FacebookInstagramTwitterContact

 

These 3 Stars Are Losing Weight Fast — Thanks To Stellar Winds Way Stronger Than The Sun's           >>           Tesla is reportedly laying off more than 10 percent of its workforce           >>           Adobe previews AI object addition and removal for Premiere Pro           >>           Zinc Supplementation Can Benefit Individuals With Erectile Dysfunction, Reveals Study           >>           Shiitake Mushrooms Are A Powerful Medicinal Superfood           >>           Regular Exercise Can Significantly Lower Your Risk Of Developing Cancer           >>           Various Knowledge Learned Prior To Open a Business           >>           Kobe Bryant’s Daughter Natalia Details How Parents Made Her A Taylor Swift Fan           >>           Pregnant Jenna Dewan Seeking Millions From Ex Channing Tatum’s Magic Mike Income           >>           This Is Why Dozens Of Men Decided To Tie Their Moustaches Together           >>          

 

SHARE THIS ARTICLE




REACH US


GENERAL INQUIRY

[email protected]

 

ADVERTISING

[email protected]

 

PRESS RELEASE

[email protected]

 

HOTLINE

+673 222-0178 [Office Hour]

+673 223-6740 [Fax]

 



Upcoming Events





Prayer Times


The prayer times for Brunei-Muara and Temburong districts. For Tutong add 1 minute and for Belait add 3 minutes.


Imsak

: 05:01 AM

Subuh

: 05:11 AM

Syuruk

: 06:29 AM

Doha

: 06:51 AM

Zohor

: 12:32 PM

Asar

: 03:44 PM

Maghrib

: 06:32 PM

Isyak

: 07:42 PM

 



The Business Directory


 

 



Security & Privacy


  Home > Security & Privacy


Open Whisper Systems Defends Whatsapp Against 'Backdoor' Claims


MattiaMarasco via Getty Images

 


 January 16th, 2017  |  11:41 AM  |   981 views

ENGADGETS.COM

 

A report by The Guardian claims encrypted chats are vulnerable, but that's not the case.

 

Last spring, Whatsapp announced that every message on its service is delivered with end-to-end encryption, meaning no one, not even Whatsapp, can tell what's inside. Now, a report by The Guardian cites a security researcher claiming that its implementation is open to being backdoored or hijacked by government agencies. Whatsapp, and the people who helped design the implementation for its secure messaging, state this isn't the case, and instead, reflects a user experience design decision that isn't putting users at risk.

 

Whatsapp's secure messaging was implemented with help from Open Whisper Systems -- makers of the secure messaging app Signal -- and on its blog, the company explains how things work. Based on its Signal Protocol (also used for encrypted messaging in Google's Allo), each client is identified by a public key that's shared with other people, and a private key on the device. Because people change phones, or uninstall and reinstall apps, the pair of keys can change. Users can ensure their communication is secure by checking the security code displayed on each end, if it matches, then they can be sure their messages aren't subject to a man-in-the-middle (MITM) attack by a third party.

 

The Guardian's report is based on research by Tobias Belter. He claims that the server (potentially at the direction of a government agency) could generate a new key for one of the parties, and pretend to be them before the person on the other end is notified that something has changed. On the Signal app, this would cause an already sent message to fail, and the sender to be notified of a change before it could be attempted again. In Whatsapp, it displays a message that the key has changed, re-encrypts the message, and delivers it.

 

As Open Whisper Systems explains, this setup is better for Whatsapp's large user base because it's simpler for users. Also, since the server can't know who has notifications turned on, it makes trying to exploit such a change risky because of potential detection. While it agrees that people could differ in opinion on the implementation, it disagrees that this could ever be described as a "backdoor," which is what the article claims.

 

A number of security professionals have chimed in to agree, including Frederic Jacobs, who helped design the protocol being used. For users, the most responsible thing to do seems to be to turn on notifications, and check your security codes regularly.

 


 

Source:
courtesy of ENGADGET

by Richard Lawler

 

If you have any stories or news that you would like to share with the global online community, please feel free to share it with us by contacting us directly at [email protected]

 

Related News


Lahad Datu Murder: Remand Of 13 Students Extende

 2024-03-30 07:57:54

Sydney Church Stabbing: Boy, 15, Arrested After Bishop Attacked

 2024-04-16 00:15:00

Tesla Lays Off More Than 10% Of Its Workforce

 2024-04-16 01:41:21