{
  "id": 8317002,
  "title": "Secure Messaging and AI Remain In Conflict Despite the Promise of TEEs",
  "url": "https://urgent.news/2026/09/18/secure-messaging-and-ai-remain-in-conflict-despite-the-promise-of-tees",
  "topic": "ai",
  "section": "AI",
  "published": "2026-09-18T21:53:55.000Z",
  "source": {
    "name": "EFF Deeplinks",
    "slug": "eff-deeplinks",
    "url": "https://www.eff.org/deeplinks/2026/09/secure-messaging-and-ai-remain-conflict-despite-promise-tees"
  },
  "original_language": "en",
  "account": "Secure messaging apps such as Signal and WhatsApp rely on end-to-end encryption to ensure that only the participants can access the contents of their conversations. However, when AI features are added to these apps, the content may be processed on servers, potentially compromising privacy. Trusted execution environments (TEEs) are designed to keep such processing private, with implementations like Apple's Private Cloud Compute and WhatsApp's Private Processing. While TEEs offer more security than clear text processing, they are fundamentally different and do not provide the same level of privacy and security. Although TEEs provide encryption key separation, they remain vulnerable to side channel attacks, where attackers can deduce encryption keys by measuring electrical impulses or timing variations. This makes TEEs less secure than mathematically robust encryption methods. Therefore, users should not automatically send data to TEEs, as the security provided by these environments is not equivalent to mathematically proven encryption.",
  "summary": "Secure messaging platforms, like Signal, WhatsApp, and recently, encrypted RCS , operate on a straightforward assumption: the content at each end of a conversation is private to the participants in the conversation. End-to-end encryption helps provide the mathematical guarantees that the companies who operate these messaging platforms cannot access the contents of messages. But there’s no way to…",
  "key_points": [
    "Secure messaging apps use end-to-end encryption for privacy.",
    "AI features may process content on servers, compromising privacy.",
    "TEEs offer encryption key separation but are vulnerable to side channel attacks."
  ],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}