Earn It Act - True E-to-E Encryption Could Become Illegal

The Earn It Act is a problem for end to end encryption. As security professionals we know that criminals have the option to use encryption just as ordinary people do and if a court cannot decrypt the digital data to obtain incriminating evidence against a crime sometimes otherwise obvious crimes go unpunished.
If the The Earn It Act goes into effect companies like Signal would need to comply in order to be protected by Section 230 which is a law that says that companies that provide a communication platform are not liable for the content that is posted on their platforms. The compliance guidelines are said to be unlikely to include end-to-end encryption.

"Riana Pfefferkorn, Associate Director of Surveillance and Cybersecurity at the Stanford Center for Internet and Society, wrote a detailed breakdown of some of the myriad problems with this bill. She also astutely points out that the bill would give unprecedented power to Attorney General William Barr, a vocal critic of end-to-end encryption, who would become the arbiter of any recommendations from the “best practices” commission that the EARN IT bill would create." (Security Now-763)
Riana Pfefferkorn:
http://cyberlaw.stanford.edu/about/people/riana-pfefferkorn

Here is the signal notice:
https://signal.org/blog/earn-it/

If you're interested reach out to our elected officials from this page.
https://act.eff.org/action/protect-our-speech-and-security-online-reject-the-graham-blumenthal-bill

I learned of this news on the Security Now podcast.
https://www.grc.com/sn/sn-763-notes.pdf

Comments

Popular posts from this blog

Malware Reverse Engineering

Should you hide your SSID on your Wi-Fi?

Open Whisper Systems: Signal Messaging App