Saikat Datta Profile picture
Sep 24, 2020 13 tweets 6 min read Read on X
Following the "revelation" of #WhatsApp chats of Bollywood actors, a short #thread on the #tech, #encryption #surveillance and #law. How did the police access the chats and what it means for privacy. 1/n
Messaging apps like #WhatsApp and @signalapp offer end-to-end #encryption. Incidentally, the protocol for both was designed by one of my favourite engineers and genius @moxie and his group.
Two key things to remember about accessing data -- is the data at rest (on your device) or in transit (when you hit the send message). If it's in transit, then e-to-e encryption makes its difficult to intercept. Only 10 agencies in India are notified to do this interception
When data is at rest in your device, this is a lot easier to access by police/intelligence. In India, in most cases, the police puts enormous pressure on suspects and the accused to share passwords of device or cloud where the data is stored.
In the current case where WhatsApp data is being accessed, this is a case of data at rest that was accessed by the police. Probably, by asking suspects/accused to share their pass keys. Is it legal? Probably not. Article 20(3) of the Constitution actually prohibits it.
You can't be forced to share data that can lead to self incrimination. But my lawyer friends will be able to share more - @MenakaGuruswamy @arundhatikatju @kazimriz -- can share more on these legal aspects of accessing data at rest by forcing the password out if you
Remember the Apple Vs @FBI case? In that case Apple didn't share the passkey to the device, but FBI found a jailbreak to the device. Apple later patched the vulnerability that FBI used to access the data. But coming back to India -- if you have WhatsApp --
It all depends on what your device data storage policy is. If the device policy allows the even deleted data to be stored, then even if you delete the message, then it is likely to be retrieved by using forensic tools. That seems to be have happened in the Bollywood case.
Can this be used as evidence in a court of law. Much depends on how the court will view the chain of custody on digital data as defined under the Indian Evidence Act, including issues like the Hash value, Mac address of the device etc.
If you use a e-to-e service that also allows messages to "disappear" after a while, your data is a lot safer. WhatsApp doesn't have that feature right now. The big question is how is the media getting these chats since it is a serious privacy violation even before trial starts?
Remember, the govt argued in the Supreme Court that #privacy is *NOT* a fundamental right. But in the #Puttuswamy judgement the nine-judge bench SC unanimously ruled that privacy is a fundamental right. But with the PDP Bill still pending, there's little protection right now
Finally, are your #WhatsApp chats safe when it is in transit. Yes, it is. Even if the company hands over the chats under an MLAT request -- it will be encrypted and not plain text.
Some will say that #privacy isn't important while investigating crime. That's as good as saying that law and procedures aren't important while investigating crimes. If you weaken laws, you weaken your rights. It will come back to bite to you. So be careful of what you wish for.

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Saikat Datta

Saikat Datta Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @saikatd

Feb 7, 2022
For readers in India, a critical story breaking from @tomer_ganon of the @calcalist in Israel. Turns our #Pegasus was also used by Israeli Police to target not only activists and journalists, but also CEOs and politicians. #thread #surveillance
Here is an English report published in the @haaretzcom that details the @calcalist story for readers in India. Some of the names on the list will stun you.
haaretz.com/israel-news/ca…
According to the Israeli media report, even the son of former prime minister Binyamin Netanyahu became an unwilling target as his phone was infected. The phone was occasionally being used by the PM's wife. Imagine the level of security breach.
Read 12 tweets
Jun 2, 2021
Very important order from the Supreme Court and definitely worth reading. Will tweet some excerpts for about the issues raised. As usual, Justice Chandrachud and his colleagues on the Bench have brought in a lot of clarity #Thread #COVID19 #vaccination
images.assettype.com/barandbench/20…
The SC settles that #vaccination is a central government responsibility: "Thus, the management of the pandemic, control of the spread of COVID-19, vaccination policy and pricing, are the responsibility of the Central Government," which must work with State Govts 2/n
The quota of 25% to States, the SC says, "is extremely disproportionate and not in touch with societal realities". So the "quota available to the private hospitals must be reduced" 3/n
Read 22 tweets
May 5, 2021
For citizens in #Gurugram #Gurgaon, @DC_Gurugram has launched a @WhatsApp chatbot for its citizens. We worked with them to ensure citizens have an additional platform to seek help.
Weblink: wa.me/919643277788?t…

Please save the Phone number 👇🏼👇🏼 #thread Image
This is a service *Only* for District #Gurugram. Please don't use it for testing. It will only overload the system.

This is an effort to reach patients at home and help them. As the Bot stabilises in a few days, we will add more services to it.
The Bot was a race against time. We hope it will help people and help the administration to reach them and taken care of them.
As it becomes better, we will try and roll it out to more districts
Stay safe. #Gurugram Image
Read 4 tweets
Jun 26, 2020
The #chineseincursions into India and the #Covid_19 pandemic threat -- are two major back-to-back intelligence failures -- collection & analysis -- for India. My column for @DeccanChronicle
deccanchronicle.com/opinion/column…
The failure of intelligence is a political failure. No government wants to reform Indian intelligence for current and future threats
deccanchronicle.com/opinion/column…
Reform after reform in intelligence is reactive and half-baked. RN Kao attempted one after the 1962 war with China. That experiment has also failed
deccanchronicle.com/opinion/column…
Read 4 tweets
Jun 18, 2020
Why did the plethora of Indian security agencies miss the massive Chinese build up? Turns out, it hadn't. But there were many Kargil-type failures in assessing Chinese intentions. My piece
deccanchronicle.com/opinion/column…
The ITBP and the army has elaborate patrolling protocols that are jointly planned by MoD and MHA. They carry GPS and collect waypoints as they patrol. Why did they miss out on the Chinese build up? Or did they?
deccanchronicle.com/opinion/column…
XXIV Corps Commander, a former DGMI, was warned about Chinese moves to change status quo? Why did he miss reading the reason leaves in his op area?
deccanchronicle.com/opinion/column…
Read 4 tweets
Jun 18, 2020
A little bit of focussed policing can do wonders for citizens. Have been witnessing how @TrafficGGM has been working to reduce fatalities and accidents. The numbers speak for themselves. A short #thread
@mlkhattar @anilvijminister @nsvirk
In January 2019 there were 122 road accidents. By December 2019 this came down to 81.
In the same period fatalities reduced from 50 to 27.
@mlkhattar @anilvijminister @nsvirk @TrafficGGM
In January 2020, there were 85 road accidents. By June they are at 33.
Now there's a dedicated effort to map the entire district and the highways to ensure better signs, better road engineering and deployment of @TrafficGGM personnel.
@mlkhattar @anilvijminister @nsvirk
Read 4 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(