The Department of Homeland Security is attempting to obtain Signal group chat messages from plaintiffs in a free-speech lawsuit against the agency. The move has raised concerns about using legal discovery to surveil encrypted communications.
DHS faces accusations of violating protesters' First Amendment rights, but the agency is leveraging the lawsuit itself to demand access to encrypted Signal messages from the plaintiffs.
The tactic reveals a legal gray area: while defendants typically cannot force disclosure of encrypted communications under discovery rules, DHS argues the messages are relevant to the case. Signal, which uses end-to-end encryption, does not store message content on its servers, making the request difficult to fulfill even if granted.
The case underscores growing tensions between law enforcement access and digital privacy. Protesters and civil liberties groups warn that using litigation to target encrypted communications could chill free speech and assembly rights.
Signal has not disclosed whether it received a formal demand. The company has long resisted government requests for user data, citing its commitment to privacy-by-design architecture.
The lawsuit's outcome could set precedent for how courts handle encrypted communications in First Amendment cases.
Cyberattacks against hedge funds and private equity firms have been attributed to UNC6671, an extortion group connected to the BlackFile threat actors. The campaign represents an escalating threat to the financial sector.
A Go-based malware distributed through ClickFix attacks is targeting macOS users to steal cryptocurrency, passwords, and Apple Keychain data. The infostealer campaign combines social engineering with credential harvesting.
A former NSA official has warned against connecting water infrastructure controllers to the internet following suspected Iranian cyberattacks on U.S. water systems.
Security researchers scanning Polish government websites discovered critical vulnerabilities that could expose courts, hospitals, and airports to cyberattacks. The vulnerabilities stem from common software used to manage and display web content.