Free, Worldwide, Encrypted Phone Calls for iPhone
whispersystems.org
whispersystems.org
The release of Signal is a pretty big deal for iOS users; previously, we had to consider a paid option like Silent Circle, or a larger corporate option like FaceTime Audio (which isn't really the same).
Although I haven't actually used the app yet (it's registering now), the screenshots appear to be a fairly direct port of RedPhone to iOS.
Edit: Yep! And it looks like Signal users can make secure calls to contacts with RedPhone installed, too. Very nice.
The Holy Grail of Secure Communications: Group Encrypted Text, Voice, and Video. Right now, Skype gives you the unholy grail, but you get all three (+group). I wish Open Whisper Systems luck.
Not 100% secure IMHO but close. Why do they have to rely on a 3rd party for authentication? This still gives (at least, if you manually enable OTR encryption) the connection data to the service providers.
This used to be the case with GTalk, but sadly isn't anymore.
Nothing closed source can be trusted.
But this would require some kind of effort from project maintainers.
or download from a source you trust and compare hash from another trustworthy source. just like anything you download. unless you run gentoo, but then how do you trust your sources, etc
and if you have a closed source phone os that only allows to install from their store... well you have to learn to crawl before you walk.
A) exact compilation settings
B) hash checksums for everything, including the resulting binaries
You probably can't do this on iOS, but on Android you can have a third party app monitoring the changes, or simply disabling the automatic updates altogether.
I would assume that the problems are more difficult compared to simple P2P.
It works fairly well for me. They have a $100.000 bounty for someone who manages to break their code/get communication contents and they're sponsored by the EFF.
The downsides are that it's closed-source and that there's no desktop client (yet).
I've been using TextSecure on android for some time, group chat is part of it.
https://github.com/WhisperSystems/whispersystems.org/commit/...
https://github.com/WhisperSystems/whispersystems.org/commit/...
https://github.com/WhisperSystems/whispersystems.org/commit/...
I was going to donate today, but it seems like the donations are being wasted. I work hard for my money and if my donations go towards a trivial (and arguably unnecessary) 2 line CSS change that would really piss me off.
Can we donate only to certain apps? I want to see TextSecure for iOS out as soon as possible, I couldn't care less about CSS changes on your website or escaping some readme file.
And think of it in terms of replacement cost. What would it take for all of these changes to be made by core developers instaed? Every moment we have the core developers working on the crypto while a supportive community takes part in documentation -- at a rate far, far lower per hour rate than I imagine the core developers would value their time if they were contractors -- is a net win, in my figuring.
After looking at that specific developers commit history it seems like he does commit a ton all over the place, these were just the last few and immediately drew my attention.
I haven't tried it and have no affiliation with it, just saw that the repo is there.
There's been attempts to do so recently (Blackphone, PrivacyPhone), but both have suffered from the same fault: a binary blob for the baseband, something that renders all your privacy moot. I've heard the best recommendation is a tablet + USB LTE dongle, to put some space between the two processors ("firewalling" the baseband processor a bit).
Is there a better way than this? Has anyone kinda walked through all the steps neccesary to have a private/"secure" phone?
That being said, congratulations to Whisper Systems -- their work on things like TextSecure and Redphone have been awesome. I hope one day they do a Kickstarter for a whole secure mobile operating system.
What I would like to see is a way to verify that you're connected to a legitimate cell tower and not an eavesdropper.
Is there a way for cell tower's to "sign" their announcements cryptographically with LTE?
One of the main criticisms of the Blackphone was that A) PrivacyOS (I think it was called) was seemingly black box (no pun intended) -- they said they would open up the code soon, but we haven't seen anything yet B) It still would use a binary baseband. The illusion of security is sometimes worse than no security, and open source code helps with removing those barriers (Although it doesn't neccesarily -- just look at OpenSSL).
This is an interesting, and tempting, direction to go in ... my understanding is that this is problematic, however.
You see, in addition to all of the (radio stuff) that the baseband processor handles, it turns out that they also handle a lot of voice quality functions, such as noise cancel, echo cancel, interference, etc. - all things that we take for granted on all phones.
I have been told that VOIP apps running on non-mobile-phone "handsets" (like you're suggesting) are somewhat difficult to use for plain old voice, because they lack all of these functions which are difficult to replicate (and are wrapped up in a lot of patents and trade secrets, etc.)
I have no first-hand experience, however.
1) A LTE dongle still has a binary blob.
2) An example of the kinds of things one has to deal with: many 8 numbers will drop calls that don't provide a supervised signal to the public switched telephone network.
Many phone apps simply neglect to implement call supervision, which causes weird failures when interfacing with some pbx systems.
See here for some more detail: http://www.voip-info.org/wiki/index.php?page_id=3209
I ended up using a browser on the phone to go to the HN article to go to the right app store link.
I can't believe this hasn't been solved.
Last month I posted the John Dvorak piece where he suggests Apple should buy themselves some search - http://www.pcmag.com/article2/0,2817,2458892,00.asp ; it features an amusing pic proposing DuckDuckGo http://www9.pcmag.com/media/images/429429-apple-isearch-mock...
Regardless I agree trying to find apps through any of the built in app stores is a nightmare, ios, android, and windows alike.
It's a different situation though. In a physical store, you won't leave the store on a whim. In the app store, you can easily exit if distracted by a text, twitter, etc.
Maybe kids these days do EVERYTHING on mobile, including web browsing to find new apps; my problem is I browse on one platform without iTunes, but want the app on my iPhone.
Got to it on the company website, but on a desktop browser (can't find it using my phone browser). So I emailed the URL to myself to click on it in my phone mail client :-)
I am like ranked 100+ on a certain low volume, extremely specific keyword that has approximately 20 actual apps related to that keyword in the store. This keyword is in my apps name. The other 80 are just random games and apps that happen to be more popular and Apple has somehow correlated to my keyword.
It's a free app and I don't advertise. It sucks that people looking for my solution specifically will never even find it. I'm amazed it ever gets downloaded to be honest...
On Google play, they at least take the name of the app vs. search term into account pretty heavily. So if I name an app "Widget Doodad" I will be ranked amongst all of the other apps related to Widget, before non widget related apps show up.
Moxie, if you see this, can you publish some static address we can send funds to as well?
Call routing information, like all metadata, can only be protected legally not cryptographically. So it's not something I trust to people outside Canada, no matter how much esteem I have for them.
In this system. You could, for example, route calls over Tor (with crippling latency). There is no theoretical reason you can't make a fully anonymous audio comms system.
Hence a trivial example of low-latency anonymity achieved through using bandwidth.
At this moment. You are devoid of imagination if you can't conceive of this happening at some point in the future. The concept does not contradict physics.
A counter example of this is seen through ImperialViolet's pond(https://pond.imperialviolet.org/). Using pond, neither metadata nor content are leaked, as both are transmitted over tor every set interval.
Edit: Looks like the article says it is part of a plan to merge redphone and textsecure.
https://pressfreedomfoundation.org/bundle/encryption-tools-j...
Is Whisper Systems a charity, non-profit or a commercial entity? If it's either of first two, then it would've only make sense to say just that in the About section, because it would alleviate all questions of why their products are free. However if it's a commercial entity, the question remains - how do they plan on making money? And donations is a silly answer. They are a nice bonus, but as any goodwill gestures they are an unsustainable and unpredictable source of money unless there are dedicated people managing it, e.g. organizing fundraisers, campaigns and such. I don't think WS is doing any of this.
See - http://en.wikipedia.org/wiki/Whisper_Systems
There's no need to be so cynical with this lot.
The only business model I would even remotely associate with this is, on an individual developer level, the reputation and future work opportunities you would get from having your name associated with this stuff.
The reason why this is important these days is that law enforcement now has more access (because the technology is cheaper) to fake cell towers http://en.wikipedia.org/wiki/Stingray_phone_tracker
Many states are denying FOIA requests regarding this spying but there are several news stories from this year of data obtained from these fake "towers" being used in court. They can be put in vans or just be near people or be used at any large gathering of people.
I used an Android phone with RedPhone and this Signal app with iOS and it works perfectly. Very well done! Need encrypted text messaging ASAP!
They are also saying TextSecure and RedPhone will be merged into Signal. That'll be great!
I will gladly donate to this company if they will increase the speed of development.
Question: If my phone has a limited amount of minutes and I have RedPhone or Signal and I call someones phone who doesn't have one of these programs, does that use my minutes or does it only use Data (or WiFi)?
Later this summer, Signal for iPhone will be expanded to support text communication compatible with TextSecure for Android.
You'll have to wait to wait a little. I'd bet it will be worth.iOS still sends normal text messages to any device that isn't iOS. I use an Android device for the most part and almost everyone I know uses iOS, which means that even if I'm using TextSecure the message will be delivered as a normal text message, which certainly can be intercepted and stored by Stingray and similar devices.
Apple can certainly decrypt any iMessage, as explained very thoroughly in the article you linked to.
If Apple can decrypt them, then law enforcement can decrypt them, so they don't really even need the Stingray device.
Nobody knows whether or not the NSA stores all iMessages. They certainly can, and from everything we've seen if they can, they do, so if you are concerned about privacy you have to assume that they do. The thing about the NSA databases these days is that they allow multiple governments and other government agencies to access that data.
Imagine how many peoples lives would be "ruined" if someone took that data and published it on the internet, "here is every iMessage for the past year".
Also, on a different point, if I were trying to eavesdrop on someone's conversation, I would probably just try to hack the microphone with a different / already loaded app...
Also, I suggest dropping SMS support, and going "data-only" for the new Signal. Or at the very least disable all SMS/MMS stuff by default, and only leave them as opt-in options in settings. Don't even prompt users about it, because most will say yes, without really knowing what they're doing, and that the app will start eating SMS credits without realizing.
But really, you should just drop it. I mean look how successful Whatsapp is, and doesn't have any SMS support, let alone an end-to-end encrypted one.
There doesn't seem to be any way to deregister your phone number? So what now?
How does contact discovery work? What happens when run on a device without a (valid) SIM?
isCntactRegisteredWithWhisper calls isPhoneNumberRegisteredWithWhisper:
https://github.com/WhisperSystems/Signal-iOS/blob/19ff47e278...
The implementation is simply checking a bloom filter:
https://github.com/WhisperSystems/Signal-iOS/blob/19ff47e278...
… and the filter is periodically downloaded from their servers:
https://github.com/WhisperSystems/Signal-iOS/blob/19ff47e278...
https://github.com/WhisperSystems/Signal-iOS/blob/19ff47e278...
which ultimately ends up at:
Real privacy is only possible on platforms that are 100% open-source.
"The audio/video contents of FaceTime calls are protected by end-to-end encryption, so no one but the sender and receiver can access them. Apple cannot decrypt the data."
https://ssl.apple.com/iphone/business/docs/iOS_Security_Feb1...
> And you can only do that between iPhone/Mac users.
Ah yeah, I thought Signal was only for iPhone, based on the title. Should have read the first paragraph more closely.
It appears to interoperate with RedPhone, an Android app by the same authors.
"Apple does not log messages or attachments, and their contents are protected by end-to-end encryption so no one but the sender and receiver can access them. Apple cannot decrypt the data."
Which has been refuted several times.
[1] https://ssl.apple.com/iphone/business/docs/iOS_Security_Feb1...
Couldn't you say the same thing about Signal? Both parties claim to use end-to-end encryption.
http://blog.cryptographyengineering.com/2013/06/can-apple-re...
http://arstechnica.com/security/2013/06/can-apple-read-your-...
http://www.zdnet.com/apples-imessage-encryption-claims-refut...
According to Apple, each device's private key is generated locally and never leaves the device, making it impossible to MITM your messages.
From page 20: "For each key pair, the private keys are saved in the device’s keychain and the public keys are sent to Apple’s directory service (IDS), where they are associated with the user’s phone number or email address, along with the device’s APNs address."
[1] http://images.apple.com/iphone/business/docs/iOS_Security_Fe...
When I ask for nardi's public key, they can give me theirs, I encrypt it with that key and send it. They use their private key to decrypt it, store it, and then encrypt it with your actual public key and forward it along, neither of us any the wiser.
When your tools are secure, they work for you and not the other way around.
At one of the Shuttleworth Foundation gatherings (where all Shuttleworth fellows meet bi-annually) I remember having a conversation about the branding of RedPhone and everyone unanimously agreed that it would hinder wider spread adoption of the software.
I'm not sure what all the factors in re-branding were but I remember Moxie agreeing with the sentiment at the time.
Signal will be a unified private voice and text communication platform for iPhone, Android, and the browser. Later this summer, Signal for iPhone will be expanded to support text communication compatible with TextSecure for Android. Shortly after, both TextSecure and RedPhone for Android will be combined into a unified Signal app on Android as well. Simultaneously, browser extension development is already under way.
Edit: The app called, offered me a code which was rejected, and refuses to Re-call me because "rate limit exceeded."
Try building a secure device that users "own" first, then spend effort on building secure services on top.
[1] https://pentest.com/ios_backdoors_attack_points_surveillance...
Tor was created by the US
https://www.shuttleworthfoundation.org/fellowship/fellows/cu...
But it appears he personally only "helps" Open Whisper Systems:
http://www.thoughtcrime.org/blog/we-should-all-have-somethin...
"I help work on Open Source security and privacy apps at Open Whisper Systems"
On more accurate side, see also 2013 report of Open Technology Fund which granted 445K USD directly to the Open Whisper Systems in 2013.
"US. Government Funded Your Favorite ‘NSA-Proof’ Apps"
http://revolution-news.com/us-government-funds-favorite-nsa-...
"Radio Free Asia funds many software projects through its Open Technology Fund." (...) "The Open Technology Fund listed Open Whisper Systems as accepting $455,000 in 2013."
Open technology fund 2013 report:
https://www.opentechfund.org/sites/default/files/attachments...
"Open Whisper Systems $455,000"
https://www.opentechfund.org/about
"the Open Technology Fund (OTF) was created in early 2012 from U.S. Government (USG) funds and sustained by annual grants from the Broadcasting Board of Governors (BBG) as a program of Radio Free Asia (RFA)"