Amie Stepanovich Profile picture
Apr 1, 2021 9 tweets 2 min read Read on X
I'm so old I remember when experts were saying we need more encryption to address the current cybersecurity threats. lawfareblog.com/most-email-isn…
You know, last week.
Lest we forget, the UK already has draconian anti-encryption provisions in its law, as well as authorization for "bulk hacking," two words which never cease to send chills down my spine.
The case for encouraging greater development and use for encryption has been well-documented, and has only grown stronger over the years. You can see the history at encryptioncompendium.org
Let's dig back into this article, specifically the claim that end-to-end encryption will "prevent any access to messaging content" because it's simply not true. There are a ton of other ways for law enforcement to get access to content for investigations and prosecutions...
We know this partly because there have been successful prosecutions of individuals even where e2e tools are used. A few options - other conversation participants, the device itself (if in custody), hacking the endpoint (allowed in UK law even if I have qualms)...
And the number one way, through human intelligence and information - infiltrating the network and uncovering where the content is coming from. E2e doesn't "prevent" any access. What it does is ensure that access isn't cheap and easy, something important to protecting the data...
protecting both from bad actors as well as from company misuse- you can be assured a company won't use your data in ways you don't want or sell it if they never have it to begin with. That's why encryption is so vital to human rights.
Which isn't to say that the problems in the article - child exploitation and abuse - are not real, significant issues that we need to be paying attention to and devoting resources to. But that doesn't have to-- and shouldn't -- come at the expense of global cybersecurity.
That's why the Lawfare article I started with is calling for *more* encryption. Encryption is - must be - inevitable - so we really should have more conversations about what that means and fewer about how to stop it from happening.

Fin. (for now).

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Amie Stepanovich

Amie Stepanovich Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @astepanovich

Feb 19, 2022
This is why we can't have nice things

gizmodo.com/wordle-ad-trac…
Inevitably someone will come out with the tried and true: "if you're not paying for the service, you're the product"

This has long been a ridiculous, over-used, over-simplified saying. But we really need to kill it....
It's perpetuating this idea that you get tracked because you have the audacity to use free services. It's on you.

But, even worse, it sets up a VERY WRONG idea that if you pay for something you get out of the tracking of it all...
Read 5 tweets
Jun 9, 2021
The Colorado Privacy Act, SB 21-190. You can find the info here, including all the previous iterations. I'll hit the high points but if you want the details you should always go straight to the text: leg.colorado.gov/bills/sb21-190.
Lots of definitions. A big one is consent. Specific, unambiguous, informed. Earlier version referenced a "narrowly defined purpose" which was removed before the final. NOT consent: broad policies, exiting a window, agreement through dark patterns (defined elsewhere)
Dark patterns - UI "designed or manipulated with the substantial effect of subverting or impairing user autonomy, decision making, or choice"
Also "Decisions that Produce Legal or Similarly Significant Effects Concerning a Consumer" may be longest term of art ever
Read 41 tweets
Jun 8, 2021
There is no "communications network for criminals"

Communications networks are used by people.

The TOS don't have a click box that says "by using this service you are agreeing that you are a criminal"

When you compromise for the criminals, you compromise for all people.
""You had to know a criminal to get hold of one of these customised phones ... the Australian police explained."

<<< You should be reading this with extreme skepticism
What made them criminals? Had they been convicted? Then why were they being investigated?
Read 4 tweets
Apr 2, 2021
This Clegg piece is getting passed around a lot and I have thoughts about some of the things it says, which I'll provide here in a thread, featuring and responding to 10 pieces of the write-up. The following represents my personal thoughts and opinions. Sorry in advance. 1/
It starts with this recognition of the benefits of targeted advertising for the world. We know this argument - I've even made this argument before, and I referenced it recently around how tech has traditionally been built up around a call of being good for humanity 2/ Text: "Personalized digital advertising not only allows
But, as with many things, I've seen more and changed my mind. First, this isn't just "targeting," it's micro-targeting. The marginal benefits that people receive from micro-targeted ads are not worth the potential harm of those ads, how they can distort perception of the world 3/
Read 34 tweets
Jun 28, 2019
Reporting about encryption? Here is a thread with some resources you may want to look at>

Starting with this international coalition letter on encryption, signed by >400 orgs, experts, and companies securetheinternet.org
Here is the conversation mapping and flash fiction from the first Crypto Summit accessnow.org/crypto_summit_…

The conversations were further flushed out in CS2 outcomes reports> accessnow.org/beyond-crypto-…
The Crypto Colloquium was a multi-stakeholder dialogue that measured consensus on the topic of encryption and flagged important questions that need to be answered by any proposal accessnow.org/cms/assets/upl…
Read 13 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(