtHoN_INFOSEC_DE
📡
@cRyPtHoN_INFOSEC_EN
📡
@BlackBox_Archiv
📡
@NoGoolag
Threema boss: Master key for secret services "not possible at all

The head of the messenger service Threema has sharply criticized demands for access to private chat messages for state security authorities. "These demands for a master key testify to the inexperience of the authorities," Martin Blatter told Welt am Sonntag. Technically, he said, it was not even possible. "We don't have a master key that we could deposit. The encryption is done by the users and not by us.

"Criminals almost always already known to the authorities"

In mid-November, alleged plans by EU countries to ban the secure encryption of messages on channels such as WhatsApp caused a great stir. The German EU Council Presidency had drafted a resolution on the subject. However, the paper was vaguely formulated and did not go into detail about how security authorities should be able to decrypt encrypted messages. Nevertheless, civil rights activists and data protectionists strongly criticized the initiative.

Blatter also emphasized that in the case of terrorist attacks, the perpetrators were almost always already known to the authorities and on file. "This means that politicians have not managed to protect citizens". In the newspaper interview, he also spoke of U.S. secret services having forced manufacturers of routers to install back doors, which in the end were also used by China.

👀 👉🏼 Translated with DeepL
https://telegra.ph/Threema-Chef-Generalschl%C3%BCssel-f%C3%BCr-Geheimdienste-gar-nicht-m%C3%B6glich-11-29

via www.heise.de

#fiveeyes #intelligence #eu #encryption #messenger #threema #cryptowars #thinkabout
📡@cRyPtHoN_INFOSEC_DE
📡
@cRyPtHoN_INFOSEC_EN
📡
@BlackBox_Archiv
📡
@NoGoolag
Whatsapp, Threema & Co.: Messenger must hand over personal data

A new telecommunications law provides new surveillance powers for security authorities. It also includes data retention.

The new Telecommunications Act (TKG) has it all. On 465 pages, messengers and e-mail are declared to be telecommunications services, thus introducing surveillance powers similar to those for conventional telephones. Data retention and faster network expansion also appear in the bill. This is to be decided on a fast-track basis.

Whereas many of the provisions of the Telecommunications Act previously applied to Internet providers or telephone providers, they will now be extended to so-called over-the-top services such as e-mail providers or messengers like Whatsapp, Signal, Threema, Telegram or Wire. According to the so-called Gmail ruling of the European Court of Justice (ECJ), these are not telecommunications services, and accordingly the surveillance powers of the security authorities do not apply to them.

With the TKG amendment, messengers that collect inventory data such as name, address or an identifier such as phone number, user name or other ID are obliged to store this data and hand it over to security authorities upon request, even if the account has already been deleted.

👉🏼 Source 🇩🇪 👈🏼
https://www.golem.de/news/whatsapp-threema-co-messenger-sollen-bestandsdaten-herausgeben-muessen-2012-152770.html

#whatsapp #threema #telegram #personaldata #surveillance #authorities #messenger #netpolitics #thinkabout
📡@cRyPtHoN_INFOSEC_DE
📡
@cRyPtHoN_INFOSEC_EN
📡
@NoGoolag
📡
@BlackBox
Threema publishes source code and lowers prices

The messenger service has disclosed its complete source code and cut its app prices by half.

After the service had already revealed its cryptographic processes to the public for some time, the next step now follows. The entire source code of the apps can now be viewed. It is subject to the third version of the GNU Affero General Public License (AGPLv3). Using reproducible builds, specialists can check at any time whether it matches the source code of the sales apps. Due to Apple's app store policies, this is currently only possible via the Android versions.

https://telegra.ph/Open-Source-Threema-publishes-source-code-and-lowers-prices---Aroged-12-21

via www.aroged.com

Source Code and Documentation:
https://threema.ch/de/open-source

👉🏼 Criticism (in German)
https://mastodon.social/@larma/105417391165300578

#threema #messenger #opensource
📡@cRyPtHoN_INFOSEC_DE
📡
@cRyPtHoN_INFOSEC_EN
📡
@BlackBox_Archiv
📡
@NoGoolag
ProtonMail, Tutanota among authors of letter urging EU to reconsider encryption rules

Encrypted service providers are urging lawmakers to back away from a controversial plan that critics say would undercut effective data protection measures.

ProtonMail, Threema, Tresorit and Tutanota — all European companies that offer some form of encrypted services — issued a joint statement this week declaring that a resolution the European Council adopted on Dec. 14 is ill-advised. That measure calls for “security through encryption and security despite encryption,” which technologists have interpreted as a threat to end-to-end encryption. In recent months governments around the world, including the U.S., U.K., Australia, New Zealand, Canada, India and Japan, have been reigniting conversations about law enforcement officials’ interest in bypassing encryption, as they have sporadically done for years.

In a letter that will be sent to council members on Thursday, the authors write that the council’s stated goal of endorsing encryption, and the council’s argument that law enforcement authorities must rely on accessing electronic evidence “despite encryption,” contradict one another. The advancement of legislation that forces technology companies to guarantee police investigators a way to intercept user messages, for instance, repeatedly has been scrutinized by technology leaders who argue there is no way to stop such a tool from being abused.

https://www.cyberscoop.com/encryption-europe-tutanota-protonmail-threema-tresorit/

#tutanota #protonmail #threema #eu #encryption
📡@cRyPtHoN_INFOSEC_DE
📡
@cRyPtHoN_INFOSEC_EN
📡
@BlackBox_Archiv
📡
@NoGoolag
6 Best Secure Messaging Alternatives to WhatsApp | Avoid the Hack – https://avoidthehack.com/best-secure-messengers

The content of your messages and the metadata associated with them should be secure and private. Unfortunately many messengers out there fail to do this.

Telegram operates in the cloud, and while this does have good portability across multiple devices and device types, the service provider (or anyone with access to the cloud server) could theoretically read them at any time with relative ease; Telegram stores messages on the third-party cloud provider's server.
According to Telegram’s privacy policy, the service itself logs IP addresses and phone numbers.

#Infosec #Session #SimpleXchat #Briar #Threema
#Element #Telegram #privacy