{"id":32486,"date":"2017-07-11T05:41:45","date_gmt":"2017-07-11T09:41:45","guid":{"rendered":"http:\/\/www.opensource.im\/uncategorized\/former-head-of-gchq-says-dont-backdoor-end-to-end-encryption-attack-the-end-points-techdirt.php"},"modified":"2017-07-11T05:41:45","modified_gmt":"2017-07-11T09:41:45","slug":"former-head-of-gchq-says-dont-backdoor-end-to-end-encryption-attack-the-end-points-techdirt","status":"publish","type":"post","link":"https:\/\/euvolution.com\/open-source-convergence\/encryption\/former-head-of-gchq-says-dont-backdoor-end-to-end-encryption-attack-the-end-points-techdirt.php","title":{"rendered":"Former Head Of GCHQ Says Don&#8217;t Backdoor End-To-End Encryption, Attack The End Points &#8211; Techdirt"},"content":{"rendered":"<p><p>    When he was head of GCHQ, Robert Hannigan said some pretty    clueless things about the Internet and encryption. For example,    in 2014, he     accused tech companies of 'facilitating murder', and joined    in the general     demonization of strong crypto. Last year, he called for    technical experts to     work more closely with governments to come up with some    unspecified way around encryption. Nobody really knew what he    meant when he said:  <\/p>\n<p>      \"I am not in favor of banning encryption. Nor am I asking      for mandatory back doors.  Not everything is a back door,      still less a door which can be exploited outside a legal      framework.\"    <\/p>\n<p>    Now, speaking to the BBC, he has clarified those remarks, and    revealed how he thinks governments should    be dealing with the issue of end-to-end encryption. As he    admits:  <\/p>\n<p>      \"You can't uninvent end-to-end encryption, which is the      thing that has particularly annoyed people, and rightly, in      recent months. You can't just do away it, you can't legislate      it away. The best that you can do with end-to-end encryption      is work with the companies in a cooperative way, to find ways      around it frankly.\"    <\/p>\n<p>    He emphasized that backdoors are not the answer:  <\/p>\n<p>      \"I absolutely don't advocate that. Building in backdoors      is a threat to everybody, and it's not a good idea to weaken      security for everybody in order to tackle a minority.\"    <\/p>\n<p>    So what is the solution? This:  <\/p>\n<p>      \"It's cooperation to target the people who are using it.      So obviously the way around encryption is to get to the end      point -- a smartphone, or a laptop -- that somebody who is      abusing encryption is using. That's the way to do it.\"    <\/p>\n<p>    As Techdirt reported earlier this year, this is very much the    approach advocated by top security experts Bruce Schneier and    Orin Kerr. They published a paper describing ways to     circumvent even the strongest encryption. It seems that    Hannigan has got the message that methods other than crypto    backdoors exist, some of which require cooperation from tech    companies, which may or may not be forthcoming. It's a pity    that he's no longer head of GCHQ --     he left for \"personal reasons\" at the beginning of this    year. But maybe that has given him a new freedom to speak    out against stupid approaches. We just need to hope the UK    government still listens to him.  <\/p>\n<p>    Follow me @glynmoody on Twitter or identi.ca, and +glynmoody on    Google+  <\/p>\n<p><!-- Auto Generated --><\/p>\n<p>Read the rest here:<br \/>\n<a target=\"_blank\" href=\"https:\/\/www.techdirt.com\/articles\/20170710\/08281937754\/former-head-gchq-says-dont-backdoor-end-to-end-encryption-attack-end-points.shtml\" title=\"Former Head Of GCHQ Says Don't Backdoor End-To-End Encryption, Attack The End Points - Techdirt\">Former Head Of GCHQ Says Don't Backdoor End-To-End Encryption, Attack The End Points - Techdirt<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p> When he was head of GCHQ, Robert Hannigan said some pretty clueless things about the Internet and encryption. For example, in 2014, he accused tech companies of 'facilitating murder', and joined in the general demonization of strong crypto. <\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[45],"tags":[],"class_list":["post-32486","post","type-post","status-publish","format-standard","hentry","category-encryption"],"_links":{"self":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts\/32486"}],"collection":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/comments?post=32486"}],"version-history":[{"count":0,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts\/32486\/revisions"}],"wp:attachment":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/media?parent=32486"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/categories?post=32486"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/tags?post=32486"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}