(Excerpt from a communication magazine, 7-2015)

 

Users of the two biggest Smart Phone operating systems can finally both call and text each other with encryption that foils virtually any eavesdropper!

 

If you own an Iphone or Android handset and care about your privacy, there’s no longer much of an excuse not to encrypt every conversation you have. Now a zero-learning-curve app exists for both text and voice that can keep those communications fully encrypted, so that no one but the person holding the phone on the other end can decipher your words.

The encryption software group SecureScrypt announced the final Alpha solution, to its iOS app that enables end-to-end encrypted voice calling. With the update, Securescrypt will end-to-end encrypt text messaging, too. ( The solution includes even encrypted conference calls with fix line telephones in the office!) According to an  European magazines testing of that updated all-in-one app, it’s just as idiot-proof as the two most basic, lime-green Iphone communication buttons it replaces.

SecureScrypt Spokes person: “The objective is to be a complete, transparent replacement for secure communications. We want to have a texting and calling experience that’s actually better than the default experience and is also private, private to mil-grade Government requirements”

In fact the update completes a suite of mobile encryption apps that has been developing for nearly five years. While until then only US based encryption companies were available, no solution free from US export restrictions and US backdoor laws were available, now Companies like RedPhone, Whisper, Bria , Textsecure, the US Governments most “secret” cryptocat, etc., were exposed to be not secure at all. They were  using VoIP and the ZRTP / TLS protocols developed by PGP (USA) creator Phil Zimmermann and text TLS encrypted messages, an open source code that is riddled with backdoors, especially on Iphone and not compatible with Android users.

With the SecureScrypt  Group’s developments users of the two biggest Smartphone operating systems can finally both call and text each other with encryption that foils virtually any eavesdropper.

Before SecureScrypt, the only widely used end-to-end encrypted calling and texting app for Iphone was Silent Circle ( a former special forces operator and US Government sponsored company), which was aimed mostly at corporate users and cost between $13 and $40 a month compared with SecureScrypt small one time set up fees.

It’s important to note that Apple’s own iMessage uses end-to-end encryption, too. But the security community has long warned that iMessage’s closed-sourced approach may include vulnerabilities that could allow snooping. SecureScrypt and FIDOScrypt, unlike iMessage, lets users check the fingerprints of each others’ , to verify that they’re not sending their messages to some man-in-the-middle who stealthily passes them on to the intended recipient. SecureScrypt uses the FIDOScrypt protocol which sends 2 incomplete PKI to each other and completes in P2P these keys using Diffie Hellman ( see the http://fidoscrypt.com website for details). An Intruder, man in the middle, would have to verify 4 keys, 2 each with each side, which is of course impossible.  iMessage doesn’t let you verify those public keys of the people you’re communicating with, potentially leaving you open to man-in-the-middle attacks by Apple or any government agency that forces its cooperation.

“It’s possible that anyone in control of Apple’s servers could intercept your communication without you knowing it,” says the CTO of SecureScrypt.” iMessage also lacks a feature built into SecureScrypt called “one time forward PKI,” which changes the encryption key with every message so that code breakers would have to crack each one individually.

The best feature of SecureScrypt is that despite its heavy security and new texting functionality, it remains just as simple as the IPhone’s default calling and texting apps. The System’s usability is the focus of most of the SecureScrypt group’s efforts. “ SecureScrypt, “In many ways the real encryption is the easy part, the hard part is developing a product that people are actually going to use and want to use.”

Porting SecureScrypt to the Iphone opens it up to millions more potential users.

With partnerships with Governments outside the USA, Banks, Enterprises, SecureScrypt may have the potential to serve as the protocol for practically all encrypted messaging, Voice, Data in the mobile era. Now Iphone users are finally invited to the privacy party, too, a party that Android joined earlier. Better five years late than never.