Hacker group Cult of the Dead Cow plans to detail P2P protocol Veilid, to encrypt social media and apps, at Def Con next week, its biggest release in 10 years
Cult of the Dead Cow is a hacker collective whose members at one time included Texas politician Beto O'Rourke Mastodon: @neurovagrant@masto.deoan.org . Twitter: @retweetablen14 and @veilidnetwork . Forums: Slashdot Mastodon: Ian Campbell / @neurovagrant@masto.deoan.org : Okay waking up to see Veilid in the Washington Post was pretty fucking cool. Twitter: @retweetablen14 : A fantastic article about @VeilidNetwork by @josephmenn Hacking group plans system to encrypt social media and other apps https://www.washingtonpost.com/ ... @veilidnetwork : Good write up on us, thank you @josephmenn! https://www.washingtonpost.com/ ... Forums: Msmash / Slashdot : Cult of Dead Cow Hacktivists Design Encryption System for Mobile Apps
Context & Ripple Effects
Ahead of its first major release in a decade, Cult of the Dead Cow is positioning Veilid as an open-source, peer-to-peer framework that lets social media and messaging apps encrypt traffic without central servers. Days later at Def Con the group made good on the plan, detailing the framework and debuting VeilidChat, a Signal-like proof-of-concept app.
The pitch lands against a backdrop the corpus makes explicit: state-aligned spies have spent years tracking dissidents through compromised communications, as the long-running OceanLotus campaign against Vietnamese opposition members showed, and even government-grade messaging stacks leak, as the later TeleMessage hack of 60+ US government users demonstrated.
First-order effects
- App developers gain a free, open-source P2P framework they can build on without operating their own server infrastructure, with VeilidChat serving as working reference code.
- Cult of the Dead Cow converts a decade of relative quiet into renewed relevance, returning to Def Con as a shaper of privacy tooling rather than a legacy name.
Second-order effects
- Centralized messaging vendors face a sharper comparison point every time a breach like TeleMessage exposes stored messages on servers that P2P designs would not hold.
- Surveillance operations that rely on intercepting traffic at provider endpoints — the pattern OceanLotus exploited against dissidents — lose a single chokepoint when apps move to peer-to-peer routing.
Third-order effects
- If Veilid-style frameworks see adoption, secure messaging shifts from company-run server farms toward user-distributed networks, weakening both subpoena-based data access and endpoint-interception tradecraft.
- Hacker collectives re-emerge as infrastructure suppliers rather than purely adversarial actors, blurring the line between the infosec scene and the product ecosystem it critiques.
The trend: Secure communication is migrating from centrally hosted, breach-prone platforms toward open-source peer-to-peer frameworks championed by the hacker community itself.