The Safer Internet Lie: Why More Surveillance Isn't Making Anyone Safer
Age verification, digital ID, and data retention are sold as cybersecurity wins. A technical look at who gets monitored, and who simply routes around the rules.
The article explores the disconnect between government surveillance efforts and their effectiveness in combating cybercrime. It argues that many current surveillance measures primarily target law-abiding citizens rather than the actual threat actors. The narrative begins with a thought experiment comparing the process of signing up for services in different countries, highlighting the increasing need for identification and verification.
The story then delves into the history of mass metadata retention, specifically the EU's Data Retention Directive from 2006. Despite being declared invalid by the European Union's Court of Justice in 2014 due to its invasive nature, the court's reasoning reveals the significant privacy concerns associated with collecting and retaining metadata. The article emphasizes that such data can reveal individuals' daily habits, locations, movements, and relationships, even if they are not suspected of any wrongdoing.
Next, the narrative discusses the challenges governments face in scanning encrypted messaging services for illegal content. It cites the UK's Online Safety Act 2023, which grants regulators the power to require platforms to use accredited technology for scanning encrypted communications. However, cryptographers have consistently stated that scanning inside end-to-end encryption without compromising security for all users is currently impossible.
The article concludes by highlighting the broader pattern of these surveillance measures - a harm is identified, a broad law is proposed, it gets centralized for easier implementation, and once established, it often gets repurposed for additional purposes beyond the original intent. This bureaucratic inertia and the difficulty in enforcing technical limits lead to the surveillance capabilities outliving the initial emergency they were intended to address.
The author argues that this systemic issue doesn't require a villain but rather a deeper understanding of how these policies evolve over time.
Written by urgent.news from HackerNoon's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.