TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

The Mitto AG surveillanve case – or why we must never backdoor encryption

113 点作者 starsep大约 3 年前

11 条评论

raincom大约 3 年前
Don't trust any company that sells "Swiss neutrality" in the name of security. Mitto AG is the 21st century Crypto AG, who sold secure phones to almost all countries, so that the five eyes can spy on diplomatic communications.
DerekBickerton大约 3 年前
Phones in general are terrible for opsec. Even if you&#x27;ve flashed a Pixel with GrapheneOS[0] you can&#x27;t reliably determine if you have malware on your device. They&#x27;re totally opaque. So are computers in general: They&#x27;re largely black boxes which we have no insight to and can&#x27;t readily inspect what they&#x27;re doing at any given moment. Also: Welcome to the Internet!<p>[0] <a href="https:&#x2F;&#x2F;grapheneos.org&#x2F;" rel="nofollow">https:&#x2F;&#x2F;grapheneos.org&#x2F;</a>
评论 #31343858 未加载
driverdan大约 3 年前
This isn&#x27;t &quot;breaking news&quot; as this site claims. The source was published in 2021: <a href="https:&#x2F;&#x2F;www.bloomberg.com&#x2F;news&#x2F;articles&#x2F;2021-12-06&#x2F;this-swiss-tech-exec-is-said-to-have-operated-a-secret-surveillance-operation" rel="nofollow">https:&#x2F;&#x2F;www.bloomberg.com&#x2F;news&#x2F;articles&#x2F;2021-12-06&#x2F;this-swis...</a>
tinus_hn大约 3 年前
The problem of course is that accepting such a backdoor presumes there is some benevolent institution that can be trusted to fairly regulate use of the backdoor.
评论 #31341116 未加载
mrjin大约 3 年前
So it&#x27;s really from the two options:<p>1. Rock solid encryption without any backdoor, protecting everyone at the cost of being unable to decrypt some vital info.<p>2. Encryption with backdoor, decrypting any message at at the cost of potentially exposing everyone.
keraf大约 3 年前
The Russian shell company as a proof of involvement of Russian intelligence services puzzles me quite a bit. I thought this could be done remotely without the need of a local branch. It sounds more like it has been established there to sell these backdoored encryption products on their market. Or am I missing something?
teknopaul大约 3 年前
I have never been under the impression that 2fa with telephone numbers was anything other than surveillance. Either by the company touting it as a security enhancement or by mitm.<p>And for the record don&#x27;t think that apps that use the central messaging frameworks enforced by Google and Apple are doing anything different. Every time I log in to my bank with Firefox or and device anywhere in the world, Google is told about it. In the real world this means that Google has to autorize my access to my bank.
rossdavidh大约 3 年前
Looks like a misspelling of &quot;surveillance&quot;.
IAmEveryone大约 3 年前
The headline is editorializing beyond what’s supported by the article. That technology, SS7, wasn’t intended as a backdoor. It was about network management. As such, it may have been possible to gain access to it far easier than it would be to some intentional backdoor.
chrisweekly大约 3 年前
Mods: title typo: surveillanVe
hulitu大约 3 年前
&gt; The Mitto AG surveillanve case – or why we must never backdoor encryption<p>But encryption is already backdored. See the article.
评论 #31338477 未加载