This seems really scummy and would drive me away from their products forever.
This seems really scummy and would drive me away from their products forever.
If I were to buy a Blackphone, I would do it because I wanted security, and because I trusted the manufacturer to provide it. The problem with security is that just because my phone appears to be "working perfectly" doesn't mean that somebody isn't eavesdropping on everything I say.
A counterfeit Blackphone, in other words, is completely defective and untrustworthy, no matter how well it appears to work, because my trust in the manufacturer is broken.
I don't exactly see how it bumps up the profit though. You have a bunch of obviously interested customers, who want your product, and then the company has come out with "Actually, we expect you to buy the phone twice, because of a mistake that may or may not of been your fault"
Remember the hassle WhatsApp got for failing open?
The Blackphone+SilentOS is an actual crypto device for people who believe they need crypto. It needs to fail closed. This may cost some people $100, but save their lives.
This also gives the customers the ability to sue the sellers, or at least push for refunds via the sales platforms.
If the user is informed they have a non genuine device that is not safe or secure (e.g. like Windows' nag notification), then they can't expect it to work like a secure device, but more like an ordinary phone.
Then both normal consumers (who will continue to use the phone since they didn't really care too much in the first place about safety) and security conscious consumers (who will re-buy asap) would be more inclined to use the same brand in the future
If my smoke/heat/etc detector starts to fails I don't want it silently dropping back to a smoke-only detector. I want it to start beeping loudly and refuse to stop.
> If the user is informed they have a non genuine device that is not safe or secure
Having to flash a new OS onto it is an appropriately sized clickthrough for a warning of that magnitude. Like being woken in the night to change a smoke-detector battery.
Or something like a Moto G?
Also - they're protecting their own image here - can you image the PR s*itstorm that would unfold if somebody bought a counterfeit Blackphone, got hacked or had their details siphoned off to China, then wrote a blogpost about it? We on HN are often quite quick to judge - so I can certainly see why Silent Circle are taking the careful approach here.
Why should a vendor be able to stop you from using a thing you bought because it looks like one of theirs? No support, sure. Disavow the item, sure. Post warnings on the device as an inbuilt part of the system, sure. But destroy your item? No.
If someone is fraudulently selling cars badged as Fords, Ford itself should not be able to repossess those vehicles. And if Ford thinks that you have stolen their car, they themselves should still not be the ones who repossess it - that's what the police are for. Vigilantism is a bad thing and has all kinds of unexpected failure modes.
Actually, there's a very analogous thing for cars - LoJack. Is that wrong too?
It happens with copy protection on software. I've heard of games that become impossible to win if they detect they're pirated. Others that just fail entirely. Is that not OK either?
It wouldn't be OK if the developers intentionally affected copies that most users would explicitly believe were not counterfeit (for example, if all Steam copies did this because the game developer had an exclusive agreement with EA/Origin).
The users of the counterfeit phones had no way of knowing they were counterfeit. They were advertised as brand new and came in a shrinkwrapped box.
Crypto devices should brick themselves if they discover they've been tampered with.
It's a clear case of seller fraud and if you use a good marketplace (ie not the one starting with E) you can get a refund through the platform. And maybe get information to use in suing the seller.
So if I scramble the firmware on your phone and brick it, you don't consider that damaged?
> LoJack
... works in tandem with police, hardly 'very analagous'.
> It happens with copy protection on software.
The user should have been warned that applying the update would brick the detected non-original phone. It shouldn't have just silently fucked the user over. It's bad ethics and also bad PR. Fucking over a user acting in good faith is poor form ethically.
A closer analogy - and still not exactly, since the owner would still have actually lost the car - would be if the police came and burned it down just so that you couldn't use it.
They're enforcing their copyright. Why not? The police can also confiscate computers with pirated software on them. They even do that sometimes. It doesn't return the money to the IP owners but it's still a way to deter theft.
It sounds like a good idea to me. Even if it doesn't recover their lost sales, it should prevent future black market copies since customers will know to avoid unofficial sellers.
It'd be like if you bought a brand new car from a dealership, then two weeks later the police came to your house, told you it was stolen and burnt it down.
Plus extra points for following through by not actually ever remotely bricking the phones before the anticipated useful lifetime of the real thing. Nagging may or may not be very bearable depending on consumer goodwill.
I know people click through warnings. If that warning could keep them alive, as a dev I'd better do something that'll get their attention.
Also, if they only softly bricked these phones the counterfeiters would just click-through the warnings and sell the phones that way. They have to essentially burn them, for the safety of people who need to be their customers.
If you want a regular phone running whatsapp, use that.
If you didn't want that, there were cheaper phones - even counterfeit.