Signal's Creator [Moxie Marlinspike] Is Helping Encrypt Meta AI
0 net
Tags
Signal’s Creator Is Helping Encrypt Meta AI | WIRED Skip to main content Comment Loader Save Story Save this story Comment Loader Save Story Save this story Moxie Marlinspike, the privacy advocate who created the secure communication app Signal and its widely used open source encryption protocol, said this week that his privacy-focused AI platform, Confer , will start incorporating its technology into Meta’s AI systems. Every day, billions of chat messages sent through Signal, Meta’s WhatsApp, and Apple’s Messages are protected by end-to-end encryption . The feature, which makes it impossible for tech companies and anyone other than the sender and recipient to snoop on your messages, has become mainstream over the past decade. As generative AI platforms explode in popularity, though, people are now also exchanging billions of messages a day with AI chatbots that don’t offer the protection of end-to-end encryption—making it easy for AI firms to access what you talk about. This is by design, given that platforms often want to train their AI models on as much user data as possible and have made it hard to opt out of having your information used as training data. But as chatbots and AI agents have become more capable, some technologists and companies are pushing to create more constrained and privacy-focused systems. “As LLMs continue to be able to do more, we should expect even more data to flow into them,” Marlinspike wrote in a short blog post about his collaboration with Meta published on Tuesday. “Right now, none of that data is private. It is shared with AI companies, their employees, hackers, subpoenas, and governments. As is always the case with unencrypted data, it will inevitably end up in the wrong hands.” Marlinspike wrote that he will “work to integrate Confer’s privacy technology so that it underpins Meta AI.” He also emphasized that Confer, which debuted at the beginning of this year, will continue to operate independent of Meta. The project’s goal, Marlinspike added, is to offer a technology that “allows everyone to get the full power of AI along with the full privacy of an encrypted conversation.” In 2016, Marlinspike worked with WhatsApp, which is owned by Meta, to roll out end-to-end encryption to more than a billion accounts simultaneously . Over the last year, WhatsApp has introduced a Meta AI chatbot into its app, which isn’t shielded from the company in the same way individual chats are. “People use AI in ways that are deeply personal and require access to confidential information,” WhatsApp head Will Cathcart wrote on Wednesday on the social media platform X about the collaboration with Confer. “It's important that we build that technology in a way that gives people the power to do that privately.” The adoption of encrypted AI is still emerging. The cryptographic schemes used in end-to-end encryption for traditional digital communication aren’t easily or directly translatable into data protections for generative AI. For its part, Confer is still a new project, and Marlinspike’s blog post did not provide specific details about how exactly the collaboration with Meta will work or what the specific goals are for integration. Neither Marlinspike nor Meta provided WIRED with additional comment ahead of publication. Mallory Knodel, a cryptography researcher at New York University, says it would be “great for people using chatbots that use Meta AI to have confidentiality and privacy within that exchange.” Crucially, that means Meta would not be able to access AI chat data for training, says Knodel, who along with colleagues recently published a study on end-to-end encryption and AI . “I really hope more AI chatbots adopt this approach.” Knodel’s preliminary, initial assessments of Confer indicate that the platform isn’t perfect, but is an important example of how to build a private AI chatbot. Cryptographer JP Aumasson, the chief security officer at the cryptocurrency platform Taurus, has come to similar conclusions about Confer thus far. “Confer is probably the best private AI solution, all things considered,” he tells WIRED. “It's not perfect, of course. It lacks documentation of its architecture, threat model, and supply chain. But Moxie knows what he's doing and has a solid track record.” The complexity of developing encryption schemes for AI platforms is a major hurdle, and much of the privacy work so far has focused on accessible open source models or building privacy layers between AI companies and end users . For example, as Marlinspike wrote on Tuesday, “Confer’s technology has been built on top of open weight models. While many people love using Confer for a wide variety of tasks, others have missed the frontier capabilities from proprietary models.” The collaboration with Meta gives Marlinspike an opportunity to work directly with closed models. “Meta is building advanced frontier models, so this will combine the most private AI chat technology in the world with the most capable AI models in the world,” he wrote. Regardless of whether the project will ultimately fulfill all of those superlatives, researchers emphasized to WIRED that the collaboration is significant. “Moxie's proposal of using trusted computing, a concept dating back at least to the 1990s, is sound to me,” Taurus’ Aumasson says. “The underlying assumptions and limitations are well understood. Again, it's not perfect, but probably sufficient for most users. The challenge is to support models that are as good as the latest frontier models from Anthropic and Google and OpenAI.” Comments Back to top Triangle You Might Also Like In your inbox: The week’s biggest tech news in perspective This popular pro-Trump X account is apparently run by a White House staffer Big Story: The five big ‘known unknowns’ of Trump’s war with Iran The system that intercepted Iran’s missiles over the UAE Listen: The Pentagon vs. “woke” Anthropic Lily Hay Newman is a senior writer at WIRED focused on information security, digital privacy, and hacking. She previously worked as a technology reporter at Slate, and was the staff writer for Future Tense, a publication and partnership between Slate, the New America Foundation, and Arizona State University. Her work ... Read More Senior Writer X Matt Burgess is a senior writer at WIRED focused on information security, privacy, and data regulation in Europe. He graduated from the University of Sheffield with a degree in journalism and now lives in London. Send tips to [email protected] . ... Read More Senior writer X Topics Meta Signal artificial intelligence privacy encryption end-to-end encryption WhatsApp How to Organize Safely in the Age of Surveillance From threat modeling to encrypted collaboration apps, we’ve collected experts’ tips and tools for safely and effectively building a group—even while being targeted and tracked by the powerful. Andy Greenberg This AI Agent Is Designed to Not Go Rogue The new open source project IronCurtain uses a unique method to secure and constrain AI assistant agents before they flip your digital life upside down. Lily Hay Newman Yann LeCun Raises $1 Billion to Build AI That Understands the Physical World Meta’s former chief AI scientist has long argued that human-level AI will come from mastering the physical world, not language. His new startup, AMI, aims to prove it. Maxwell Zeff The Danger Behind Meta’s Decision to Kill End-to-End Encrypted Instagram DMs Meta blamed users for not opting into the privacy-protecting feature. Experts fear the move could be the first major domino to fall for end-to-end encryption tech worldwide. Lily Hay Newman Nvidia Is Planning to Launch an Open-Source AI Agent Platform Ahead of its annual developer conference, Nvidia is readying a new approach to software that embraces AI agents similar to OpenClaw. Lauren Goode Big Tech Says Generative AI Will Save the Planet. It Doesn’t Offer Much Proof A new report finds that of 154 specific claims about how AI will benefit the climate, just a quarter cited academic research. A third included no evidence at all. Molly Taft Are You ‘Agentic’ Enough for the AI Era? Silicon Valley built AI coding agents that can handle most of the grunt work. Now, the most valuable skill in tech is deciding what they should do. Maxwell Zeff Meta Is Developing 4 New Chips to Power Its AI and Recommendation Systems The MTIA processors are the tech giant’s latest attempt to build its own AI hardware, even as it continues spending billions on gear from industry leaders like Nvidia. Lauren Goode OpenClaw Users Are Allegedly Bypassing Anti-Bot Systems An open source project called Scrapling is gaining traction with AI agent users who want their bots to scrape sites without permission. Reece Rogers DHS Wants a Single Search Engine to Flag Faces and Fingerprints Across Agencies Homeland Security aims to combine its face and fingerprint systems into one big biometric platform—after dismantling centralized privacy reviews and key limits on face recognition. Dell Cameron John Solly Is the DOGE Operative Accused of Planning to Take Social Security Data to His New Job A whistleblower complaint alleges John Solly claimed to have stored highly sensitive Social Security data on a thumb drive. Solly and Leidos, his current employer, strongly deny the allegations. Makena Kelly 6G Is Coming. Here’s What to Expect From the Next Generation of Cellular Tech When it succeeds 5G in 2030, the next-gen mobile network will focus on upload speeds, AI, and radar-like “sensing” of vehicles, devices, and people. Julian Chokkattu