Photo by Faan Wunsing on Unsplash
What Is “Going Dark”?
“Going dark” refers to the scenario where criminals, activists, and everyday users encrypt their communications and data so thoroughly that law enforcement agencies cannot access them, even with a warrant. It’s not a new concept, but it’s become increasingly central to debates about digital privacy, national security, and the limits of government power in the modern era.
The term gained prominence in the early 2010s when the FBI and other agencies began raising alarms about encrypted messaging apps like Signal and WhatsApp. From their perspective, the inability to intercept conversations meant they couldn’t monitor criminals, terrorists, or foreign threats. From the privacy advocate’s perspective, encryption is a fundamental right—a digital lock that protects ordinary people from surveillance.
The Core Problem: Encryption vs. Law Enforcement
The “going dark” problem sits at the intersection of two competing interests. On one side, law enforcement argues that unbreakable encryption hinders their ability to investigate serious crimes—human trafficking, drug smuggling, terrorism, and child exploitation. On the other side, security experts and privacy advocates contend that weakening encryption for law enforcement would create vulnerabilities that criminals, hackers, and hostile nations could exploit.
This isn’t theoretical. Strong encryption protects bank accounts, medical records, and business secrets. If you weaken it for “good guys,” you weaken it for everyone.
How Law Enforcement is Responding
Rather than wait for legislative solutions (which have proven elusive), law enforcement agencies have begun developing and deploying their own hacking tools. This represents a significant shift in how governments approach digital investigations.
Direct Device Hacking
Police and federal agencies now use specialized software to breach encrypted phones and computers directly. Tools like GrayKey and similar proprietary systems can bypass lock screens and access data without the owner’s cooperation. These tools are particularly effective on older devices and those running outdated software, but newer versions continue to improve.
Third-Party Access
Another approach involves hacking into the servers, cloud backups, or peripheral systems where encrypted data might be accessible. Instead of breaking the encryption itself, investigators hack the devices or networks where unencrypted versions of the data exist. A WhatsApp message might be encrypted in transit, but if a suspect’s phone is backed up to the cloud, law enforcement might access that backup instead.
Exploit Markets
Intelligence agencies and police forces have quietly joined the market for zero-day exploits—previously unknown security vulnerabilities that hackers and security researchers discover. Governments purchase these exploits from private vendors and brokers, then use them to infiltrate devices and networks. This creates a shadowy economy where governments compete with criminals for access tools.
The Broader Implications
Law enforcement hacking raises profound questions about power, oversight, and unintended consequences. When police hack into a device, they’re using the same techniques that criminals and foreign adversaries use. The tools don’t discriminate—they work on suspects and innocent bystanders alike.
Scope Creep
What begins as a tool for investigating terrorism or major crimes often expands. Once infrastructure and expertise exist, they’re repurposed for lesser offenses, immigration enforcement, or political monitoring. History shows this pattern repeatedly with surveillance technologies.
Accountability Gaps
Unlike traditional wiretapping, which requires warrants and leaves a paper trail, hacking can happen with minimal oversight. Departments might argue they don’t need warrants because they’re not intercepting communications—they’re just accessing data that already exists. These legal gray areas create space for abuse.
National Security Risks
When governments buy zero-day exploits or develop hacking tools, they’re creating weapons. Those tools can be stolen, misused, or sold to other countries. A backdoor developed by the NSA might eventually be discovered and exploited by China or Russia. The same techniques law enforcement uses against criminals can be turned against political opponents, journalists, or activists in regimes that lack democratic safeguards.
Where This Stands Today
The “going dark” debate remains unresolved. Congress hasn’t passed legislation requiring tech companies to weaken encryption, partly because security experts consistently warn against it, and partly because there’s no consensus on what “reasonable” access would even look like in practice.
Instead, we’re in a kind of shadow arms race. Tech companies improve encryption; law enforcement develops hacking capabilities; tech companies patch vulnerabilities; the cycle continues. Meanwhile, ordinary users are caught in the middle, uncertain whether their devices are truly secure.
The Takeaway
Going dark isn’t really about encryption disappearing—it’s about the increasing divergence between what law enforcement wants and what technology makes possible. Rather than accept that some communications will remain private, agencies are choosing to hack their way to the truth. This pragmatic response solves immediate investigative problems but creates new risks for everyone using connected devices. The question isn’t whether law enforcement will continue hacking—they will. The question is what oversight, rules, and safeguards should govern when and how they do it.
Leave a Reply