Researchers find flaws, likely backdoors, in encryption algorithms from the TETRA standard used in radios commonly deployed by police and military orgs globally
5 New Vulnerabilities Exposed in Widely Used Radio Communication System Thomas Claburn / The Register : TETRA radio comms used by emergency heroes easily cracked, say experts Waqas / HackRead : From Power Grids to Airports: TETRA Radio Hacking Risks Global Infrastructure LinkedIn: Denis Mandich : A spectacular example of “harvest now, decrypt later” without quantum computers and the depth of penetration into global critical infrastructure - first responders, police, military, etc. … Mastodon: Lily Hay Newman / @lhn@mastodon.online : For years, countries around the world have used the TETRA radio standard to secure comms for emergency response, law enforcement, intelligence and critical infrastructure. But new analysis of its black box algorithms reveals not just vulnerabilities, but an intentional backdoor. … Angus McIntyre / @angusm@mastodon.social : In a development anticipated by absolutely everyone, an encryption system based on a secret algorithm turns out to be insecure five different ways, including a backdoor. — Oh, and it can possibly be used for SCADA injection attacks on critical infrastructure or spying on (or even faking) police and emergency response communications. … Kim Zetter / @kimzetter@infosec.exchange : For 25+ yrs police, military, intel agencies and critical infrastructure around the world have relied on the TETRA radio standard to secure their critical communications. But now Dutch researchers have examined secret algorithms used in TETRA and found something startling — an intentional backdoor. … Twitter: David Meyer / @superglaze : “The standard was designed for export controls which determine the strength of encryption.” You listening, UK? Matt Linton / @0xmatt : Hello, #OnlineSafetyBill ? Yeah, it's me, your cousin Marvin. MARVIN. You know that new sound you've been looking for? Well listen to this! [image] Joseph Cox / @josephfcox : New: encryption used in police and military radios around the world has been scrutinized by outside researchers for the first time. The researchers found what they believe is an intentional backdoor, allowing those in the know to decrypt traffic https://www.vice.com/... Joseph Cox / @josephfcox : One major concern of course is who else may have found what the researchers believe is a backdoor. If a party puts one backdoor into comms, that does not mean it will remain secret to other attackers https://www.vice.com/... [image] Session / @session_app : military grade encryption not that great as it turns out Forums: r/technology : Researchers find deliberate backdoor in police radio encryption algorithm | Vendors knew all about it, but most customers were clueless. r/technews : Researchers Find ‘Backdoor’ in Encrypted Police and Military Radios r/TrueAnon : Devastating, intentional encryption “backdoor” found in European police/military radio standard Ars OpenForum : Researchers find deliberate backdoor in police radio encryption algorithm
Context & Ripple Effects
This report puts a concrete critical-communications example behind the long-running dispute over whether deliberately weakened encryption can remain controlled. Earlier coverage documented renewed government calls for encryption backdoors, while later reporting on risks in wiretap systems reinforced the same security trade-off.
The significance is the deployment context: TETRA is associated here with police, military, first responders, and critical infrastructure, making cryptographic design flaws an operational-security issue rather than solely a consumer-privacy debate.
First-order effects
- Organizations relying on TETRA radios must treat communications as potentially readable or alterable by capable attackers and reassess which operations can safely use the system.
- The TETRA ecosystem faces urgent scrutiny of the reported intentional backdoor and other vulnerabilities, including the feasibility of patches, configuration changes, or compensating controls.
Second-order effects
- Police, military, emergency-service, and infrastructure operators may shift sensitive traffic to separately protected channels while vendors and procurement teams face pressure to document cryptographic assurances.
- The findings strengthen the case against mandated access mechanisms: the Five Eyes call for product backdoors illustrates how policy demands for exceptional access can collide with the security requirements of high-value users.
Third-order effects
- If widely deployed communications standards cannot provide independently verifiable cryptographic security, critical-infrastructure buyers may place more weight on public review, upgradeability, and the ability to replace embedded security components.
- The episode adds evidence to the broader principle that a backdoor intended for one party can expand the attack surface for others—a risk later reflected in reported compromises of US telecom wiretap systems.
The trend: Critical-communications security is moving toward greater skepticism of opaque, centrally privileged encryption designs as operators weigh lawful-access demands against system-wide compromise risk.