Whatsapp’s end-to-end encryption rendered ‘useless’

Avatar By Le Williams | 2 years ago

Whatsapp has announced how the company quietly stores messages in archives that may be read by anyone who gains access to a user’s account. The messaging app keeps an archive of everything Android owners send on the Google Drive cloud storage system, according to the company’s official blog.

In a message posted on the FAQ section of its official blog, the Facebook-owned messaging platform says that “Media and messages you back up aren’t protected by WhatsApp end-to-end encryption while in Google Drive”.

‘Media and messages you back up aren’t protected by WhatsApp end-to-end encryption while in Google Drive,’ Whatsapp wrote on its website.

This statement raised fears that hackers, cops, or even government entities could access private data if they gained access to someone’s Google Drive account.

“From a privacy perspective, online backups are no good regardless of who the custodian is,’ said Karan Saini, an independent security researcher.

‘While Google does encrypt files on the server side they also ultimately control the keys for those — which can be provided to law enforcement authorities on the basis of a warrant.’ You can turn off the archive feature by going into options, selecting ‘chats’ and then ‘chats backup’.

All the backup data is automatically removed after 12 months. ‘WhatsApp backups that haven’t been updated in more than one year will be automatically removed from Google Drive storage,’ the messaging app wrote.

Users may feel reassured to hear that it is quite easy to protect your Google Drive account.

Jeremy Miles, a data scientist at Google, said it’s ‘close to impossible’ to hack into a Google cloud profile if it’s set a good password and turned on ‘two factor authentication’.