Skype Co-Founder Launches End-To-End Encrypted 'Wire' App

A group of former Skype, Apple and Microsoft employees, backed by Skype’s co-founder Janus Friis, created a Skype alternative called “Wire” back in 2014, which wasn’t end-to-end encrypted at the time. The team announced that the latest version of the app brings open source end-to-end encryption from everything to chats to video calls, as well as multi-device end-to-end encryption.

State-Of-The-Art-Encryption

When Wire launched at the end of 2014, its main promised advantage over Skype and other messengers was the “crystal clear voice.” However, this doesn’t seem to have been enough for the app to pick up steam, which is why it has received a major encryption upgrade by adopting the open source Axolotl protocol.

The protocol was first created and adopted by the team behind the fully open source Signal app. It was quickly considered the state-of-the-art in encryption protocols for messengers, because it offered strong end-to-end encryption, the ability to send end-to-end encrypted messages to offline users, and end-to-end encrypted group chats.

Since then, the protocol has been adopted by Whatsapp (although the company never officially announced it, and it doesn’t allow users to verify each other cryptographically), Silent Phone, and ChatSecure (a popular privacy-focused app for iOS and Android).

For voice and video calls, Wire uses the same DTLS and SRTP encryption standards found in the peer-to-peer WebRTC protocol. The protocol has its weaknesses, but it’s still a step up from the centralized video-call services implemented by Skype or Hangouts, which could more easily intercepted.

Protected By Strong Privacy Laws

Wire is headquartered in Switzerland and Germany, two of the most privacy-friendly countries in the world. The app benefits from the strong privacy laws of both nations, as well as the European Union’s Data Protection regulation.

As the the governments of U.S., UK, and even France become increasingly more aggressive towards encryption, more and more companies that actually care about their users’ privacy seem to be moving to either Germany or Switzerland, where the chance to be strong-armed into backdooring their services is much lower. If that were to happen, at least the companies would have those countries’ privacy-friendly Constitutions on their side, and could have a high chance of winning such battles in Court.

Comparison With Other Apps

All of Wire’s encryption is open source, but its user interface is closed source, which means vulnerabilities could still be introduced potentially without the user being able to find out about them. At some level you still have to trust the team behind it to not do nefarious things, but this can be more easily achieved when the company takes so many privacy-friendly measures, including being headquartered in privacy-friendly countries. This is more than most other messaging companies are willing to do.

Although it’s not fully open source the way Signal is, it’s a little more complete because it offers video calls, making it more of a true Skype alternative. This makes it the best overall private messenger for the masses at present.

For those who are really worried about their privacy or worried that they are targets of various governments, Signal would still be a better choice. However, it seems the more time passes, the more we see “mainstream” chat applications get closer to the ideal in security and privacy, which can only be good news for everyone.

Lucian Armasu is a Contributing Writer for Tom's Hardware. You can follow him at @lucian_armasu. 

Follow us on FacebookGoogle+, RSS, Twitter and YouTube.

Lucian Armasu
Lucian Armasu is a Contributing Writer for Tom's Hardware US. He covers software news and the issues surrounding privacy and security.
  • chicofehr
    I use BBM video. Haven't looked at anything else for a while.
    Reply
  • HvStV
    Although it’s not fully open source the way Signal is, it’s a little more complete because it offers video calls, making it more of a true Skype alternative. This makes it the best overall private messenger for the masses at present.

    For those who are really worried about their privacy or worried that they are targets of various governments, Signal would still be a better choice.

    I'm a bit confused, considering the information given one would expect Wire would be the best option either way. Or did I miss the part where Wire (as a company) is able to decrypt messages from users if forced by government(s) (or otherwise feels the need to).

    Perhaps I'm just 'a dummy' but I'm sure interested in getting a little wiser in the process.
    Reply
  • SiimTeller
    Or did I miss the part where Wire (as a company) is able to decrypt messages from users if forced by government(s) (or otherwise feels the need to).

    As stated - all user communication is end-to-end encrypted and while the messages are relayed via Wire servers the company does not have a master key and the messages are deleted once they've been delivered.
    Reply
  • HvStV
    17656638 said:
    Or did I miss the part where Wire (as a company) is able to decrypt messages from users if forced by government(s) (or otherwise feels the need to).

    As stated - all user communication is end-to-end encrypted and while the messages are relayed via Wire servers the company does not have a master key and the messages are deleted once they've been delivered.

    Thank you for replying.

    Then why would Signal be the beter choice? Seems Wire has all the (mentioned) boxes checked and Signal only half of them. Forgive if I miss the obviouse or something but I've never given much thought about things like this. But when I read this article it sure got me thinking which in turn created some questions about it's content. Any respons will be appreciated.
    Reply
  • Tykkopoles
    17656638 said:
    Or did I miss the part where Wire (as a company) is able to decrypt messages from users if forced by government(s) (or otherwise feels the need to).

    As stated - all user communication is end-to-end encrypted and while the messages are relayed via Wire servers the company does not have a master key and the messages are deleted once they've been delivered.

    Thank you for replying.

    Then why would Signal be the beter choice? Seems Wire has all the (mentioned) boxes checked and Signal only half of them. Forgive if I miss the obviouse or something but I've never given much thought about things like this. But when I read this article it sure got me thinking which in turn created some questions about it's content. Any respons will be appreciated.

    Because while the encryption platform is open-source, the front-end of Wire is closed-source, meaning that vulnerabilities could be injected (by nefarious or authoritarian groups) without the user being able to find out. Signal is 100% open-source from the ground up, conversely, meaning there is 100% transparency to what is actually in the application.
    Reply
  • st_ranger
    Why a phone running Android 4.1.2 is not supported by Wire?
    It's only ~3 y.o. phone. Despite what the cell phone industry wants you to think (for obvious reasons), you don't have to replace your phone every 2 years.
    Reply