this post was submitted on 29 May 2025
475 points (98.0% liked)

Technology

70847 readers
3488 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
 
top 50 comments
sorted by: hot top controversial new old
[–] starkzarn@infosec.pub 16 points 6 days ago

They misspelled "backdoors."

[–] ne0phyte@feddit.org 11 points 6 days ago (1 children)

I would not trust any company/website to properly encrypt any important messages in the first place so I don't care whether they add a backdoor (and I've never had a Twitter account anyway).

..but it sounds like a really shitty development/release process to me. Why would you disable something while whatever is to come in its place is not ready yet?

Why not do the development first and then migrate when it's actually ready lol

[–] Lifter@discuss.tchncs.de 1 points 5 days ago

There may be several reasons for this. If I had to guess, they found a critical flaw and had to shut it down for security reasons.

[–] nebulaone@lemmy.world 3 points 6 days ago

Just use PGP everywhere, it doesn't matter where you chat then.

[–] FreedomAdvocate@lemmy.net.au -3 points 5 days ago

And there we have it - new fully encrypted chat launched on X.

[–] ExtantHuman@lemm.ee 232 points 1 week ago (3 children)

They need to add a backdoor

a? as in one?

every agency gets their own key.

[–] Pika@sh.itjust.works 115 points 1 week ago (2 children)

that is my first thought as well.

"Shoot we didn't take into consideration that GROK will need to be able to see these somehow, so now we need to redo it"

[–] kami@lemmy.dbzer0.com 29 points 1 week ago* (last edited 1 week ago) (1 children)

Bold of you to assume they weren't already able to do it

[–] Pika@sh.itjust.works 19 points 1 week ago

I mean fair, but when Encrypted DM went live, Twitter was just starting to get into the AI field, and it was amidst a very uncertain state at that time, so I wouldn't be surprised if they haden't even thought of it.

[–] Kowowow@lemmy.ca 3 points 1 week ago

I just assumed it was elon trying decrypt old messages to make trump people happy so they go after individuals

[–] givesomefucks@lemmy.world 14 points 1 week ago (1 children)

People need to stop going on Twitter....

[–] FreedomAdvocate@lemmy.net.au 2 points 1 week ago (1 children)

Lemmy instance admins don't even need a backdoor to read your "private" messages btw.

[–] givesomefucks@lemmy.world 1 points 1 week ago (1 children)

Obviously...

Like, you understand someone has to monitor that shit, right?

Do people think social media DMs are supposed to be secure?

load more comments (1 replies)
[–] eager_eagle@lemmy.world 85 points 1 week ago
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⣠⣤⣤⣤⣤⣤⣶⣦⣤⣄⡀⠀⠀⠀⠀⠀⠀⠀⠀ 
⠀⠀⠀⠀⠀⠀⠀⠀⢀⣴⣿⡿⠛⠉⠙⠛⠛⠛⠛⠻⢿⣿⣷⣤⡀⠀⠀⠀⠀⠀ 
⠀⠀⠀⠀⠀⠀⠀⠀⣼⣿⠋⠀⠀⠀⠀⠀⠀⠀⢀⣀⣀⠈⢻⣿⣿⡄⠀⠀⠀⠀ 
⠀⠀⠀⠀⠀⠀⠀⣸⣿⡏⠀⠀⠀⣠⣶⣾⣿⣿⣿⠿⠿⠿⢿⣿⣿⣿⣄⠀⠀⠀ 
⠀⠀⠀⠀⠀⠀⠀⣿⣿⠁⠀⠀⢰⣿⣿⣯⠁⠀⠀⠀⠀⠀⠀⠀⠈⠙⢿⣷⡄⠀ 
⠀⠀⣀⣤⣴⣶⣶⣿⡟⠀⠀⠀⢸⣿⣿⣿⣆⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⣿⣷⠀ 
⠀⢰⣿⡟⠋⠉⣹⣿⡇⠀⠀⠀⠘⣿⣿⣿⣿⣷⣦⣤⣤⣤⣶⣶⣶⣶⣿⣿⣿⠀ 
⠀⢸⣿⡇⠀⠀⣿⣿⡇⠀⠀⠀⠀⠹⣿⣿⣿⣿⣿⣿⣿⣿⣿⣿⣿⣿⣿⡿⠃⠀ 
⠀⣸⣿⡇⠀⠀⣿⣿⡇⠀⠀⠀⠀⠀⠉⠻⠿⣿⣿⣿⣿⡿⠿⠿⠛⢻⣿⡇⠀⠀ 
⠀⣿⣿⠁⠀⠀⣿⣿⡇⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢸⣿⣧⠀⠀ 
⠀⣿⣿⠀⠀⠀⣿⣿⡇⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢸⣿⣿⠀⠀ 
⠀⣿⣿⠀⠀⠀⣿⣿⡇⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢸⣿⣿⠀⠀ 
⠀⢿⣿⡆⠀⠀⣿⣿⡇⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⢸⣿⡇⠀⠀ 
⠀⠸⣿⣧⡀⠀⣿⣿⡇⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⣿⣿⠃⠀⠀ 
⠀⠀⠛⢿⣿⣿⣿⣿⣇⠀⠀⠀⠀⠀⣰⣿⣿⣷⣶⣶⣶⣶⠶⠀⢠⣿⣿⠀⠀⠀ 
⠀⠀⠀⠀⠀⠀⠀⣿⣿⠀⠀⠀⠀⠀⣿⣿⡇⠀⣽⣿⡏⠁⠀⠀⢸⣿⡇⠀⠀⠀ 
⠀⠀⠀⠀⠀⠀⠀⣿⣿⠀⠀⠀⠀⠀⣿⣿⡇⠀⢹⣿⡆⠀⠀⠀⣸⣿⠇⠀⠀⠀ 
⠀⠀⠀⠀⠀⠀⠀⢿⣿⣦⣄⣀⣠⣴⣿⣿⠁⠀⠈⠻⣿⣿⣿⣿⡿⠏⠀⠀⠀⠀ 
⠀⠀⠀⠀⠀⠀⠀⠈⠛⠻⠿⠿⠿⠿⠋⠁⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
    
[–] Bogasse@lemmy.ml 75 points 1 week ago (1 children)

while we work on making improvements

🤣

The fact that he tried to make it like there is a reasonable reason is delightful.

[–] neukenindekeuken@sh.itjust.works 27 points 1 week ago (1 children)

"Improvements" = Adding backdoors to their encryption for agency spying networks.

This is how that works.

[–] UnderpantsWeevil@lemmy.world 11 points 1 week ago (1 children)

I'm more than confident that Twitter already had a backdoor for encrypted DMs.

However, I would bet cash money that the current administration has lost the institutional knowledge of how to use it. So they're having to reinvent the wheel, most likely by injecting a bunch of new bugs and sloppily implemented hacks.

[–] echodot@feddit.uk 3 points 6 days ago

I just like the idea that previous administrations just delete all of the documentation on the way out, rather like a fired sysadmin worker deleting all their automation scripts. "Work it out for yourself"

[–] homesweethomeMrL@lemmy.world 56 points 1 week ago

Oh man I may have to stop using this fascist propaganda service now.

[–] notannpc@lemmy.world 52 points 1 week ago (4 children)

I doubt this is news to most folks on the Fediverse, but don’t trust Twitter, Facebook, or any company whose business model is advertising to secure your private conversations.

Even if they aren’t up to no good today, it is only a matter of time until they come for your messages.

[–] sparky@lemmy.federate.cc 37 points 1 week ago (2 children)

As it happens, you shouldn’t trust Lemmy DMs either, as they’re not encrypted and can be read by instance administrators. So don’t use them to say anything that you wouldn’t be okay making public.

[–] ferrule@sh.itjust.works 17 points 1 week ago

this should be the default stance when using any built in encryption. always separate the mode of encryption from the mode of transmission.

[–] NotMyOldRedditName@lemmy.world 4 points 1 week ago (1 children)

Someone told me they are public some months ago? Like if someone wanted to look up your lemmy DMs they could.

[–] Robust_Mirror@aussie.zone 6 points 1 week ago

There was an exploit in version 0.17.0 through 0.19.0 (fixed in 0.19.1) that, from what I understand, allowed people to view DMs of anyone by reporting them, but as you can't know the ID of a given DM you're not part of, they couldn't really target a specific user, but rather would just send reports to a range of potential IDs and see what comes back.

[–] SouthEndSunset@lemm.ee 7 points 1 week ago (1 children)

I’ve been hearing a lot of straight up adverts about WhatsApp recently, which I found interesting.

[–] prole@lemmy.blahaj.zone 4 points 1 week ago* (last edited 1 week ago) (1 children)

I saw a WhatsApp ad on Prime. And it was focused on the encryption aspect. "WhatsApp can't even read your messages" or whatever. Was weird.

[–] SouthEndSunset@lemm.ee 2 points 1 week ago

I’m hearing a lot of that on the radio.

load more comments (2 replies)
[–] iconic_admin@lemmy.world 48 points 1 week ago (1 children)

So… they’re definitely adding some spying capabilities.

100%. If it was purely a migration, it wouldn't need to have downtime. There's ways to replay events and eventually catch a system up (eventual consistency models).

This feels more like they're adding backdoor into their encryption algorithms for government agencies.

Given who musk is, and what he's done the last year and who he's hanging out with in this admin, that's a near sure thing.

[–] tonytins@pawb.social 41 points 1 week ago (2 children)
[–] kami@lemmy.dbzer0.com 21 points 1 week ago

"We are excited to announce the new encrypted messaging feature that is going to be released soon™"

[–] cron@feddit.org 20 points 1 week ago (1 children)

"With the latest update, you are now unable to read any encrypted PMs before may 2025. Sorry for the inconvenience."

[–] prole@lemmy.blahaj.zone 2 points 1 week ago* (last edited 1 week ago)

More like, "for your convenience, we have decrypted all of your encrypted PMs before May 2025 and included them in this plaintext document"

[–] KulunkelBoom@lemm.ee 29 points 1 week ago (1 children)

They're being rerouted to a more "secure" storage facility. I believe it's Kaspersky's.

[–] driving_crooner@lemmy.eco.br 3 points 6 days ago

Is not Kaspersky part of the US government embargo on Russian companies?

[–] MolecularCactus1324@lemmy.world 19 points 1 week ago

I thought they disabled DMs when some influencer refused to have Elon Musk’s babies and shared her DMs with a friend

[–] bender223@lemmy.today 15 points 1 week ago (2 children)

elon is the dumbest "genius" ever 🤦‍♂️

I think there was a once a time in which he did some smart stuff (although he gets a ton a credit for stuff his employies do), but since he starting taking all those drugs he became actually insane and stupid

like theres actually no benefit of any sort to do a fucking Nazi salute

[–] Alistaire@sopuli.xyz 3 points 1 week ago

he's just rich but likes to pretend smart

[–] HyperfocusSurfer@lemmy.dbzer0.com 13 points 1 week ago (1 children)

Do people really use DMs there?

[–] UnderpantsWeevil@lemmy.world 2 points 1 week ago

For spamming ads and scams to people? Absolutely.

[–] FreedomAdvocate@lemmy.net.au 0 points 1 week ago* (last edited 1 week ago) (2 children)

Before too many more conspiracy theorists jump in - it looks like they're replacing encrypted DMs with "chat" where EVERYTHING is encrypted:

https://x.com/P4mui/status/1927829200599224624

[–] sik0fewl@lemmy.ca 8 points 1 week ago (2 children)
[–] tarknassus@lemmy.world 6 points 1 week ago (2 children)

Last update 2010. Makes me sad. Good times using IRC, I should find a modern program and get back on there.

[–] sik0fewl@lemmy.ca 2 points 1 week ago

Damn. That's probably the last time I used it, too.

[–] FreedomAdvocate@lemmy.net.au 4 points 1 week ago

Haha yeh that person probably should have seen if XChat was already taken, but you know what they meant.

[–] Natanael@infosec.pub 4 points 1 week ago

Will they be using a modern encryption protocol this time?

load more comments
view more: next ›