RSA 2016: Weakened encryption compromises national security
Terrorists will move to other platforms, while criminals will exploit the flaws, claim speakers


Tech leaders have hit out at government snooping and attempts to break encryption on the first day of RSA Conference 2016.
On the same day that Apple once again came face-to-face with the FBI in a court hearing in LA, down the coast in San Francisco, Amit Yoran, president of RSA, used his opening keynote to criticise governments for allowing intelligence and law enforcement agencies to dominate the security conversation.
"We need governments to enact policies that help, rather than hinder security, providing opportunities for talent development," he told delegates.
Yoran said that the aims and perspectives of such agencies are "radically different" to those of people trying to defend networks, and said policy proposals such as weakening encryption "boggle the mind".
"In an era when cybersecurity is consistently cited as the single greatest threat to our way of life - above terrorism and all else - how can we possible justify a policy that would catastrophically weaken our infrastructures?" asked Yoran.
"Weakening encryption is solely for the ease and convenience of law enforcement when they are pursuing petty criminals. No credible terrorist or nation state actor would ever use technology that is knowingly weakened. However, if you weaken our encryption you can sure bet that the bad guys will use that and exploit it against us," he added.
These thoughts were echoed by Brad Smith, general legal counsel at Microsoft, who took to the stage after Yoran for his own keynote.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Smith reflected on not just the big hacks of the past few years but also the terrorist attacks that hit Paris and San Bernardino in late 2015.
"People went to work [the day after these attacks] debating whether this meant new steps needed to be taken for technology, for surveillance, for encryption," said Smith. "We live in a world where every week there is a pendulum and the question is, which way will the pendulum swing on these issues that affect us?"
Smith argued that it was impossible to ensure people's security in real life if their security cannot be ensured online.
"The internet started out two decades ago as something people talked about as a different space - cyberspace, as if it were disconnected from real space and the real world. Well, what we've learnt today is that if people want to shape and impact what happens in the real world, they go to the internet," said Smith.
"This has affected everybody - governments around the world studied the Sony case and they realised that there is no such thing as national security in this decade without cyber security. We've realised that hence we need to keep information secure. One thing is clear above all else - people will not use technology they do not trust and hence trust is the absolute foundation for our entire industry and it needs to remain that way," Smith concluded.
Smith and Yoran's comments also come on the same day Theresa May introduced a new draft of the Investigatory Powers Bill to Parliament. The new text still contains a controversial provision that would oblige companies, including RSA, Microsoft and Apple, to remove encryption at the request of law enforcement agencies.

Jane McCallion is Managing Editor of ITPro and ChannelPro, specializing in data centers, enterprise IT infrastructure, and cybersecurity. Before becoming Managing Editor, she held the role of Deputy Editor and, prior to that, Features Editor, managing a pool of freelance and internal writers, while continuing to specialize in enterprise IT infrastructure, and business strategy.
Prior to joining ITPro, Jane was a freelance business journalist writing as both Jane McCallion and Jane Bordenave for titles such as European CEO, World Finance, and Business Excellence Magazine.
-
CISA issues warning in wake of Oracle cloud credentials leak
News The security agency has published guidance for enterprises at risk
By Ross Kelly
-
Reports: White House mulling DeepSeek ban amid investigation
News Nvidia is caught up in US-China AI battle, but Huang still visits DeepSeek in Beijing
By Nicole Kobie
-
Starmer bets big on AI to unlock public sector savings
News AI adoption could be a major boon for the UK and save taxpayers billions, according to prime minister Keir Starmer.
By George Fitzmaurice
-
UK government targets ‘startup’ mindset in AI funding overhaul
News Public sector AI funding will be overhauled in the UK in a bid to simplify processes and push more projects into development.
By George Fitzmaurice
-
UK government signs up Anthropic to improve public services
News The UK government has signed a memorandum of understanding with Anthropic to explore how the company's Claude AI assistant could be used to improve access to public services.
By Emma Woollacott
-
US government urged to overhaul outdated technology
News A review from the US Government Accountability Office (GAO) has found legacy technology and outdated IT systems are negatively impacting efficiency.
By George Fitzmaurice
-
Government urged to improve tech procurement practices
News The National Audit Office highlighted wasted money and a lack of progress on major digital transformation programmes
By Emma Woollacott
-
Government says new data bill will free up millions of hours of public sector time
News The UK government is proposing new data laws it says could free up millions of hours of police and NHS time every year and boost the UK economy by £10 billion.
By Emma Woollacott
-
Three giant tech challenges the UK’s new government faces right now
Opinion Five years starts now, and there’s not a second to waste
By Steve Ranger
-
G-Cloud 13: UK government 'inhibiting' cloud SMEs' ability to adapt to harsher business landscape
News Suppliers on the cloud services portal have hit out at an extension to the current iteration of G-Cloud
By Ross Kelly