Remix.run Logo
▲ singpolyma3 5 hours ago

Didn't this bill get amended to clarify that no encryption back doors are required?

▲EmbarrassedHelp 5 hours ago | parent | next [-]

It was amended to make them less likely, but even the Liberals are saying that it can still be used to target encryption.

And the legislation still requires mandatory data retention and interception capabilities for all VPNs, encrypted messaging services, and every other online service.

▲tensor 3 hours ago | parent [-]

That's not quite correct. It requires the collection of available metadata only. It does not require that encrypted messages be decrypted, unless the provider holds the keys rather than the user. Still, it's not a great bill.

And I guess VPNs are not end to end encrypted. The provider would still be able to access your data if they want to unlike something like Tor. So, it will be the death of privacy focussed VPNs. But presumably things like Signal and Apple's disk encryption will be fine as only the user holds the keys.

▲protocolture 4 hours ago | parent | prev [-]

If its modelled after the Australian Access and Assistance bill, which it probably is, they will just compel the app to provide the capability to gather the data before/after its encrypted/decrypted, and stream it to some kind of logging device the feds install in your rack.