Encryption: “We’re Engineers, Not Wizards”
If you have kept up to date with my recent posts you may have noticed my love for the right to privacy, particularly in the online sphere, and hatred against the many, many attempts to infringe upon that right in some manner. Well, I’m afraid this post will be no different as we go down the rabbit hole of encryption and law enforcement, and the larger issue of privacy vs security.
While I might be quite vocal about the importance of the right to privacy, and the important role encryption plays in protecting that right online, there are others who see it as an annoyance, a barrier for “the good guys”: law enforcement. It makes it harder to use surveillance on a suspect’s communications due to end-to-end encryption, it means they can’t extract evidence from a suspect’s phone because they cannot access it, and then the terrorists will win! I mean, you have nothing to fear if you have nothing to hide right? I mean a government would never use this information for malicious purposes right? They’re totally trustworthy, right? Right?
This debate is certainly not a new one. From the Crypto Wars of the Cold War (sadly not as awesome as it sounds, with the US Government attempting to limit public access to encryption strong enough to pose a problem for intelligence agencies) to the proposal for the Clipper Chip (a computer chip developed by the NSA in order to provide a back door into early computer systems and allow law enforcement agencies to access and decode “intercepted voice and data transmissions”), the war between law enforcement and encryption has been fought since the development of encryption itself.
However it has once again come to the fore due to a number of legal cases, most notably the San Bernadino terrorist attack. In the aftermath of this attack, the FBI attempted to compel Apple to design a back door into their operating system in order for the FBI to gain access to the encrypted data and gain more information on perpetrator. That sounds reasonable doesn’t it? A backdoor which only the FBI can use? There’s just one problem with it...
Exactly! You cannot construct a back door for one party alone. A back door for one hacker is a backdoor for another, and complying with the FBI would have resulted in a massive vulnerability that any skilled hacker could take advantage of! But it was necessary! We needed it to get access! Again, this is nonsense, as can clearly be seen from the FBI gaining access without Apple’s help (albeit spending $900,000 to do so). And while a Big Brother scenario might be somewhat unlikely at the offset, a very real concern would be a massive data breach. In addition, there are countless apps in place to provide encryption so that even if there is a crackdown on encryption and back doors become commonplace, any criminal worth their salt could just use one of these apps. And if that apps gets removed, well then another will pop up, and some are very difficult to bring under a country’s jurisdiction.
So just remember, when a government or body asks you to trade your privacy for security, they’re probably just trying to make their lives easier, and yours a hell of a lot less safe.












