Hacker News new | ask | show | jobs
by ilaksh 15 days ago
But Telegram hasn't engaged in that, some of their users have.

I think the issue might be that although Telegram has a lot of abuse takedown activity, they do not permit access or direct action by authorities. If I recall, they have reiterated many times that some level or types of messages always remain private.

Maybe that's the issue is that a lot of illicit activity is going on in private channels and whether or not their filtering addresses it at all, authorities see the activity and have no access for court cases or direct action against it, so they can imagine it is quite rampant.

5 comments

Telegram shields its users from such requests.

Other platforms either don't have the requested data (Signal) or willingly hand it over when they get a court order to (Facebook). When Telegram gets a court order it ignores the court order and then makes Pavel Durov hard to physically find and therefore arrest. One can only guess what motivations he has for this.

So courts seek alternative enforcement mechanisms.

I'm not making an argument about who's right or whether these disputes have any merit, I'm just trying to guess who might have had the inclination and legal resources to make this happen.
But if you state X then you must also be implying Y. Right?!
I always figured telegram got the screws turned on them all the time because their lack of E2E encryption meant it was viable to demand they proactively police the platform in the first place. Maybe Signal would just be outright blocked in these locales if it was anywhere near as popular, though.
I don't think anyone cares about E2E encryption as much as tech people think.

For all of the much-vaunted complains about their lack of it, I am not aware of any proof or credible claims that Telegram the company has ever revealed the contents of non-encrypted messages or group chats.

Meanwhile, I don't think any authorities actually care about to what extent E2E Encryption makes it harder for Signal the corporation to extract message data. There's plenty of other ways to skin that cat - on-device compromises, abuse of backup mechanisms, abuse of mechanisms to manage linked devices, etc. They'd go after them just the same if they thought there was anything they really wanted on there.

If there's any real difference, I think it's most likely because many more of the group chats that such authorities are aware of and find "interesting" are on Telegram because basically nobody really does E2E well in medium-large groups right now.

Telegram is in very big trouble all the time for refusal to comply with court orders they're capable of complying with, which is related to E2EE.
That's vague to the point of being completely meaningless. Do you have any examples of a time they've been in "very big trouble", whatever that means? Exactly how often constitutes "all the time"? Do you have an example of a valid court order in any jurisdiction that they have failed to comply with? Do you have any examples of a court not mandating similar compliance for Signal, iMessage, or any other E2EE platform due to that? There is no exception in the law for E2EE and it will not save you from consequences from failing to comply with a valid court order.
Famously, Pavel Durov (owner of Telegram) was arrested in France a couple of years ago and held in custody until he complied with one he'd received earlier.

Famously, Signal complies with court orders by giving up all the data that's requested that it has, which isn't very much. This is what you expect from E2EE platforms.

A court order to do the impossible is invalid. Telegram gets in trouble because it's possible for them to comply but they choose not to. Subpoenas are usually worded as "you must provide all information you have, relating to ..."

But as long as Signal controls the client app, there are very possible court orders to provide access to "encrypted" user chats even if courts haven't made use of those yet (as far as is publicly known).
The published reports of the exact things requested of them in the French arrest seem pretty vague. If they're related to the security of private messages and chats, it would seem to prove the point that they do infact refuse to provide that for anybody. The details around his release seem even more vague. We have only speculation and no actual proof that he or Telegram caved on such a request. As far as I know, we've never seen any charges that definitely came from Telegram revealing the messages of a private group chat.

Meanwhile, if you believe that any Governments actually refrain from prosecuting Signal executives due to their refusal and/or inability to produce the messages from private chats because they have E2EE, well, I've got a nice bridge to sell you.

If they actually are refraining from going after Signal executives in a similar fashion, most likely either 1. Nobody is actually using it for anything interesting, 2. They are actually secretly cooperating somehow, or 3. Governments are already happy with other technical means of extracting the contents of Signal chats they are interested in. See the US FBI's curious sudden lack of interest in Apple's ability, or lack thereof, to extract a wanted suspect's iMessage messages.

They generally don't have to proactively police it, but they have to answer court orders in every country that has courts, or they'll be in trouble in that country. And countries are free to cooperate with each other to enforce these.

Pavel Durov was arrested when he traveled to France because Telegram was noncompliant with French court orders. You can ignore them in Russia... you can't ignore them in France. And you can ignore Russian court orders in France but not in Russia. And the Russian or Indian court is free to ask the Montenegrin government to suspend your domain name and the Montenegrin government is free to agree or disagree.

Signal is already well known to governments. In fact a few years ago there was a report in the UK media about how some governments used signal instead of official channels like email and did so because of Signals disappearing messages feature (ie making those MPs less accountable).
More recently, a Signal chat record leaked, between US national security advisor Mike Waltz, US VP JD Vance and others, regarding the ongoing illegal assassinations in Yemen:

https://edition.cnn.com/2025/03/24/politics/yemen-strikes-jo...

and it didn't leak because of Signal's security, but because an Atlantic maganize journalist was added to the group chat by Waltz.

We are clear on OPSEC
in fact, telegram does support e2e encryption ("secret chats")
It does, but it's not enabled by default; and that's the point.
I've been in quite many Telegram chats, none of which has enabled it. For most practical purposes you can just consider Telegram not to have e2e since it's no good if it's not used.
>But Telegram hasn't engaged in that, some of their users have.

Yeah, but government workers just want a legal slam dunk to call it a day and collect the glory, and it's always easier to go after the platform where the crimes are being discussed, rather than after the individual users actually committing the crimes.

It's how government, prosecution and law enforcement jobs are incentivized to operate.

It's more likely they did go after the individual users, by sending a demand to Telegram to identify the users, and Telegram refused despite having the ability.
Not every country has DMCA safe harbor for service providers. A crap sandwich may taste horrible but it has bread.