惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

L
LangChain Blog
S
SegmentFault 最新的问题
V
Visual Studio Blog
J
Java Code Geeks
宝玉的分享
宝玉的分享
美团技术团队
博客园 - Franky
酷 壳 – CoolShell
酷 壳 – CoolShell
H
Hackread – Cybersecurity News, Data Breaches, AI and More
有赞技术团队
有赞技术团队
量子位
Martin Fowler
Martin Fowler
MyScale Blog
MyScale Blog
Google DeepMind News
Google DeepMind News
Jina AI
Jina AI
博客园 - 叶小钗
月光博客
月光博客
P
Proofpoint News Feed
D
DataBreaches.Net
Blog — PlanetScale
Blog — PlanetScale
博客园_首页
腾讯CDC
Microsoft Azure Blog
Microsoft Azure Blog
Stack Overflow Blog
Stack Overflow Blog

Latest from TechRadar in Pro

VodafoneThree gets Ofcom approval to bring satellite connectivity to your smartphone Is this the tipping point for AI at work? New Gallup survey finds half of all US employees now use it in some way 'Every Apple user needs to know about this nasty scam': Fake warnings tell users their iCloud data will be… 'Makes it even more disappointing': Microsoft backs fossil fuel big time with $7 billion deal in race for AI… 'Maybe it’s not science fiction': Solar panels are causing rainwater to fall in one of the driest places… Maine becomes first US state to pass data centre construction ban Dozens of WordPress plugins hijacked to target thousands of sites Drone-killing laser weapons greenlit for use in US airspace – FAA and Defense Department say high-energy weapons are ‘ready to protect all air travelers from illicit drone use’ despite airspace restrictions and friendly-fire incidents 'We are currently being extorted' — crypto giant Kraken says it is facing extortion attack, here's… I tried 7 free MTD software – now I've ranked my top picks as a freelancer Jackery McGraw Hill becomes latest to see its Salesforce data hacked Looking for a new PC? Now might be great time to upgrade, as Gartner figures claim shipments are rising — while… The new engineering playbook: how AI design copilots are reshaping product development Farewell Surface Hub — Microsoft kills off its super-sized touchscreen displays, but you might still be able to get one if you act fast 'We have no interest in patient data in the UK': Palantir UK head defends record as criticisms rise Amazon’s new AI Bio Discovery tool can provide ‘every researcher’ with ‘lab-in-the-loop drug discovery’ – 40+ AI biology models can filter 300,000 novel antibody candidates down to the top results for testing in just weeks Over 100 Chrome Web Store extensions found stealing user data from thousands of accounts Europe wants tech sovereignty but is this realistic? Enterprise AI governance cannot live in a prompt. So where is the safety net? Why 2026 is the year of flexibility without friction: solving the multi-platform crisis OpenAI reveals its Mythos rival designed for cybersecurity pros When cyberattacks are inevitable, recovery becomes the strategy Closing the cloud complexity gap LaLiga uses AI to fight illegal streaming that costs its clubs $800m a year Intel and Google expand long-term chip partnership to power AI systems 'Chatbots respond not just to what you ask, but how you ask it': Report finds AI agents might be sucking up to… 'Smartphones have physical limitations': Report explains why AI is kickstarting a billion-dollar hardware arms… 'I’m pretty sure actually we really do not need to work for five days' Zoom CEO calls for end of traditional work schedules — says 3-day working week should become the norm 'It's more common than you think': Experts reveal how hackers are trying to hijack your inbox with these…
Why encryption alone is not enough in modern communications
Keith Balasingham · 2026-06-11 · via Latest from TechRadar in Pro

End to end encryption (E2EE) has become synonymous with secure communications.

For many organizations, it is treated as the foundation upon which trust is built.

That mindset is now being challenged.

Across government and critical infrastructure sectors, recent intelligence warnings and real world compromises have exposed a fundamental misconception. Encryption alone does not equal security.

Senior Director, BlackBerry Secure Communications.

While E2EE protects message content, modern threat actors are no longer attempting to defeat it. Instead, they are exploiting what surrounds it, including identities, devices, metadata, and platforms that were never designed to operate under sustained hostile pressure.

This evolution reflects a pragmatic shift in attacker behavior. Compromising an account is often easier, and far more revealing, than decrypting intercepted traffic. Once trust in identity is undermined, encryption becomes largely irrelevant.

The Limits of Encryption first Security Models

Encrypted messaging apps built for consumers excel at protecting messages in transit, but they were not built to provide strong identity assurance, institutional access controls, or sovereign oversight. Most rely on self registration, minimal verification, and unmanaged endpoints, conditions that increasingly favor sophisticated adversaries.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

Recent government advisories show how these gaps are being exploited through phishing and impersonation campaigns targeting users of encrypted apps. These campaigns bypass encryption rather than breaking it.

This is why encryption centric security strategies are proving insufficient in high risk environments. They assume that the user, the device, and the app itself can be trusted. Under persistent state level threat, those assumptions no longer hold.

Even where message content remains confidential, metadata persists as a powerful intelligence asset. Communication patterns can map relationships, hierarchies, and intent, often with greater strategic value than the messages themselves.

At the same time, reliance on messaging apps hosted on foreign IT infrastructure introduces broader sovereignty risks. Jurisdictional exposure and platform governance are determined externally, limiting government visibility and control over their own communications environments.

Together, these factors are driving a reassessment of what secure communications must mean in practice.

Toward a More Resilient Definition of Security

The emerging consensus is clear. Secure communications must be treated as an integrated system, not a feature. E2EE remains essential, but it must be complemented by identity management assurance, device trust, metadata governance, and infrastructure control.

This shift is already shaping policy and procurement decisions, as governments move toward sovereign, purpose built communications platforms designed specifically for high risk use.

The misconception was never that encryption is unimportant. It is that encryption alone could carry the full weight of modern security requirements.

In an environment defined by rising geopolitical tension, intelligence competition, and persistent state level threat, that assumption no longer holds.

As threats continue to evolve, organizations are being forced to re-examine long held assumptions about what secure communications actually require in an increasingly complex digital environment.

We've featured the best endpoint protection software.

This article was produced as part of TechRadar Pro Perspectives, our channel to feature the best and brightest minds in the technology industry today.

The views expressed here are those of the author and are not necessarily those of TechRadarPro or Future plc. If you are interested in contributing find out more here: https://www.techradar.com/pro/perspectives-how-to-submit