Facebook Undermines Privacy Protections for Its 2B WhatsApp Users
propublica.org
propublica.org
> “No one outside of this chat, not even WhatsApp, can read or listen to them.” Those assurances are not true.
to (buried in the middle):
> Because WhatsApp’s content is encrypted <…> WhatsApp reviewers gain access to private content when users hit the “report” button on the app, identifying a message as allegedly violating the platform’s terms of service. This forwards five messages <…> to WhatsApp in unscrambled form
Unless I’m missing something, the article so far confirms that in WhatsApp:
(1) Signal-based E2E chat encryption still works as expected,
(2) reports actually get reviewed (I used that feature a few times), and
(3) FB mines down to bedrock everything else apart from actual chat contents. Nothing new here.
Since, as far as my personal experience goes, almost no one uses Signal and almost everyone uses Telegram in non-E2EE mode, the choice appears obvious.
That all said, the horribleness of content moderation jobs deserves more awareness.
But yes, if using WhatsApp one must keep in mind that FB and third parties know (and probably data-mine) whom (also when, etc.) one’s talking to; this is most likely less of a concern with Signal client.
I have a lot of respect for Signal Foundation, although I question their recent idea of integrating cryptocurrency support into a messaging app.
It's unclear to me is these are part of the "protocol" or just the Signal client.
Indeed, as often as I can, I encourage others to make the switch too - to Telegram or Signal or any other secure messaging app, just don't stay on WhatsApp!
My basic question is: are my messages to other users still encrypted or can Whatsapp employees read them? If so, that's seriously scandalous. If not, how can they make reliable assessments from metadata alone?
The question would be whether that archive also contains the key then and that the keys are not saved in the WhatsApp servers