← Back to context

Comment by hatradiowigwam

8 months ago

> If they did have some kind of collection capability around Signal, they likely would not have risked burning it on you.

I've always thought the exact same thing. The harm was ~800m USD to a private company. Sounds big, but it's nothing compared to actual state sponsored anything.

Just to add some more (possibly useful) context from the encounter....

The FBI was not able to unlock many LUKS secured devices - at all. They had zero success over approx 30 days, and had to explore alternative methods to obtain key material.

The FBI was not able to decrypt blowfish2 (ie vim -x).

The FBI was not able to decrypt ccrypt secured files (ie aes256).

I'm a nobody, but I imagine the feds or spooks would never use anything like that on someone they have physical access on. If the target is in their jurisdiction or a blacksite and it's that important, a lead pipe is easier.

IF they can decrypt stuff, they'll only use it when it's has an actual benefit beyond a conviction and the keys are truly inaccessible. (e.g., person is dead, the keys are in an enemy state HSM, etc.)