{"id":38470,"date":"2022-07-07T04:22:00","date_gmt":"2022-07-07T04:22:00","guid":{"rendered":"https:\/\/cloudnewshub.com\/archives\/38470"},"modified":"2022-07-07T04:22:00","modified_gmt":"2022-07-07T04:22:00","slug":"tech-companies-face-pressure-over-end-to-end-encryption-in-online-safety-bill","status":"publish","type":"post","link":"https:\/\/cloudnewshub.com\/?p=38470","title":{"rendered":"Tech companies face pressure over end-to-end encryption in Online Safety Bill"},"content":{"rendered":"<div><img decoding=\"async\" src=\"http:\/\/cloudnewshub.com\/wp-content\/uploads\/2022\/07\/tech-companies-face-pressure-over-end-to-end-encryption-in-online-safety-bill.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>Technology companies that offer encrypted messaging services, such as WhatsApp, could be required to introduce technology to identify child sexual abuse (CSA) material or risk the threat of large fines.<\/p>\n<p>Home secretary Priti Patel yesterday published an amendment to the draft Online Safety Bill that will give powers to regulators to require tech companies to develop or roll out new technologies to detect harmful content on their platforms.<\/p>\n<p>The move will impact companies such as Facebook, owner of WhatsApp, which has faced repeated attacks from government ministers over its plans to introduce end-to-end encrypted messaging services on its Facebook Messenger and Instagram services.<\/p>\n<p>\u201cChild sexual abuse is a sickening crime,\u201d said Patel. \u201cWe must all work to ensure criminals are not allowed to run rampant online and technology companies must play their part and take responsibility for keeping our children safe.<\/p>\n<p>\u201cPrivacy and security are not mutually exclusive \u2013 we need both, and we can have both, and that is what this amendment delivers.\u201d<\/p>\n<p>The <a href=\"https:\/\/www.computerweekly.com\/news\/252522446\/t%20endeavours%20to%20develop%20and%20implement%20software%20-%20for%20example,%20client-side%20scanning%20-%20to%20brea\">amendment<\/a> requires technology companies to use their \u201cbest endeavours\u201d to identify, and to prevent people seeing, CSA material posted publicly or sent privately.<\/p>\n<p>Telecommunications regulator Ofcom will have the power to impose fines of up to \u00a318m or 10% of the turnover of companies that fail to comply under the amendment.<\/p>\n<section class=\"section main-article-chapter\" data-menu-title=\"Client-side scanning\">\n<h3 class=\"section-title\"><i class=\"icon\" data-icon=\"1\"><\/i>Client-side scanning<\/h3>\n<p>The draft legislation is likely to put pressure on messaging companies to incorporate technologies such as client-side scanning, which uses software placed on mobile phones or computers to inspect the content of messages before they are encrypted.<\/p>\n<p>According to the National Crime Agency (NCA), there are an estimated 550,000 to 850,000 people in the UK who pose a serious risk to children. In the year to 2021, the NCA said that more than 33,000 obscene publications offences were recorded by the police.<\/p>\n<p>Ministers argue that end-to-end encryption makes it difficult for technology companies to see what is being posted on messaging services, although tech companies have argued that there are other ways to police child sexual abuse.<\/p>\n<p>\u201cTech firms have a responsibility not to provide safe spaces for horrendous images of child abuse to be shared online,\u201d said digital minister Nadine Dorries. \u201cNor should they blind themselves to these awful crimes happening on their sites.\u201d<\/p>\n<p>Apple attempted to introduce its own client-side scanning software in August 2021, but abandoned its attempt after 14 top computer scientists, including encryption pioneers Ron Rivest and Whit Diffie, found Apple\u2019s plans were unworkable, were open to abuse, and threatened internet security.<\/p>\n<p>Their paper <em>Bugs in our pockets: the risks of client-side scanning<\/em>, published &nbsp;by <a href=\"https:\/\/www.cs.columbia.edu\/~smb\/papers\/bugs21.pdf\">Columbia University<\/a> and available on <a href=\"https:\/\/arxiv.org\/abs\/2110.07450\">Arxiv<\/a>, identified 15 ways that states or malicious actors, and even targeted abusers, could turn the technology around to cause harm to others or society.<\/p>\n<p>Neil Brown, a technology lawyer, wrote in a <a href=\"https:\/\/twitter.com\/neil_neilzone\/status\/1544551951664291840\">detailed analysis of the proposals<\/a> on Twitter, that there was a need for Parliament to hold a serious debate over whether the proposed measures are necessary and proportionate.<\/p>\n<p>\u201c<span>I hope Parliament has a robust and detailed debate as to whether forcing what some have called \u2018bugs in your pocket\u2019 \u2013 breaking end-to-end encryption (unsurprisingly, others argue it doesn\u2019t) to scan your private communications \u2013 is a necessary and proportionate approach,\u201d Brown wrote.<br \/><\/span><\/p>\n<p>The Department for Digital, Culture, Media and Sport (DCMS) has funded a <a href=\"https:\/\/www.safetytechnetwork.org.uk\/government-announces-the-winners-of-the-safety-tech-challenge-fund\/\">Safety Tech Challenge Fund<\/a> in September 2021 which aims to develop technologies to detect child sexual abuse material in end-to-end-encrypted services, while, it claims, respecting the privacy of users.<\/p>\n<p>The government announced <a href=\"https:\/\/www.computerweekly.com\/news\/252522446\/esigned%20to%20boost%20innovation%20in%20artificial%20intelligence%20(AI)%20and%20other%20technologies%20that%20can%20scan,%20detect%20and%20flag%20illegal%20child%20abuse%20imagery%20without%20breaking%20end-to-end%20encryption%20(E2EE).\">five winning projects<\/a> in November 2021, but has yet to publish an independent assessment of whether the technologies are effective both at detecting abuse material and protecting the privacy of people using end-to-end encryption.<\/p>\n<p><span>Brown asked on Twitter: \u201cWhat is the point of this very sensible idea from DCMS \u2013 running a challenge to determine viability \u2013 if we are to see legislation before the outcomes of the challenge are published and capable of scrutiny?\u201d<\/span><\/p>\n<\/section>\n<section class=\"section main-article-chapter\" data-menu-title=\"\u2018Scope creep\u2019\">\n<h3 class=\"section-title\"><i class=\"icon\" data-icon=\"1\"><\/i>\u2018Scope creep\u2019<\/h3>\n<p>Critics say the technology could be subject to \u201cscope creep\u201d once installed on phones and computers, and could be used to monitor other types of message content, potentially opening up backdoor access to encrypted services.<\/p>\n<p><a href=\"https:\/\/www.gov.uk\/government\/news\/online-safety-bill-home-secretarys-op-ed-for-the-telegraph\">Writing in the <em>Telegraph<\/em><\/a>, Patel said the Online Safety Bill would protect both the safety of users as well as their right to privacy and freedom of expression.<\/p>\n<p>\u201cThings like end-to-end encryption significantly reduce the ability for platforms to detect child sexual abuse,\u201d she wrote. \u201cThe Online Safety Bill sets out a clear legal duty to prevent, identify and remove child sexual abuse content, irrespective of the technologies they use.\u201d<\/p>\n<p>Patel said that while the government supports the responsible use of encryption technologies, for example to protect financial transactions, \u201cthe implementation of end-to-end encryption or other technologies in a way that intentionally binds companies to abhorrent child sexual abuse happening on their platforms will have a disastrous impact on child safety\u201d.<\/p>\n<p>The onus is on tech companies to develop or source technologies to mitigate the risk, regardless of their design choices, she wrote.<\/p>\n<p>Rob Jones, director general of the NCA, said online platforms can be a key tool for child abusers, who use them to view and share abuse material, identify potential victims and to discuss their offending.<\/p>\n<p>\u201cIdentifying these individuals online is crucial to us uncovering the real-world abuse of children,\u201d he said.<\/p>\n<p>Peter Wanless, chief executive of the NSPCC, said the amendment would \u201cstrengthen the protections around private messaging\u201d, adding: \u201cThis positive step shows there doesn\u2019t have to be a trade-off between privacy and detecting and disrupting child abuse material and grooming.\u201d<\/p>\n<p>Data protection watchdog the Information Commissioner\u2019s Office (ICO) <a href=\"https:\/\/www.computerweekly.com\/news\/252512294\/ICO-criticises-government-backed-campaign-to-delay-end-to-end-encryption\">said in January<\/a> that the debate around end-to-end encryption had become unbalanced, with too much focus on the risks and not enough on the benefits.<\/p>\n<p>Stephen Bonner, the ICO\u2019s executive director of innovation, defended end-to-end encryption services, saying: \u201cE2EE serves an important role in safeguarding both our privacy and online safety. It strengthens children\u2019s online safety by not allowing criminals and abusers to send them harmful content.\u201d<\/p>\n<\/section>\n","protected":false},"excerpt":{"rendered":"<p>Technology companies that offer encrypted messaging services, such as WhatsApp, could be required to introduce technology to identify child sexual abuse (CSA) material or risk the threat of large fines. Home secretary Priti Patel yesterday published an amendment to the draft Online Safety Bill that will give powers to regulators to require tech companies to [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":38471,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[533],"tags":[],"class_list":["post-38470","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-it"],"_links":{"self":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts\/38470","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=38470"}],"version-history":[{"count":0,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts\/38470\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/media\/38471"}],"wp:attachment":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=38470"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=38470"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=38470"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}