Meta Enhances Encrypted Backups with Proof-Based Security Features
Meta Enhances Encrypted Backups with Proof-Based Security
In a significant update to its infrastructure, Meta has implemented over-the-air fleet key distribution for encrypted backups in Messenger and committed to publishing evidence of secure fleet deployments.
User Data Protection
The system, introduced in 2016 for end-to-end encrypted messaging, ensures that only users can decrypt their stored data. When users enable end-to-end encryption in Messenger, a client-generated 256-bit encryption key is created using a cryptographically secure pseudorandom number generator. This key remains on the client device and is never transmitted unencrypted, necessitating its use to decrypt the backup.
Fleet Public Key Distribution
To distribute the fleet public keys securely, Meta employs over-the-air distribution, validated by Cloudflare’s audit logs and independently countersigned by the company.
Leadership in Secure Communication Technologies
This enhancement underscores Meta’s dedication to preserving user confidentiality and providing transparent assurance regarding the secure deployment of its HSM fleets. By incorporating proof-based security into its encrypted backups, Meta reinforces its position as a leader in secure communication technologies.
