Showing posts with label Facebook. Show all posts

WhatsApp may soon allow you to track your friends in real-time, edit-revoke messages

WhatsApp’s New Feature Will Allow You To Track Your Friends’ Location in real-time.


You will very soon be able to track the whereabouts of your friends in real-time. Thanks to WhatsApp, the instant messaging app that is working on a feature that will track the live location of its members.

As per a tweet by WABetaInfo, a new Live Location Tracking feature has been found on both the Android and iOS Beta versions 2.16.399 and version 2.17.3.28 respectively.

The tracking can be kept on for 1 minute, 2 minutes, 5 minutes or can be enabled indefinitely. This feature will be useful when you want to see whether your friends have reached a particular location or not or how far away everyone in the group is from the destination. The feature can also be disabled so that your group members do not know where you are at any given moment.

The “Live Location Tracking” is disabled by default, which means that WhatsApp needs to activate it when it is ready to be launched.

The Facebook-owned messaging app is also planning to add a new edit and revoke feature. The feature has been spotted for a beta version and may soon be available to all. According to the leak, sent messages on WhatsApp beta version iOS 2.17.1.869 will get a separate Revoke option, which will allow users to revert a message that has been sent but not read. When clicked on the option, it would recall the sent message. Similarly, one can edit the message that has been sent but not yet read by near and dear ones. Currently, both the features are disabled by default.

Despite appearing in WhatsApp’s beta release, the Facebook-owned service has yet to confirm when the new features will be formally released. Also, there is no news when these would arrive on other platforms.

Wednesday, 1 February 2017
Posted by Sivapriya

Metadata: Story Of How Whatsapp And Other Chat Apps Collect Data


Who made the protocol that enables encryption of WhatsApp, Allo, Messenger, and other chat services; What does end-to-end encryption mean; What data exactly do you give away when you use WhatsApp, Messenger, Allo; The most secure alternative of all. Here, we’ll discuss all these apps and the “metadata” collected by them.

Everybody knows by now that WhatsApp has enabled end-to-end encryption, for their users. There also have been allegations, speculations, and research about how their end to end encryption has a backdoor that could let third-party people snoop, decrypt and read messages.

But what most of us don’t know, is what information they are already having access to by the pretext of the keyword metadata in their FAQs and public information of details of their information collection phrases.

WhatsApp, Facebook Messenger, Google Allo, and Signal Messaging App uses Signal’s own Protocol by the same name.

Wikipedia says this about Signal Protocol

“The Signal Protocol is a non-federated cryptographic protocol that provides end-to-end encryption for instant messaging conversations. — Wikipedia”

The Signal Protocol was built by Open Whisper System, a nonprofit group that was founded in 2013 by the former Twitter head of security Moxie Marlinspike.

End-to-End encryption provides you the surety that your message is encrypted before sending it to the sender, and that only s/he would decode it using the private key s/he has.

So what’s the problem here, you might ask? Facebook and Google Allo are using the same protocol, it’s secure! Well, Facebook Messenger and Google Allo don’t enable end-to-end encryption by default. Facebook Messenger users have to enable “Secret Conversations” and Google Allo users have to enable Incognito Mode, to leverage encryption.

Alright, Alright, so Facebook and Allo don’t default enable it, but Whatsapp and Signal messaging app so, what’s wrong now? Why not stick with WhatsApp then?

The answers lie in WhatsApp’s collection of metadata. 

Metadata has always been a blurry, not so very understood, term simply because it means different things in terms of different applications.

Edward Snowden lights up with what it’s really used for.

Are your readers having trouble understanding the term "metadata"? Replace it with "activity records." That's what they are. 

In this Electronic Frontier Foundation post by Kurt Opsahl, he gives examples of what companies and governments can get hold of by the somewhat disguised use of the word metadata, getting information on basis of it, such as the following excerpts out of this article:
  • They know you rang a phone sex service at 2:24 am and spoke for 18 minutes. But they don’t know what you talked about.
  • They know you called a gynecologist, spoke for a half hour, and then called the local Planned Parenthood’s number later that day. But nobody knows what you spoke about.
  • They know you spoke with an HIV testing service, then your doctor, then your health insurance company in the same hour. But they don’t know what was discussed.
Even though WhatsApp doesn’t store backups on their servers, Whatsapp can collect data when, where, and with whom you communicate, it’s stated rather really vaguely which gives them freedom of sorts, ain’t it? In their own words:

Usage and Log Information. We collect service-related, diagnostic, and performance information. This includes information about your activity (such as how you use our Services, how you interact with others using our Services, and the like), log files, and diagnostic, crash, website, and performance logs and reports.

Besides this, they collect information about your OS, browser information (think your search history on synced devices!), IP address, mobile network data, and phone number. And if they can’t obtain your phone number, they’ll obtain it when people message you, since WhatsApp has access to your friends’ activity data as well.

We won’t talk about Facebook, since everybody knows what we give them when we use their services.


Google Allo has had its fair share of scrutiny.

Signal App retains only the phone number that you register on it with, and the last logged in time on their server, and only the day and no other minute or second.

When you enable WhatsApp’s feature of notifying you about a change in receiver’s key (which is needed for decryption), WhatsApp says it shouldn’t be a concern since receiver’s key can change on the new installation on device or reinstallation of WhatsApp itself, and suggests to continue using it.

Signal has disappearing messages.

“Any conversation can be configured to delete sent and received messages after a specified interval. The configuration applies to all parties of a conversation, and the clock starts ticking for each recipient once they’ve read their copy of the message.”

And the best part? It’s Open Source! Ah!

Friday, 27 January 2017
Posted by Sivapriya

widget

Pageviews

Cloud Label

Blogumulus by Roy Tanck and Amanda Fazani

- Copyright © 2013 Redback IT Academy -- Powered by Redback - Designed by @ Redback Studio -