Search Mailing List Archives


Limit search to: Subject & Body Subject Author
Sort by: Reverse Sort
Limit to: All This Week Last Week This Month Last Month
Select Date Range     through    

[liberationtech] Cryptography super-group creates unbreakable encryption

scarp scarp at tormail.org
Thu Feb 7 09:25:09 PST 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

scarp:
> Douglas Lucas:
>> Is it because something unverifiable is allegedly better than 
>> nothing? Even if we had divine knowledge to tell us Silent
>> Circle is secure, isn't it an overriding problem to encourage
>> lock-in of closed source being acceptable for something as common
>> as text-messaging?
> 
>> It is good to have a scrappy talented young person such as Nadim 
>> being pesky to older, accepted people.
> 
> Agreed, and this is one of the larger problems people in social 
> censorship bubbles, where basically if you don't have the tech you 
> can't talk to the person. One of the things that encryption 
> technologies like Off the Record Messaging try to bridge.
> 
> Nobody wants to be forced to use specific technology from a
> specific individual or entity. It's bad enough everyone uses
> Facebook.
> 
> Decentralization is the only way to avoid this becoming a weak
> link.
> 

Which brings me to another point, what if in 1991 Phil Zimmermann said
you must use his bbs/email server to use PGP, and wouldn't release the
source for the encrypting client? I wonder if it would be as popular
as it is today if that was the case.

I find it also amusing:

https://en.wikipedia.org/wiki/Pretty_Good_Privacy#Criminal_investigation
> Shortly after its release, PGP encryption found its way outside the
> United States, and in February 1993 Zimmermann became the formal
> target of a criminal investigation by the US Government for
> "munitions export without a license". Cryptosystems using keys
> larger than 40 bits were then considered munitions within the
> definition of the US export regulations; PGP has never used keys
> smaller than 128 bits so it qualified at that time. Penalties for
> violation, if found guilty, were substantial. After several years,
> the investigation of Zimmermann was closed without filing criminal
> charges against him or anyone else. Zimmermann challenged these
> regulations in a curious way. He published the entire source code
> of PGP in a hardback book,[13]

To me this seems like a big middle finger to totalitarian government
dictating how and who it must be used by. Of course by this point the
government couldn't stop people using it even if they wanted to, the
source was everywhere.

Given his interest in anti-nuclear activism, I wonder if in today's
world that could have been construed as anti-government and possibly a
person of interest by the government.

The other question is what's to stop Apple being legally forced to
push a modified copy of this software to a person's phone that has a
backdoor?

While people might say this isn't possible due to XXX law, what is to
prevent one being created that changes that. Encryption technology's
effectiveness should not be based on what the government is allowed
and not allowed to do. I guess this is an inherent problem with
storing data in the cloud.

> For an annual price of $20/month (closer to $30/month on their
> 3-month plan)

Poorer people of poorer nations won't be able to afford this, and
neither will the average citizen care enough to pay this.

I don't imagine some factory worker in china for example who earns 50
cents a day being able to pay for this so he can talk about how shitty
the conditions are.

To me it seems like it will only get used by businesses and enterprise
needing security abroad rather than activists residing in areas where
they would need it in order to have some semblance of freedom.

- -- 
scarp | A4F7 25DB 2529 CB1A 605B  3CB4 5DA0 4859 0FD4 B313
-----BEGIN PGP SIGNATURE-----
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=whpX
-----END PGP SIGNATURE-----



More information about the liberationtech mailing list