René Mayrhofer :verified: 🇺🇦 🇹🇼<p>Sigh. We are, as a security community, making good progress on some old as well as some new topics. <a href="https://infosec.exchange/tags/Rust" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Rust</span></a>, <a href="https://infosec.exchange/tags/Go" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Go</span></a>, and other memory safe systems languages are going well and having a real impact in reducing memory safety issues - which has been the most important security bug class for decades, and we are finally improving! Compartmentalization and isolation of processes and services have now become common knowledge and the minimum bar for new designs. Security and privacy by design are being honored in many new projects, and not just as lip service, but because the involved developers deeply believe in these principles nowadays. <a href="https://infosec.exchange/tags/E2EE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>E2EE</span></a> is finally available to most end-users, both for messaging and backups.</p><p>And again and again, we are forced into having discussions (<a href="https://www.theregister.com/2025/04/03/eu_backdoor_encryption/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">theregister.com/2025/04/03/eu_</span><span class="invisible">backdoor_encryption/</span></a>) about breaking all the progress.</p><p>Let me be clear for Nth time: <br>* We *cannot* build encryption systems that can only be broken by the "good guys". If they are not completely secure, foreign enemy states, organized crime, and intimate partners will break and abuse them as well. There is no halfway in this technology. Either it is secure or it isn't - for and against everybody.<br>* We *cannot* build safe, government-controlled censorship filters into our global messaging apps that are not totally broken under the assumption of (current or future) bad government policies and/or insider attacks at the technology providers (<a href="https://www.mayrhofer.eu.org/talk/insider-attack-resistance-in-the-android-ecosystem/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">mayrhofer.eu.org/talk/insider-</span><span class="invisible">attack-resistance-in-the-android-ecosystem/</span></a>). Either one-to-one communication remains secure and private, or it doesn't (<a href="https://www.ins.jku.at/chatcontrol/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">ins.jku.at/chatcontrol/</span><span class="invisible"></span></a>).<br>* We *cannot* allow exploitation of open security vulnerabilities in smartphones or other devices for law enforcement. If they are not closed, they are exploitable by everybody. "Nobody but us" is an illusion, and makes everybody less secure.</p><p>My latest recorded public talk on the topic was <a href="https://www.mayrhofer.eu.org/talk/secure-messaging-and-attacks-against-it/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">mayrhofer.eu.org/talk/secure-m</span><span class="invisible">essaging-and-attacks-against-it/</span></a>, and nothing factual has changed since then. Policymakers keep asking for a different technological reality than the one we live in, and that sort of thing doesn't tend to produce good, sustainable outcomes.</p><p>(Edited to only fix a typo. No content changes.)</p><p>CC <span class="h-card" translate="no"><a href="https://chaos.social/@epicenter_works" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>epicenter_works</span></a></span> <span class="h-card" translate="no"><a href="https://eupolicy.social/@edri" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>edri</span></a></span> <span class="h-card" translate="no"><a href="https://chaos.social/@suka_hiroaki" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>suka_hiroaki</span></a></span> <span class="h-card" translate="no"><a href="https://social.heise.de/@heisec" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>heisec</span></a></span> <span class="h-card" translate="no"><a href="https://ioc.exchange/@matthew_d_green" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>matthew_d_green</span></a></span> <span class="h-card" translate="no"><a href="https://eupolicy.social/@ilumium" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>ilumium</span></a></span></p>