UK Orders Apple To Break Encryption Worldwide While World Is Distracted
from the the-death-of-privacy dept
In a stunning escalation that confirms our worst fears, the UK government has finally shown its true hand on encryption — and it’s even worse than we predicted. According to a bombshell report from Joseph Menn at the Washington Post, British officials have ordered Apple to create a backdoor that would allow them to access encrypted content from any Apple user worldwide.
This comes after years of the UK government’s steadily mounting assault on encryption, from the Investigatory Powers Act to the Online Safety Act. While officials repeatedly insisted they weren’t trying to break encryption entirely, those of us following closely saw this coming. Apple even warned it might have to exit the UK market if pushed too far.
Security officials in the United Kingdom have demanded that Apple create a back door allowing them to retrieve all the content any Apple user worldwide has uploaded to the cloud, people familiar with the matter told The Washington Post.
The British government’s undisclosed order, issued last month, requires blanket capability to view fully encrypted material, not merely assistance in cracking a specific account, and has no known precedent in major democracies.
Let’s be super clear here: The UK government is demanding that Apple fundamentally compromise the security architecture of its products for every user worldwide. This isn’t just about giving British authorities access to British users’ data — it’s about creating a master key that would unlock everyone’s encrypted data, everywhere.
This is literally breaking the fundamental tool that protects our privacy and security. Backdoored encryption is not encryption at all.
The technical reality is stark: You can’t create a backdoor that only works for “good guys.” Any vulnerability built into the system becomes a vulnerability for everyone — state actors, cybercriminals, and hostile nations alike. And right now, it’s worth recognizing that any government (including our own) can be seen as a “hostile nation” to many.
Even if Apple withdraws from the UK market entirely, as the Post reports they’re considering, it won’t satisfy the UK’s demands:
Rather than break the security promises it made to its users everywhere, Apple is likely to stop offering encrypted storage in the U.K., the people said. Yet that concession would not fulfill the U.K. demand for backdoor access to the service in other countries, including the United States.
This global reach is particularly concerning given the UK’s membership in the Five Eyes intelligence alliance. Any backdoor created for British authorities would inevitably become a tool for intelligence and law enforcement agencies across the US, Australia, Canada, and New Zealand — effectively creating a global surveillance capability without any democratic debate or oversight in those countries.
If the UK does this, it means that the FBI will be able to use it to read anyone’s data.
The UK government’s approach here is particularly insidious. While Apple can appeal the order, their appeal rights are bizarrely limited: They can only argue about the cost of implementing the backdoor, not the catastrophic privacy and security implications for billions of users worldwide. This reveals the UK government’s complete indifference to the fundamental right to privacy.
Even more alarming is the forced secrecy component.
One of the people briefed on the situation, a consultant advising the United States on encryption matters, said Apple would be barred from warning its users that its most advanced encryption no longer provided full security. The person deemed it shocking that the U.K. government was demanding Apple’s help to spy on non-British users without their governments’ knowledge. A former White House security adviser confirmed the existence of the British order.
This gag order component is particularly chilling — the UK isn’t just demanding the power to break encryption globally, they’re demanding the right to force Apple to actively deceive its users about the security of their data. After years of dismissing concerns about the Investigatory Powers Act as “exaggerated,” the UK government is now proving its critics right in the most dramatic way possible.
The implications here cannot be overstated. This would represent the single largest coordinated attack on private communications in the digital age. It’s not just about government surveillance — it’s about deliberately introducing vulnerabilities that would be exploitable by anyone who discovers them, from hostile nation-states to criminal organizations.
The timing of this demand is nothing short of breathtaking in its recklessness. We are quite literally in the midst of dealing with the catastrophic fallout from the Chinese Salt Typhoon hack — where state-sponsored hackers exploited a government-mandated backdoor in our telephone infrastructure to conduct widespread surveillance. This hack alone should have permanently ended any discussion of intentionally weakening encryption. It’s a real-world demonstration of exactly what security experts have been warning about for decades: backdoors will inevitably be discovered and exploited by bad actors.
The irony here is almost painful: The FBI itself has been actively encouraging Americans to use encrypted communications specifically because our telephone infrastructure remains compromised by Chinese hackers. Yet at this precise moment — when we’re witnessing firsthand the devastating consequences of compromised security — the UK government is demanding we create an even bigger, more dangerous, more consequential backdoor?
This is beyond dangerous. There is no reasonable rationale for this.
There’s a good chance that the UK is doing this right now knowing that the US is totally distracted by everything that Musk and Trump are doing to dismantle the US government. But given how much Trump seems to hate the FBI right now, it seems like even more of a reason for him to call this out as an attack on Americans and our privacy. Does he want the FBI reading his data as well?
Senator Ron Wyden, who has been a tireless champion of encryption, is reasonably angry about this and is calling on both Apple and Trump to “tell the UK to go to hell.”
As he says:
Trump and Apple better tell the UK to go to hell with its demand to access Americans’ private, encrypted texts and files. Trump and American tech companies letting foreign governments secretly spy on Americans would be an unmitigated privacy and national security disaster.
Wyden calling out Trump here actually makes a lot of sense. Given Trump’s current antagonistic relationship with federal law enforcement, he might be uniquely positioned to recognize this for what it is — a foreign government demanding the power to spy on Americans, including him personally. The FBI, which would inevitably gain access to this backdoor through Five Eyes sharing agreements, would have unprecedented access to everyone’s communications — a scenario that should alarm privacy advocates across the political spectrum.
This is, without hyperbole, a five-alarm fire for digital privacy and security. The UK government is attempting to fundamentally reshape global digital security through a secretive demand, hoping the world is too distracted to notice or resist. They’re not just asking for a key to their own citizens’ data — they’re demanding the power to unlock everyone’s digital life, everywhere, while forcing Apple to lie about it.
The stakes couldn’t be higher. This isn’t just about privacy — it’s about the future of secure communication itself. Don’t let this slip by in the chaos of the moment. The UK government is betting on our distraction and apathy. Let’s prove them wrong.
Filed Under: backdoors, encryption, investigatory powers act, privacy, security, spying, surveillance, uk
Companies: apple


Comments on “UK Orders Apple To Break Encryption Worldwide While World Is Distracted”
I wish these tech firms will grow a backbone.
Signal said it would leave the UK if this ever happened, but still refuses to do so.
Either leave the UK or stfu. (Same goes for Apple.)
Re:
signal issued its threat, the UK backed down.
Now, like the zombie anti-encryption bills in the US, the UK has come back try to pass the law again.
At no time has the UK actually stepped over the signal line.
Re: Re:
Greetings.
Attached is a copy of a letter we received recently.
Regarding the backdoor demand, our response is as follows:
Respectfully yours,
… Apple (hopefully)
cc: editor, The Guardian
cc: editor, New York Times
That’s optimistic. He’s more likely to ask where is ‘his’.
Re:
Yes, I think that’s exactly what he’ll do. And order another box of burner phones.
I personally doesn’t trust Apple with any of my data (mostly because security has never been their main goal, even if they’re doing a much better job than some other big companies) but I really hope Apple will give the finger to UK just to prevent any other country in the world to think about it twice.
Ron Wyden’s argument about foreign country inference is a bit hypocrite given the well known NSA/FBI/CIA and Five Eyes history with backdoors tough.
Re:
Is Wyden in favor of those things? What hypocrisy are you referring to?
Re:
They’re not. Apple’s idea of security is to shut down Bluetooth interconnectivity between iOS and other devices because that’s something they can actually do instead of patching the gaping holes in iOS security.
This comment has been flagged by the community. Click here to show it.
Gee
It’s almost like big companies and “oligarchs” telling evil governments to go screw is sometimes a good thing, actually.
Re:
Who’s claiming it’s never a good thing?
This comment has been flagged by the community. Click here to show it.
Re: Re:
liberals, mostly.
Re: Re: Re:
Oh, so your personal boogeyman. Got it.
This comment has been flagged by the community. Click here to show it.
Re: Re: Re:2
That doesn’t even make sense. 1) obviously they exist 2) I’m winning
Re: Re: Re:3 Hows the basement shitstain?
It’s weird you bring up winning so much. It’s almost like you’re super mad about something else.
Re: Re: Re:
Fucking child.
Re:
What a charming, but incredibly naive, sentiment. (Do you REALLY think that when two entities both equipped with enormous power and wealth get into a pissing match that it’s going to rain fresh, clear, sparkling water on the rest of us?)
That would be nice. But a far more likely outcome is that they’ll make a public show of this while arriving at a private agreement that allows both to do what they want…because the executives, board, and investors of Apple are NOT going to allow Apple products and services to exit that market. Will. Not. Happen.
This comment has been flagged by the community. Click here to show it.
Re: Re:
coming from a random on a tech blog
Re: Re: Re:
Nice self own.
Grow the fuck up, you child.
Has the UK forgot about the European Court of Human Rights ruling Podchasov v. Russia?
This comment has been flagged by the community. Click here to show it.
Re:
No, they just want “magic” encryption that doesn’t apply to them but applies to Russia.
Re: Re:
wrong matt
Re:
UK, ECHR would like to have a word with ya regarding its ruling Podchasov v. Russia
Re: Re:
You sound a lot like some vriska person I keep seeing pop up on reddit
Re:
Either it’s never heard of it or it just doesn’t care. I know which I believe to be more likely out of those two possibilities.
Jesus H. Christ.
2025: The Year Of Insanity
Re:
just look at matt trying to evade the spam filter by changing names despite it being futile
This comment has been flagged by the community. Click here to show it.
Re: Re:
You’re telling on yourself and your cowardice.
Besides, I’m not “trying”. It’s also kinda fun. Sometimes I don’t even HAVE to tell you who I am.
This comment has been flagged by the community. Click here to show it.
Re: Re: Re:
and thanks for admitting your matt idiot
Re: Re: Re: We can tell it's you be the smell of shit wafiting around you bro
Yes keep on bragging about losing to an automated spam filter. This shit if hysterical.
Re: Insanity?
I liken it more to the year of absolute arrogance and stupidity, though they are very efficient by keeping it all in one neat package.
Well, given it’s about mass surveillance, the UK’s gonna be getting it their way regardless.
Nobody ever stops the surveillance machine nowadays.
Re:
so we should give up and die is what you’re saying
Re:
They can brute force the old phones, but not the newer ones.
This comment has been flagged by the community. Click here to show it.
The irony of the outrage on a site that demands you register before you comment.
Re:
Your grasp on logic is astounding.
Re:
… said the person posting anonymously and without registering. You did not think that one through did you?
Re:
Shit honey I thought you were stupid bunt not retarded. I stand corrected.
Re:
You clearly don’t understand what “irony” means.
Looks like pay phones are back on the menu boys (and girls)!
Re:
If you can find one….
Re: Re:
…that hasn’t been vandalized.
This comment has been flagged by the community. Click here to show it.
If you didn’t have something to hide, you wouldn’t be worried about this.
Regardless, I’m sure President Trump will sort it out for you. Trust the plan.
Re:
In the words of Ed Snowden: “Arguing that you don’t care about the right to privacy because you have nothing to hide is no different than saying you don’t care about free speech because you have nothing to say”.
Re: Re:
In the words of AC, “Don’t worry, President Trump won’t let anything bad happen to you (if you’re American).”
'Privacy is a priviledge rather than a right for the peasantry' -UK government
Someone really needs to take all the dystopian novels like 1984 out of the hands of UK politicians, they seem to be treating them as ‘How-to’ guides rather than warnings.
Re:
We tried that. They just sent their firemen to the rescue.
“…effectively creating a global surveillance capability without any democratic debate or oversight in those countries.”
oooooooooo – the fascists just had a global orgasm!!
I think somebody around here has been paying attention after all. Yes. This is the dream. It was once called One World Government.
Re:
oh shut up with the tin foil hat shit
No, this is the part where we break the UK’s laws. If they won’t listen to us why should we listen to them?
It’s a country that doesn’t believe in freedom of artistic expression or freedom of thought. Not sure what you’re expecting…
This comment has been flagged by the community. Click here to show it.
Unironically, why should anyone in the US (or any other part of the world) care about what the UK is up to or is demanding? They’re a failed empire that impotently shakes their rattle and cries until they get put in their place by actually competent states.
I think we should just move all jobs and industries out of the UK and glass them. They have been a net negative on the world since their inception.
Re:
(Looks at current USA executive branch.)
(sigh) Too late. Sorry, can’t help you.
Re: Someones mad they got colonised by wankers
Unironically why do you care about the US when you’re up in OZ up in the back of a GOAT?
So I have a question; are passwords and other login details stored in the cloud?
If they are, and this backdoor-to-be allows access to them…how long until mass identity-theft makes online banking unusable?
Re:
Except in the very worst secured places, no, they aren’t. Generally, what is stored is a salted hash (see here for an explanation: https://www.okta.com/blog/2019/03/what-are-salted-passwords-and-password-hashing/). This is so that, even if a password database is stolen, it is difficult to impossible to tell if two users have the same password (the salts ensure the hashes are different), and the hashes are extremely difficult (read: infeasible with current methods and hardware) to reverse.
Re: Re:
I think that Daydream is referring to the users password manager database. I too wonder if this type of backdoor would allow a government to access a users saved passwords.
Re: Re: Re:
Mmm. Password manager databases are a whole different beast. After this order, I’d be very concerned storing my password with apple, that’s for sure.
I did not need to hear this rn as I’m about to go to bed, I can only hope they realise how stupid they are being and revert their decision. God I fucking hate my country so much…
It is necessary to see the fact that the famous cypherpunk, privacy advocate, the world’s first cryptographer David Chaum, who has cryptographic patents and works protecting privacy by destroying the digital footprints of the developing digital world, the xx.network project and cmixx technology, which are currently functional, eliminate these problems.
The question for me is jurisdiction. I have to assume the UK has just decided they have global jurisdiction and that the UK is actually the entire world, because it’s about the only thing that makes sense outside of just wanting to outright spy on, well, Everyone. The thing though is that when Europol demands access to EU user data, that’s within their jurisdiction. The UK legally doesn’t have anything to do with what’s happening over in, I don’t know. Kyrgyzstan. Neither do the other Five Eyes countries – so what’s the end goal besides data hoarding, exactly?
This comment has been flagged by the community. Click here to show it.
Is this the possible end of section 230? https://x.com/johnschloss/status/1886846454301417963?t=EqoyywFr6Y9VNUtj2xfyyw
Re:
Eric Goldman also says section 230 is doomed.
Re: Re:
[You could at least link to why he argues that rather than what some rando on Twitter says.](https://blog.ericgoldman.org/archives/2025/02/section-230-still-works-in-the-fourth-circuit-for-now-m-p-v-meta.htm%5D
Re: Re: Re:
Christ, I am bad at this – here.
Re: Re: Re:2
Probably also a good idea to also add the actual Judicial Committee hearing the post mentions, too, courtesy of Graham himseelf.
Re: Re: Re:3
The point remains.
Re: Re: Re:4
I’m not saying the point is wrong, but that it is only good ethic to cite the original source and to not use current-day Twitter, much less as a source. Especially when you’re sharing posts that are responding to this guy.
Re: Re: Re:5
Huh. I was only able to view Schloss’ response to it, not the actual post itself.
To be fair, viewing it seems to require having a twitter account, and that’s at least one thing I’ve successfully avoided making.
Re: Re: Re:5
Except the AC you responded to linked to Eric Goldman’s blog, not ExTwitter. WTF are you talking about?
Re: Re: Re:3
God, Graham’s such an idiot.
It’s not that the intent isn’t understandable, it’s that he, once again, does not understand what section 230 is for. And he’s willing to destroy the internet over his ignorance.
What’s there left to do to change their minds at this point?
Re: Re: Re:4
There’s no changing the minds of people like Graham, or the plaintiffs in the suit who’re trying to push for the idea that Section 230 allows killing kids (or whichever wrong and deeply exaggerated idea is the topic to be). There’s simply too much grief and especially money involved in directing that grief. All you can Really do is contribute to help the organizations fighting back against this, like the ACLU and the EFF. Or become a lawyer yourself, I suppose.
Re: Re: Re:5
Fuck. Well, it’s good there’s organizations at least TRYING to defend it, but at the end of the day it seems this is all just a consequence of the free internet actually being incredibly flimsy and destroyed by the removal of even one law.
Re: Re: Re:6
Much like Roe v. Wade, this has always been an enormous problem with Section 230, yes, and it’s something I’ve mulled over too. At some point it feel miraculous that it’s survived as long as it has, considering.
Re: Re: Re:7
I wish it didn’t have to be at risk all the time, I regret learning about internet regulation in the first place.
It’s hard to have much fun when you feel like the whole thing could be shut down any day and you’ll lose contact with all the friends you’ve made, since I’d presume no messenger services like discord or the like would be safe either.
Re: Re: Re:8
You’d have to ask a lawyer about the actual outcome of Section 230 to get a good answer, honestly. Personally I do have the half-finished thought that it’s probably going to lead to an increasing rise in decentralized or otherwise federated platforms, mostly because a) people will still want to talk to each other and b) I just very much doubt they’d slither back to platforms like Instagram, or Twitter. Sure, the liability aspect’d still be there, but like with piracy sites, it’s also harder to stamp down on compared to centralized sites.
This comment has been flagged by the community. Click here to show it.
If people in other countries have done nothing wrong, they’ve got nothing to hide from either British law enforcement or the British government.
Re:
… said the person posting anonymously.
Re:
What a silly and childish take on life.
Grow up.
do not fool yourselves about apple.
apple gladly signed and obeyed the PRISM agreement between them and the NSA. so have google, and microsoft, and everyone else the NSA asked.
apple works hand. in. hand. with all the NSA requets. always have until now, always will keep doing.
any device from apple or runing android, anything related to microsoft, or google, the NSA has access to. you won’t be told, they will then push the data to anyone that needs it : FBI, CIA… anyone.
do you have any idea how much the NSA and the other letter agencies are laughing at your commentaries ?
have you not learned ANYTHING from what Snowden told you about PRISM, the NSA and all those americain-based companies ?
Re:
I asked my dad, CEO of Prism and he says you’re lying.
Didn’t they just remove the last pay phone from Times Square like two years ago?
One can often still find (working even) pay phones in seedy dive bars across the US. Being an old 2600 Subscriber, I still check phones when I find them