Encryption ban proposal in the United Kingdom

Last updated

The UK encryption ban was a pledge by former British prime minister David Cameron to ban online messaging applications that offer end-to-end encryption, such as WhatsApp, iMessage, and Snapchat, [1] [2] [3] [4] under a nationwide surveillance plan. [5] [6] [7] Cameron's proposal was in response to the services which allow users to communicate without providing the UK security services access to their messages, [5] which in turn could allegedly allow suspected terrorists a safe means of communication. [8]

Contents

Proposal

On 15 January 2015, David Cameron asked American president Barack Obama to increase pressure on American Internet companies to work more closely with British intelligence agencies, in order to deny potential terrorists a "safe space" to communicate, [9] as well as seeking co-operation to implement tighter surveillance controls. [10] Under new proposals, messaging apps will have to either add a backdoor to their programs, or risk a potential ban within the UK. [11] To justify the proposal to ban encryption, David Cameron claims that "In our country, do we want to allow a means of communication between people, which even in extremis, with a signed warrant from the home secretary personally, that we cannot read?" [12] In defending surveillance of Internet messaging, Cameron pointed out that the British state already possessed the legal ability to read people's private letters and to surveil their private phone calls.

In July 2016, newly appointed home secretary Amber Rudd confirmed the proposed Investigatory Powers Bill would grant any Secretary of State the powers to force communication service providers to remove or disable end-to-end encryption. [13]

Criticism

The UK's Information Commissioner Christopher Graham criticized the plans by saying "We must avoid knee-jerk reactions. In particular, I am concerned about any compromising of effective encryption for consumers of online services." [14] The ISPA claims that the proposal risks "undermining the UK's status as a good and safe place to do business". [14] While David Cameron had also claimed that app providers have "a social responsibility to fight the battle against terrorism", the founder of Lavabit had also criticized the proposals, saying the introduction of backdoors would leave systems more vulnerable. [15] [16]

Resultant legislation

The resulting legislation was the Investigatory Powers Act 2016 (nicknamed the Snoopers' Charter) which comprehensively sets out and in limited respects expands the electronic surveillance powers of the UK Intelligence Community and police. It also aims to improve the safeguards on the exercise of those powers. [17]

See also

Related Research Articles

<span class="mw-page-title-main">Regulation of Investigatory Powers Act 2000</span> United Kingdom legislation

The Regulation of Investigatory Powers Act 2000 is an Act of the Parliament of the United Kingdom, regulating the powers of public bodies to carry out surveillance and investigation, and covering the interception of communications. It was introduced by the Tony Blair Labour government ostensibly to take account of technological change such as the growth of the Internet and strong encryption.

<span class="mw-page-title-main">End-to-end encryption</span> Encryption model where only the sender and recipient can read the ciphertext

End-to-end encryption (E2EE) is a method of implementing a secure communication system where only communicating users can participate. No one else, including the system provider, telecom providers, Internet providers or malicious actors, can access the cryptographic keys needed to read or send messages.

The Wilson Doctrine is a convention in the United Kingdom that restricts the police and intelligence services from tapping the telephones of members of the House of Commons and House of Lords. It was introduced in 1966 and named after Harold Wilson, the Labour Prime Minister who established the rule. Since it was established, the development of new forms of communication, such as mobile phones and email, has led to extensions of the doctrine. However, it was never extended to cover members of the new devolved legislatures.

The Draft Communications Data Bill was draft legislation proposed by then Home Secretary Theresa May in the United Kingdom which would require Internet service providers and mobile phone companies to maintain records of each user's internet browsing activity, email correspondence, voice calls, internet gaming, and mobile phone messaging services and store the records for 12 months. Retention of email and telephone contact data for this time is already required by the Data Retention Regulations 2014. The anticipated cost was £1.8 billion.

Silent Circle is an encrypted communications firm based in Washington DC. Silent Circle provides multi-platform secure communication services for mobile devices and desktops. Launched October 16, 2012, the company operates under a subscription business model. The encryption part of the software used is free software/open source and peer-reviewed. For the remaining parts of Silent Phone and Silent Text, the source code is available on GitHub, but under proprietary software licenses.

<span class="mw-page-title-main">Bullrun (decryption program)</span> Code name of a decryption program run by the NSA

Bullrun is a clandestine, highly classified program to crack encryption of online communications and data, which is run by the United States National Security Agency (NSA). The British Government Communications Headquarters (GCHQ) has a similar program codenamed Edgehill. According to the Bullrun classification guide published by The Guardian, the program uses multiple methods including computer network exploitation, interdiction, industry relationships, collaboration with other intelligence community entities, and advanced mathematical techniques.

<span class="mw-page-title-main">Mass surveillance in the United Kingdom</span>

The use of electronic surveillance by the United Kingdom grew from the development of signal intelligence and pioneering code breaking during World War II. In the post-war period, the Government Communications Headquarters (GCHQ) was formed and participated in programmes such as the Five Eyes collaboration of English-speaking nations. This focused on intercepting electronic communications, with substantial increases in surveillance capabilities over time. A series of media reports in 2013 revealed bulk collection and surveillance capabilities, including collection and sharing collaborations between GCHQ and the United States' National Security Agency. These were commonly described by the media and civil liberties groups as mass surveillance. Similar capabilities exist in other countries, including western European countries.

Wickr is an American software company based in New York City. It is known for its instant messaging application of the same name. The Wickr instant messaging apps allow users to exchange end-to-end encrypted and content-expiring messages, and are designed for iOS, Android, Mac, Windows, and Linux operating systems. Wickr was acquired by Amazon Web Services (AWS) in mid-2021. The free version of the app was discontinued in December 2023.

<span class="mw-page-title-main">Telegram (software)</span> Cross-platform instant messaging service

Telegram Messenger, commonly known as Telegram, is a cloud-based, cross-platform, social media and instant messaging (IM) service. It was originally launched for iOS on 14 August 2013 and Android on 20 October 2013. It allows users to exchange messages, share media and files, and hold private and group voice or video calls as well as public livestreams. It is available for Android, iOS, Windows, macOS, Linux, and web browsers. Telegram offers end-to-end encryption in voice and video calls, and in optional private chats, which Telegram calls Secret Chats.

<span class="mw-page-title-main">Open Whisper Systems</span> Open source software organization

Open Whisper Systems was a software development group that was founded by Moxie Marlinspike in 2013. The group picked up the open source development of TextSecure and RedPhone, and was later responsible for starting the development of the Signal Protocol and the Signal messaging app. In 2018, Signal Messenger was incorporated as an LLC by Moxie Marlinspike and Brian Acton and then rolled under the independent 501(c)(3) non-profit Signal Technology Foundation. Today, the Signal app is developed by Signal Messenger LLC, which is funded by the Signal Technology Foundation.

<span class="mw-page-title-main">Mass surveillance in Australia</span>

Mass surveillance in Australia takes place in several network media, including telephone, internet, and other communications networks, financial systems, vehicle and transit networks, international travel, utilities, and government schemes and services including those asking citizens to report on themselves or other citizens.

Attempts, unofficially dubbed the "Crypto Wars", have been made by the United States (US) and allied governments to limit the public's and foreign nations' access to cryptography strong enough to thwart decryption by national intelligence agencies, especially the National Security Agency (NSA).

Wire Swiss GmbH is a software company with headquarters in Zug, Switzerland. Its development center is in Berlin, Germany. The company is best known for its messaging application called Wire.

<span class="mw-page-title-main">Signal (software)</span> Privacy-focused encrypted messaging app

Signal is an open-source, encrypted messaging service for instant messaging, voice calls, and video calls. The instant messaging function includes sending text, voice notes, images, videos, and other files. Communication may be one-to-one between users or may involve group messaging.

<span class="mw-page-title-main">Investigatory Powers Act 2016</span> United Kingdom legislation

The Investigatory Powers Act 2016 is an Act of the Parliament of the United Kingdom which received royal assent on 29 November 2016. Its different parts came into force on various dates from 30 December 2016. The Act comprehensively sets out and in limited respects expands the electronic surveillance powers of the British intelligence agencies and police. It also claims to improve the safeguards on the exercise of those powers.

Wire is an encrypted communication and collaboration app created by Wire Swiss. It is available for iOS, Android, Windows, macOS, Linux, and web browsers such as Firefox. Wire offers a collaboration suite featuring messenger, voice calls, video calls, conference calls, file-sharing, and external collaboration – all protected by a secure end-to-end-encryption. Wire offers three solutions built on its security technology: Wire Pro – which offers Wire's collaboration feature for businesses, Wire Enterprise – includes Wire Pro capabilities with added features for large-scale or regulated organizations, and Wire Red – the on-demand crisis collaboration suite. They also offer Wire Personal, which is a secure messaging app for personal use.

The Special Envoy on Intelligence and Law Enforcement Data Sharing is a British creation of the diplomatic corps at Cabinet level to report on, and facilitate dialogue between the executive branch of government and technology firms, often global in nature, that provide service in the internet realm.

<span class="mw-page-title-main">Reception and criticism of WhatsApp security and privacy features</span> Reception and criticism of security and privacy features in the WhatsApp messaging service

This article provides a detailed chronological account of the historical reception and criticism of security and privacy features in the WhatsApp messaging service.

EncroChat was a Europe-based communications network and service provider that offered modified smartphones allowing encrypted communication among subscribers. It was used primarily by organized crime members to plan criminal activities. Police infiltrated the network between at least March and June 2020 during a Europe-wide investigation. An unidentified source associated with EncroChat announced on the night of 12–13 June 2020 that the company would cease operations because of the police operation.

<span class="mw-page-title-main">Online Safety Act 2023</span> United Kingdom legislation

The Online Safety Act 2023 is an act of the Parliament of the United Kingdom to regulate online speech and media. It passed on 26 October 2023 and gives the relevant Secretary of State the power, subject to parliamentary approval, to designate and suppress or record a wide range of speech and media deemed "harmful".

References

  1. Ian Morris. "WhatsApp And Snapchat Could Be Banned In The U.K. After Charlie Hebdo Murders". forbes. Retrieved 16 January 2015.
  2. Thomas Tamblyn. "David Cameron Wants To Ban Snapchat". Huffington Post. Retrieved 16 January 2015.
  3. Andrew Griffin. "WhatsApp and iMessage could be banned under new surveillance plans". Independent. Retrieved 16 January 2015.
  4. Paris Cowan. "UK PM wants to ban encrypted comms". itnews. Retrieved 16 January 2015.
  5. 1 2 Zach Miners. "UK prime minister suggests banning encrypted apps like WhatsApp, iMessage". PC World. Retrieved 15 January 2015.
  6. Tom Warren. "UK government could ban encrypted communications with new surveillance powers". The Verge. Retrieved 16 January 2015.
  7. Nicholas Watt. "David Cameron pledges anti-terror law for internet after Paris attacks". The Guardian. Retrieved 16 January 2015.
  8. Jane Wakefield. "Can the government ban encryption?". BBC News. Retrieved 15 January 2015.
  9. Nicholas Watt. "David Cameron seeks cooperation of US president over encryption crackdown". The Guardian. Retrieved 16 January 2015.
  10. Neil McAllister. "The Register" . Retrieved 17 January 2015.
  11. David Kravets. "UK prime minister wants backdoors into messaging apps or he'll ban them". arstechnica. Retrieved 16 January 2015.
  12. Steve Ranger. "Is banning encryption a crazy plan or an absolute necessity? The reality is much more complicated than that". ZDnet. Retrieved 17 January 2015.
  13. J Martin, Alexander (14 July 2016). "UK gov says new Home Sec will have powers to ban end-to-end encryption" . Retrieved 15 July 2016.
  14. 1 2 Ernie Smith. "After U.K. prime minister takes aim at encrypted messages, critics speak out". associationsnow. Retrieved 17 January 2015.
  15. Dominic Rushe. "Lavabit founder condemns David Cameron's 'insane' plan to ban encryption". The Guardian. Retrieved 17 January 2015.
  16. Danvers Baillieu. "Why David Cameron's crusade against encryption could backfire on business". cityam. Retrieved 17 January 2015.
  17. Travis, Alan (4 November 2015). "Investigatory powers bill: the key points". The Guardian. ISSN   0261-3077 . Retrieved 1 November 2020.