Connect with us

Published

on

Think twice before sending your next text message. Or better yet, make sure you are using an end-to-end encryption method.

Consumers regularly use different types of messaging technology from the biggest technology companies including Apple, Alphabet and Meta Platforms, including iMessage, Google Messages, WhatsApp and SMS, but the level of protection varies. Now, the U.S. government is expressing greater concern after a recent massive hack of the nation’s largest telecom companies. 

Last month, the Cybersecurity and Infrastructure Security Agency and the Federal Bureau of Investigation revealed a campaign by hackers associated with China, Salt Typhoon, that compromised AT&T and Verizon, and others, and was one of the largest hacks of U.S. infrastructure in history. Following that warning, CISA, the National Security Agency, the FBI and international partners published a joint guide to help protect Americans. One suggestion is to use end-to-end encryption, a method that makes communications more secure.

End-to-end encryption helps ensure that only the intended recipients can read your messages as they travel between your phone and another person’s phone. Secure messaging apps use end-to-end encryption to protect communications from hackers, surveillance and unauthorized access, so even messaging app providers can’t read your messages.

“All things being equal, if you have the opportunity to use a platform that’s end-to-end encrypted, you should,” said Michael Hughes, chief business officer of Duality Technologies, which allows organizations to share and analyze sensitive data using encryption.

Many consumers don’t know their options for communicating securely over messaging apps. Here are the basics.

WhatsApp, Signal among best end-to-end options

Consumers use different messaging apps for various purposes, often without giving a second thought to security. However, there are notable differences among platforms that people need to be aware of. 

From a security perspective, free messaging apps like Meta’s WhatsApp and Signal — whose co-founder was one of the creators of WhatsApp — are considered the best because end-to-end encryption is built in. That makes these apps highly preferable to SMS and MMS, two older methods of messaging that don’t offer end-to-end encryption, said Trevor Horwitz, founder of TrustNet, a cybersecurity and compliance services provider.

Even platforms considered the best for end-to-end encryption have downsides. Signal is a favorite among many privacy enthusiasts because its mission emphasizes not collecting or storing sensitive information. This can be especially compelling for people who are wary of WhatsApp’s parent Facebook and its privacy practices. The downside to Signal is it’s not as widely used as WhatsApp and if your contacts aren’t on it, you can’t communicate, said Roger Grimes, an analyst at KnowBe4, a security platform provider.

There are also paid messaging apps that are end-to-end encrypted, such as Threema. It’s privacy by design and no phone number or email address is required, but it costs a few dollars, and getting your friends and family to join when there are free options that are already popular might be a challenge.

Most people will use encryption “if it’s default and they don’t have the slightest inconvenience,” Grimes said.

RCS and iMessage

Many messaging platforms now use RCS, which stands for Rich Communication Services. It’s a successor to SMS and MMS that has enhanced features and also offers the ability for end-to-end encryption, though not by default on all devices. For example, RCS messages using Google Messages are automatically upgraded to end-to-end encryption, but Apple’s implementation of RCS on iPhones is not end-to-end encrypted, Horwitz said. 

For any Apple device user, the company’s proprietary iMessage app is end-to-end encrypted, but for users sending RCS messages through other text plans, such as a mobile carrier text option, end-to-end encryption isn’t offered. As Apple explains itself of sending messages through non-iMessage RCS options: “They’re not protected from a third-party reading them while they’re sent between devices.”

Additionally, not all devices are compatible with RCS and it’s not universally supported by carriers. Plus, there are compatibility issues between some iPhone and Android devices that are still being worked out, Horwitz said. 

Facebook Messenger gaps in encryption

It’s even more complicated because technology companies have multiple messaging products and not every application from a particular provider supports end-to-end encryption in the same way. For example, Facebook Messenger offers end-to-end encrypted messages, but not in all cases. According to Facebook, some products don’t currently support end-to-end encryption, such as community chats for Facebook groups, chats with businesses or accounts using business messaging tools, Marketplace chats and others. 

Consumers should try to dig deeper into the apps they are using to understand how end-to-end encryption works for a particular app, said Deirdre Connolly, cryptography standardization research engineer at SandboxAQ, an AI applications developer. This information is often available in the support or privacy section of a provider’s website. But even then, it can be hard to find and decipher. “You have to go into the fine print,” Connolly said.

Google vs. Apple

Google Messages is the default messaging app on many devices running the Android operating system and many people use it to communicate, but consumers need to understand that not all messages sent or received using the app are end-to-end encrypted. The app supports end-to-end encryption when messaging other users using Google Messages over RCS, according to the company. But messages aren’t end-to-end encrypted when communicating with an iPhone user, for example. Text messages appear dark blue in the RCS state and light blue in the SMS/MMS state. Users will also see a lock symbol when end-to-end encryption is active in a conversation. 

In Apple’s case, communications between two iMessage users are end-to-end encrypted, but iMessage is an Apple-specific platform. That means, at present, communications between iMessage users and Android device users aren’t end-to-end encrypted. A green message bubble instead of a blue one indicates the message was sent using MMS/SMS instead of iMessage.

In fact, a Department of Justice antitrust case against Apple harps on the failure to offer end-to-end encryption outside its iOS messaging app as a monopoly concern.

Protocols are being developed to allow end-to-end encryption between different communication platforms using RCS, but that’s still a work in progress. “Work with key industry stakeholders is progressing well and we look forward to updating the market in the coming months,” said a spokesperson for GSMA, an industry organization spearheading this effort. 

Phone settings and ongoing risk of hacks

One thing people should do is check the settings on their phones. Many consumers have older phones and those who don’t have auto updates enabled may miss critical security updates, which could include messaging apps that allow for end-for-end encryption, said Chris Henderson, senior director of threat operations at Huntress, a cybersecurity company. Also, with a new phone, settings on transferred apps might not migrate. If you have enabled end-to-end encryption for apps on your prior phone, it’s also a good idea to check that the settings are enabled on the new phone as well, Henderson said.

End-to-end encryption is not foolproof because hackers can intercept users’ communications in other ways, such as if the device itself is compromised, Horwitz said. For security purposes, it’s also important to keep your devices healthy by installing all software updates, avoiding sketchy downloads, and performing periodic reboots.

Even so, using end-to-end encryption is a good practice, when available. “Threat actors go where the masses go,” said Kory Daniels, global CISO for Trustwave, a cybersecurity and managed security services provider. “If the masses are still using unencrypted communication methods, [bad actors] will continue to exploit the opportunity until users begin to evolve their digital behaviors.”

Continue Reading

Technology

AWS’ custom chip strategy is showing results, and cutting into Nvidia’s AI dominance

Published

on

By

AWS' custom chip strategy is showing results, and cutting into Nvidia's AI dominance

AWS announces new CPU chip: Here's what to know

Amazon Web Services is set to announce an update to its Graviton4 chip that includes 600 gigabytes per second of network bandwidth, what the company calls the highest offering in the public cloud.

Ali Saidi, a distinguished engineer at AWS, likened the speed to a machine reading 100 music CDs a second.

Graviton4, a central processing unit, or CPU, is one of many chip products that come from Amazon’s Annapurna Labs in Austin, Texas. The chip is a win for the company’s custom strategy and putting it up against traditional semiconductor players like Intel and AMD.

But the real battle is with Nvidia in the artificial intelligence infrastructure space.

At AWS’s re:Invent 2024 conference last December, the company announced Project Rainier – an AI supercomputer built for startup Anthropic. AWS has put $8 billion into backing Anthropic.

AWS Senior Director for Customer and Project Engineering Gadi Hutt said Amazon is looking to reduce AI training costs and provide an alternative to Nvidia’s expensive graphics processing units, or GPUs.

Anthropic’s Claude Opus 4 AI model is trained on Trainium2 GPUs, according to AWS, and Project Rainier is powered by over half a million of the chips – an order that would have traditionally gone to Nvidia.

Read more CNBC tech news

Hutt said that while Nvidia’s Blackwell is a higher-performing chip than Trainium2, the AWS chip offers better cost performance.

“Trainium3 is coming up this year, and it’s doubling the performance of Trainium2, and it’s going to save energy by an additional 50%,” he said.

The demand for these chips is already outpacing supply, according to Rami Sinno, director of engineering at AWS’ Annapurna Labs.

“Our supply is very, very large, but every single service that we build has a customer attached to it,” he said.

With Graviton4’s upgrade on the horizon and Project Rainier’s Trainium chips, Amazon is demonstrating its broader ambition to control the entire AI infrastructure stack, from networking to training to inference.

And as more major AI models like Claude 4 prove they can train successfully on non-Nvidia hardware, the question isn’t whether AWS can compete with the chip giant — it’s how much market share it can take.

The release schedule for the Graviton4 update will be provided by the end of June, according to an AWS spokesperson.

Continue Reading

Technology

JPMorgan moves further into crypto with stablecoin-like token JPMD

Published

on

By

JPMorgan moves further into crypto with stablecoin-like token JPMD

Jamie Dimon, Chairman and CEO of JPMorgan Chase & Co., speaks to the Economic Club of New York in Manhattan, New York City, on April 23, 2024.

Mike Segar | Reuters

JPMorgan Chase is taking a step further into the cryptocurrency space with its own stablecoin-like token, called JPMD.

The U.S. banking giant told CNBC on Tuesday that it’s planning to launch a so-called deposit token on Coinbase’s public blockchain Base, which is built on top of the Ethereum network. Each deposit token is meant to serve as a digital representation of a commercial bank deposit.

JPMD will offer clients round-the-clock settlement as well as the ability to pay interest to holders. It is a so-called “permissioned token,” meaning it is only available to JPMorgan’s institutional clients — unlike many stablecoins, which are publicly available.

“We see institutions using JPMD for onchain digital asset settlement solutions as well as for making cross-border business-to-business transactions,” Naveen Mallela, global co-head of Kinexys, J.P. Morgan’s blockchain unit, told CNBC Tuesday.

“Given the fact that deposit tokens would eventually be interest bearing as well, this would provide better fungibility with existing deposit products that institutions currently use,” he added.

Deposit token vs. stablecoin

JPMorgan said the benefit of launching a deposit token over a stablecoin is that it gives institutional clients a way to move money around faster and easier while still having a close connection with traditional banking systems.

A stablecoin is a type of digital token that’s designed to be pegged 1:1 to the value of a fiat currency at all times. The most popular stablecoins are Tether’s USDT and Circle’s USDC. The entire stablecoin market is worth approximately $262 billion, according to data from CoinGecko.

In the U.S., stablecoins remain broadly unregulated — although this is likely to change soon. The Senate is set to vote Tuesday on the GENIUS Act, legislation that would introduce formal regulation for such tokens.

Elsewhere, the European Union regulates stablecoins under its Markets in Crypto-Assets Regulation, or MiCA, while the U.K. has also laid out plans to regulate the crypto industry. Britain’s Financial Conduct Authority is currently consulting on proposals to require stablecoin issuers to ensure their tokens maintain their value against a given asset.

Read more CNBC tech news

JPMorgan’s digital asset chief told CNBC that the bank chose Coinbase as its blockchain partner since the crypto exchange is already a long-standing client and a leader in the crypto space.

JPMD has had “preliminary interest from large institutional players who want more native onchain cash solutions from pre-eminent and reputed financial institutions,” Mallela added.

Speculation had been building around JPMorgan’s new crypto offering after a trademark application filed by the bank for “JPMD” was made public Monday.

The trademark outlined a broad range of crypto services under the JPMD name, including trading, exchange, transfer and payment services for digital assets.

Various crypto media outlets had speculated whether the bank was about to launch its own stablecoin. However, JPMorgan says that, while its token may share some similarities with a stablecoin, it’s ultimately a different kind of product.

Watch CNBC’s full interview with JPMorgan CEO Jamie Dimon

Continue Reading

Technology

Canva expands from design into analytics with acquisition of MagicBrief

Published

on

By

Canva expands from design into analytics with acquisition of MagicBrief

From left, Cliff Obrecht, Canva’s co-founder and chief operating officer, and George Howes, co-founder and CEO of MagicBrief, pose for a photo at the Cannes Lions festival in Cannes, France, in June 2025.

Canva

Canva has grown into a $32 billion startup through its popular design tools used for easily creating images, marketing material and presentations.

Now the company, with its 12th acquisition, is buying its way into the analytics market.

Canva said on Tuesday that it’s buying MagicBrief, whose technology is used for analyzing ad performance, for an undisclosed sum. With MagicBrief, companies can track spending and engagement on their ads and see what’s working well for competitors.

Around 240 million people use Canva’s products, which compete with offerings from Adobe’s Creative Cloud. The company has been deepening its capabilities in artificial intelligence, incorporating it into photo editing, coding and by incorporating chatbots.

“We feel like, especially with AI, we can really democratize marketing and allow marketers to do a lot more with less,” Cliff Obrecht, Canva’s co-founder and chief operating officer, said in an interview.

Canva, which ranked fifth on CNBC’s latest Disruptor 50 list, has raised over $560 million, and was valued most recently at $32 billion, though that’s a step down from its peak of $40 billion in 2021, when private markets were at their frothiest. Obrecht said the company has $1 billion in the bank.

Canva plans to incorporate MagicBrief into a broader product that it will announce later this year, Obrecht said. In October, Adobe announced the availability of a tool for creating ads with AI and then tracking performance.

Meanwhile, Alphabet, Amazon, Meta and Reddit are all pushing generative AI systems to boost the reach of online ads. Some marketers have used Meta’s offerings to tweak the visual appearance of their ads with hopes of gaining traction with certain audiences, CNBC reported in December.

Founded in 2022, MagicBrief has 14 employees and is based in Canva’s hometown of Sydney, Australia. In 2023, the company announced a $2 million funding round, with investments from Archangel and Blackbird, which was Canva’s first investor. The startup has tens of millions of dollars in annualized revenue, Obrecht said.

Canva, which started up in 2013, has 5,500 employees, with over $3 billion in annualized revenue. It’s one of the companies that venture capitalists are most excited about as an IPO candidate, but Obrecht said there won’t be an offering this year.

The focus, he said, is winning “over the next 10 years,” and not just hitting quarterly numbers.

“We feel that’s very short-sighted, and public markets do gravitate you more to quarter-on-quarter performance,” he said.

— CNBC’s Jonathan Vanian contributed to this report.

WATCH: The design space overall has a lot of room to run, says Bessemer Venture Partners’ Elliott Robinson

The design space overall has a lot of room to run, says Bessemer Venture Partners' Elliott Robinson

Continue Reading

Trending