Electronic Frontier Foundation – WhatsApp ranked as the worst at protecting users’ privacy

The Electronic Frontier Foundation published the “Who Has Your Back? 2015” report that ranked WhatsApp ranked as the worst in protecting users’ privacy.

The Electronic Frontier Foundation has published its annual report “Who Has Your Back? 2015: Protecting Your Data From Government Requests” that analyzes how private companies handlesusers data with specific focus on Government surveillance.

“Which companies will stand by users, insisting on transparency and strong legal standards around government access to user data? And which companies make those policies public, letting the world—and their own users—judge their stances on standing up for privacy rights?

For four years, the Electronic Frontier Foundation documented the practices of major Internet companies and service providers, judging their publicly available policies, and highlighting best practices.” states the Electronic Frontier Foundation Report.

This major findings of the report are:

Major Findings in the 2015 Electronic Frontier Foundation Report:

  • Nine Companies Receive All Available Stars: Adobe, Apple, CREDO, Dropbox, Sonic, Wickr, Wikimedia, WordPress.com, and Yahoo
  • AT&T, Verizon, and WhatsApp Lag Behind Industry in Standing by Users
  • Overwhelming Majority of Tech Companies Oppose Government-Mandated Backdoors
AT&T, Verizon and WhatsApp came out to be the worst companies in protecting its users’ data.
It is shocking to read that one of the most popular applications, WhatsApp, is considered by the experts as one of the three worst companies in protecting its users’ data representing a serious threat for the privacy.

Which is the judgment criteria adopted by the EFF?

The analysis is based on the following five criteria:
  • Follows Industry Accepted Best Practices
  • Tells Users About Government Data Demands
  • Discloses Policies on Data Retention
  • Discloses Government Content Removal Requests
  • Pro-user Public Policy: opposes backdoors

According to the experts Verizon met only two of the EFF’s criteria used for the evaluation, meanwhile WhatsApp and AT&T only met one. The companies fail in protecting the privacy of their users when receive government requests.

The company Adobe, Apple, CREDO, Dropbox, Sonic, Wickr, Wikimedia, WordPress.com, and Yahoo obtained the maximum number of starts demonstrating a great attention in both security and privacy of their users.

“We appreciate the steps that WhatsApp’s parent company Facebook has taken to stand by its users, but there is room for WhatsApp to improve. WhatsApp should publicly require a warrant before turning over user content, publish a law enforcement guide and transparency report, have a stronger policy of informing users of government requests, and disclose its data retention policies. WhatsApp does get credit for Facebook’s public position opposing back doors, and we commend Facebook for that.” states the post referring WhatsApp.

As reported in the following table the giants Amazon, Google and Microsoft obtained only three stars each, a rate considered disappointing by the privacy defenders and advocates.

However, the EFF report also says that Microsoft has made improvement in company practices and will be in a position to raise a fourth star in September.

I invite you to read the Electronic Frontier Foundation report and I desire to close with a statement reported in the analysis:“But times have changed, and now users expect more.”

Let’s hope companies will do even more to protect the privacy of their users.

Pierluigi Paganini

(Security Affairs – Electronic Frontier Foundation, privacy)

Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

U.S. Gov imposed Visa restrictions on 13 individuals linked to commercial spyware activity

The U.S. Department of State imposed visa restrictions on 13 individuals allegedly linked to the…

6 hours ago

A cyber attack paralyzed operations at Synlab Italia

A cyber attack has been disrupting operations at Synlab Italia, a leading provider of medical…

7 hours ago

Russia-linked APT28 used post-compromise tool GooseEgg to exploit CVE-2022-38028 Windows flaw

Russia-linked APT28 group used a previously unknown tool, dubbed GooseEgg, to exploit Windows Print Spooler…

17 hours ago

Hackers threaten to leak a copy of the World-Check database used to assess potential risks associated with entities

A financially motivated group named GhostR claims the theft of a sensitive database from World-Check…

1 day ago

Windows DOS-to-NT flaws exploited to achieve unprivileged rootkit-like capabilities

Researcher demonstrated how to exploit vulnerabilities in the Windows DOS-to-NT path conversion process to achieve…

1 day ago

A flaw in the Forminator plugin impacts hundreds of thousands of WordPress sites

Japan's CERT warns of a vulnerability in the Forminator WordPress plugin that allows unrestricted file uploads…

1 day ago

This website uses cookies.