Instagram appears to be stepping back from end-to-end encrypted messaging — a surprising move after years of Meta, its parent company, promoting strong encryption as the future of private communication.
A notice on Instagram’s help pages now says end-to-end encrypted messaging on Instagram will no longer be supported after May 8, 2026. The page instructs affected users to download any chat messages or shared media they want to keep before that date.
Instagram quietly drops end-to-end encrypted chats
https://proton.me/blog/instagram-end-to-end-encryption
36 Comments
BagOfHeavyStones@piefed.social · 220 pts · 156d
Of course. Can't train the LLM if they can't read them.
NatakuNox@lemmy.world · 25 pts · 156d
Now we can spy openly...
Blackmist@feddit.uk · 3 pts · 154d
Worse, advertiser's can't read them!
Wispy2891@lemmy.world · 2 pts · 156d
And then they will be able to finally replicate that black mirror episode where someone is paying a subscription to chat with a LLM trained on the chats of the deceased partner
frongt@lemmy.zip · 2 pts · 155d
https://mashable.com/article/meta-patent-ai-dead-bot-llm
Eggyhead@lemmy.world · 2 pts · 154d
Literally owning someone’s soul.
eager_eagle@lemmy.world · 117 pts · 156d
shocking
artyom@piefed.social · 65 pts · 156d
The shocking thing was that they implemented it in the first place.
Dojan@pawb.social · 59 pts · 156d
You cannot convince me that it was true end to end encryption. They had an eye in every chat.
eager_eagle@lemmy.world · 41 pts · 156d
well, they can have true E2EE and still be able to read or exfiltrate the messages, because they control both ends...
artyom@piefed.social · 11 pts · 156d
I wouldn't try to LOL
But there is valid reasoning for it. The metadata is equally as valuable as the actual content. That's why WhatsApp is so profitable. If more people are using it then it could be seen as worth the tradeoff.
warm@kbin.earth · 3 pts · 156d
I think Facebook's "end to end encryption" just means it was encrypted when it got their servers and then encrypted again when it got to the end user.
matlag@sh.itjust.works · 5 pts · 156d
That contradicts the very definition of end-to-end, but I would not even be surprised anymore if they spinned that as "fair marketing".
jaennaet@sopuli.xyz · 7 pts · 156d
Attacker94@lemmy.world · 105 pts · 156d
I always laugh when I hear about meta's end to end encryption because it isn't remotely true in the sense that people would care about from a privacy standpoint. I know it is the case for messenger, I have not confirmed for other meta services, but in messenger the messages are encrypted in the way you would expect with the one big caveat being that meta stores your private keys on their servers. Iiirc meta explained that it is still e2e because they don't unencrypt it which I find hilarious.
eager_eagle@lemmy.world · 57 pts · 156d
bro, I swear I won't read it bro, you can trust me bro - yo
criticon@lemmy.ca · 3 pts · 156d
My understanding is that Whatsapp is "real" e2e and it's based on signal protocol. That app is the main IM in many countries so they'll probably won't mess too much with it
I didn't really expect Instagram or messenger to be really encrypted
matlag@sh.itjust.works · 18 pts · 156d
You may want to revisit that
https://www.pcmag.com/news/lawsuit-alleges-that-whatsapp-has-no-end-to-end-encryption
snowykitty@piefed.blahaj.zone · 3 pts · 156d
"alleges"
jaennaet@sopuli.xyz · 60 pts · 156d
fogrye@lemmy.zip · 56 pts · 156d
Using any meta’s service is privacy nightmare.
ParlimentOfDoom@piefed.zip · 39 pts · 156d
How is it surprising that one of the companies that is pushing to force Internet ID laws through state legislatures is removing encryption from their chats?
SaharaMaleikuhm@feddit.org · 31 pts · 156d
WhatsApp is next. Run while you can.
Sturgist@lemmy.ca · 10 pts · 154d
I just always assumed that WhatsApp wasn't secure...
Even more so when they made it so your chats trained their AI, default opt in, and no global setting, has to be disabled per chat.
deegeese@sopuli.xyz · 31 pts · 156d
How could they target ads if they can’t read all your private chats?
matlag@sh.itjust.works · 9 pts · 156d
Metadata. They would still know where you were, for how long, who you talk to, when and from where. Then they combine these info. ex: you call your pop and mom, théir fridge broke down, and you start receiving ads for fridges. Was Meta listening?? No: pop and mom hinted the fridge was down (Google search or other), Meta has established your family links a long time ago, and you usually visit them after a longer than usual conversation (as they have an issue and yuu go help). Here: you fridge's ads.
U7826391786239@piefed.zip · 20 pts · 156d
sin_free_for_00_days@sopuli.xyz · 1 pts · 156d
Glad to read that it's not just me.
carotte@lemmy.blahaj.zone · 19 pts · 156d
im guessing messenger and potentially whatsapp are next
Lucidlethargy@sh.itjust.works · 11 pts · 156d
Nothing about this is surprising to those paying attention.
Hiro8811@lemmy.world · 8 pts · 156d
Not even WhatsApp has e2e anymore less alone that dumpster
forwhomthecattolls@sh.itjust.works · 3 pts · 156d
FOR REAL??
workgood@lemmy.dbzer0.com · 1 pts · 156d
Hiro8811@lemmy.world · 1 pts · 155d
From what I saw the employes can easily request to see messages, as for how it's done no idea, either client side after decrypting or server side.
LemmyBruceLeeMarvin@lemmy.ml · 7 pts · 156d
Gee why
crazyinferno@lemmy.world · 6 pts · 156d
Does anyone know if they're unencrypting chats that already happened? Like my chat history? If so that's fucked up
matlag@sh.itjust.works · 6 pts · 156d
They could always do that, and basically anything you can read on your phone, they can access if they need.
Encryption is a math thing: generate a pair of keys: one te encde, one to decode. I broadcast the one to encode ("public key"), and the whole world is tu use it to send me encrypted messages. I keep the decoding ("private key") only for myself.
In client to erver encryption, we exchange keys with the server through which go all the comms: it decodes my messages and re-encodes them for my contact.
In e2e, the key exchange is between contacts: the server does not have the private keys.
In Meta, the proprietary app can send your private key to the server and then they know what you wrote. You have no way to know it doesn't do so!
Opensource audited software is the only way to make sure.
ripcord@lemmy.world · 4 pts · 156d
If they can, then it was never e2e encrypted.
Strive7307@discuss.tchncs.de · 7 pts · 156d
Well e2e encryption is never private for the entity contrilling the endpoint. Instagram could push an update which decrypts and uploads your past chat history. Of course they’d only do it for your benefit so you don’t lose any data /s
Puddinghelmet@lemmy.world · 1 pts · 145d
Yeah cause of this trial thats been going on https://edition.cnn.com/2026/03/24/tech/meta-new-mexico-trial-jury-deliberation
And because of this trial, instagram will remove end-to-end encryption and add age-verification
-- https://edition.cnn.com/2026/03/24/tech/meta-new-mexico-trial-jury-deliberation
-- https://www.msn.com/en-us/crime/general/meta-ordered-to-pay-375-million-in-new-mexico-trial-over-child-exploitation-user-safety-claims/ar-AA1ZkHhq