Following the "revelation" of #WhatsApp chats of Bollywood actors, a short #thread on the #tech, #encryption#surveillance and #law. How did the police access the chats and what it means for privacy. 1/n
Messaging apps like #WhatsApp and @signalapp offer end-to-end #encryption. Incidentally, the protocol for both was designed by one of my favourite engineers and genius @moxie and his group.
Two key things to remember about accessing data -- is the data at rest (on your device) or in transit (when you hit the send message). If it's in transit, then e-to-e encryption makes its difficult to intercept. Only 10 agencies in India are notified to do this interception
When data is at rest in your device, this is a lot easier to access by police/intelligence. In India, in most cases, the police puts enormous pressure on suspects and the accused to share passwords of device or cloud where the data is stored.
In the current case where WhatsApp data is being accessed, this is a case of data at rest that was accessed by the police. Probably, by asking suspects/accused to share their pass keys. Is it legal? Probably not. Article 20(3) of the Constitution actually prohibits it.
You can't be forced to share data that can lead to self incrimination. But my lawyer friends will be able to share more - @MenakaGuruswamy@arundhatikatju@kazimriz -- can share more on these legal aspects of accessing data at rest by forcing the password out if you
Remember the Apple Vs @FBI case? In that case Apple didn't share the passkey to the device, but FBI found a jailbreak to the device. Apple later patched the vulnerability that FBI used to access the data. But coming back to India -- if you have WhatsApp --
It all depends on what your device data storage policy is. If the device policy allows the even deleted data to be stored, then even if you delete the message, then it is likely to be retrieved by using forensic tools. That seems to be have happened in the Bollywood case.
Can this be used as evidence in a court of law. Much depends on how the court will view the chain of custody on digital data as defined under the Indian Evidence Act, including issues like the Hash value, Mac address of the device etc.
If you use a e-to-e service that also allows messages to "disappear" after a while, your data is a lot safer. WhatsApp doesn't have that feature right now. The big question is how is the media getting these chats since it is a serious privacy violation even before trial starts?
Remember, the govt argued in the Supreme Court that #privacy is *NOT* a fundamental right. But in the #Puttuswamy judgement the nine-judge bench SC unanimously ruled that privacy is a fundamental right. But with the PDP Bill still pending, there's little protection right now
Finally, are your #WhatsApp chats safe when it is in transit. Yes, it is. Even if the company hands over the chats under an MLAT request -- it will be encrypted and not plain text.
Some will say that #privacy isn't important while investigating crime. That's as good as saying that law and procedures aren't important while investigating crimes. If you weaken laws, you weaken your rights. It will come back to bite to you. So be careful of what you wish for.
• • •
Missing some Tweet in this thread? You can try to
force a refresh
For readers in India, a critical story breaking from @tomer_ganon of the @calcalist in Israel. Turns our #Pegasus was also used by Israeli Police to target not only activists and journalists, but also CEOs and politicians. #thread#surveillance
According to the Israeli media report, even the son of former prime minister Binyamin Netanyahu became an unwilling target as his phone was infected. The phone was occasionally being used by the PM's wife. Imagine the level of security breach.
Very important order from the Supreme Court and definitely worth reading. Will tweet some excerpts for about the issues raised. As usual, Justice Chandrachud and his colleagues on the Bench have brought in a lot of clarity #Thread#COVID19#vaccination images.assettype.com/barandbench/20…
The SC settles that #vaccination is a central government responsibility: "Thus, the management of the pandemic, control of the spread of COVID-19, vaccination policy and pricing, are the responsibility of the Central Government," which must work with State Govts 2/n
The quota of 25% to States, the SC says, "is extremely disproportionate and not in touch with societal realities". So the "quota available to the private hospitals must be reduced" 3/n
This is a service *Only* for District #Gurugram. Please don't use it for testing. It will only overload the system.
This is an effort to reach patients at home and help them. As the Bot stabilises in a few days, we will add more services to it.
The Bot was a race against time. We hope it will help people and help the administration to reach them and taken care of them.
As it becomes better, we will try and roll it out to more districts
Stay safe. #Gurugram
The failure of intelligence is a political failure. No government wants to reform Indian intelligence for current and future threats deccanchronicle.com/opinion/column…
Reform after reform in intelligence is reactive and half-baked. RN Kao attempted one after the 1962 war with China. That experiment has also failed deccanchronicle.com/opinion/column…
Why did the plethora of Indian security agencies miss the massive Chinese build up? Turns out, it hadn't. But there were many Kargil-type failures in assessing Chinese intentions. My piece deccanchronicle.com/opinion/column…
The ITBP and the army has elaborate patrolling protocols that are jointly planned by MoD and MHA. They carry GPS and collect waypoints as they patrol. Why did they miss out on the Chinese build up? Or did they? deccanchronicle.com/opinion/column…
XXIV Corps Commander, a former DGMI, was warned about Chinese moves to change status quo? Why did he miss reading the reason leaves in his op area? deccanchronicle.com/opinion/column…
A little bit of focussed policing can do wonders for citizens. Have been witnessing how @TrafficGGM has been working to reduce fatalities and accidents. The numbers speak for themselves. A short #thread @mlkhattar@anilvijminister@nsvirk
In January 2019 there were 122 road accidents. By December 2019 this came down to 81.
In the same period fatalities reduced from 50 to 27. @mlkhattar@anilvijminister@nsvirk@TrafficGGM
In January 2020, there were 85 road accidents. By June they are at 33.
Now there's a dedicated effort to map the entire district and the highways to ensure better signs, better road engineering and deployment of @TrafficGGM personnel. @mlkhattar@anilvijminister@nsvirk