Hacker Newsnew | past | comments | ask | show | jobs | submit | ucy's commentslogin

I worked as a teller in a partner bank.

As far as the paying procedures go, the only thing I needed to check it's the recipients name. I couldn't pay a "John Doe" wire to a "Joseph Doe".

I also had a customer that sent a wire to a Cuban citizen / South American resident. The payment was rejected because of some US embargo against Cuba.


> As far as the paying procedures go, the only thing I needed to check it's the recipients name. I couldn't pay a "John Doe" wire to a "Joseph Doe".

Reminds me of a story my SO told me once. For some reason I can't recall now her company was to get some money via Western Union. She was supposed to pick it up, but the sender refused because she had a polish character ("ł") in her surname and they believed that WU won't be able to handle such transfer. For that reason, the company had to send someone else to pick up the transfer.


The recipient name was always in "ALL-CAPS". I think they couldn't handle even ascii, maybe they use some telegraph era codepage.

Also, for what I remember, you can't send a wire to a company via WU. The recipient must always be a person.


I might ask SO for the details again, but yeah - that's how I understand why they wanted a particular employee to be the recipient of the transfer.


The real "Whatsapp Backdoor" is that, by default, the app stores a backup of all your messages on "teh cloud". On android, that's google.

So google can play "eve", and every run of the mill script kiddie that can get your google credentials may "restore" your messages. How convenient.

And that's the default settings. So, even if you turn it off, "mallory" can steal the credentials of your contact and snoop into your conversation that way.


That's very easy to manage. Every random 15-60 minutes a gcm/firebase message containing an encrypted payload with "you got this mail/no mail for you sir". So google cant get your frequency of use.


It's my impression that most people use Signal as an SMS app replacement, and in that environment people would not find a random 15-60 minute delay until their phone tells them about an incoming message to be tenable. I certainly wouldn't.


The US Government staged coups, dictatorships, and supported warlords, druglords, torturers, slavers and tyrants all over the third world over the last 80 years or so, all under that "American interests" and "national security" bravado. Maybe there's shitbags behind those shitbags, and it's shitbags all the way down.


Teller is the best part of the couple. What tops "The word made flesh" as an magic act? http://www.theatlantic.com/magazine/archive/1997/11/a-memory...


Schools are Prisons. Face it. If you need to request permission from someone higher up in the chain to take a shit in the toilet, it's a Prison. The cliques/gangs, the chain of command, violence, bullying and bravado are all the same. The crew does not care about you, the only thing that they fear are lawsuits and regulation.



It's back already - the Head of Supreme Justice overturned the decision. http://www.tecmundo.com.br/whatsapp/107456-caiu-presidente-s...


Actually, Brazil is the 2nd biggest user, only behind South Africa.


Brazilian here http://jota.uol.com.br/justica-rj-determina-novo-bloqueio-wh... "Em verdade, o Juízo requer, apenas, a desabilitação da chave de criptografia, com a interceptação do fluxo de dados, com o desvio em tempo real em uma das formas sugeridas pelo MP, além do encaminhamento das mensagens já recebidas pelo usuário e ainda não criptografadas, ou seja, as mensagens trocadas deverão ser desviadas em tempo real (na forma que se dá com a interceptação de conversações telefônicas), antes de implementada a criptografia."

So, a judge required Whatsapp to put a backdoor to realtime wiretap some users before the payload is encrypted. I personally dont think Whatsapp should comply.

Whatsapp isnt secure, anyway, the default config is to store all the messages and the key on icloud or google. Also, the server knows your contact list, (and bans you if you dont sync), and someone could tap your wifi to get your contact list.

The judges here are annoyed that the lawyers requested info that is under a gag order, and that they answered in English, and that Facebook, who has a local office plays dumb and insists that "Whatsapp is out of my jurisdiction" when Brazil has the 2nd bigger userbase of the app. They are hitting them where it hurts - blocking 7 billion usd of their assets. http://link.estadao.com.br/noticias/empresas,justica-brasile...


> Also, the server knows your contact list, (and bans you if you dont sync), and someone could tap your wifi to get your contact list.

Wouldn't they also have a contact log for each user?

That plus the contact list is a pretty nice chunk of data for use by their parent company.

And also, it would surely be useful for law enforcement. Has it been shared with the courts?


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: