Skip to content

Secure IT

Stay Secure. Stay Informed.

Primary Menu
  • Home
  • Sources
    • Krebs On Security
    • Security Week
    • The Hacker News
    • Schneier On Security
  • Home
  • The Hacker News
  • GSMA Confirms End-to-End Encryption for RCS, Enabling Secure Cross-Platform Messaging
  • The Hacker News

GSMA Confirms End-to-End Encryption for RCS, Enabling Secure Cross-Platform Messaging

[email protected] The Hacker News Published: March 14, 2025 | Updated: March 14, 2025 2 min read
1 views

Mar 14, 2025Ravie LakshmananMobile Security / Encryption

End-to-End Encryption for RCS

The GSM Association (GSMA) has formally announced support for end-to-end encryption (E2EE) for securing messages sent via the Rich Communications Services (RCS) protocol, bringing much-needed security protections to cross-platform messages shared between Android and iOS platforms.

To that end, the new GSMA specifications for RCS include E2EE based on the Messaging Layer Security (MLS) protocol via what’s called the RCS Universal Profile 3.0.

Cybersecurity

“The new specifications define how to apply MLS within the context of RCS,” Tom Van Pelt, technical director of GSMA, said. “These procedures ensure that messages and other content such as files remain confidential and secure as they travel between clients.”

This also means that RCS will be the first “large-scale messaging service” to have support for interoperable E2EE between different client implementations from different providers in the near future.

It’s worth noting that Google’s own implementation of RCS, used in the Messages app for Android, secures conversations using the Signal protocol to address the lack of built-in E2EE protections. That said, the encryption safeguards are currently limited to messages exchanged via the app, and not those exchanged with the iOS Messages users or users of other RCS clients on Android.

The development comes nearly six months after the GSMA said it was working towards implementing end-to-end encryption (E2EE) to secure messages sent between the Android and iOS ecosystems. The move followed Apple’s decision to roll out support for RCS in its own Messages app with iOS 18.

In July 2023, Google revealed that it intends to add support for MLS to its Messages service and open-source implementation of the specification.

Cybersecurity

“RCS continues to support a range of interoperable messaging functions between iOS and Android users, such as group messaging, the ability to share high-resolution media, and see read receipts and typing indicators,” Van Pelt said.

When reached for comment, Google said, “We’ve always been committed to providing a secure messaging experience, and Google Messages users have had end-to-end encrypted (E2EE) RCS messaging for years. We’re excited to have this updated specification from GSMA and work as quickly as possible with the mobile ecosystem to implement and extend this important user protection to cross-platform RCS messaging.”

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.

About The Author

[email protected] The Hacker News

See author's posts

Original post here

What do you feel about this?

  • The Hacker News

Post navigation

Previous: In Other News: Swiss Breach Disclosure Rules, ESP32 Chip Backdoor Disputed, MassJacker
Next: Alleged Israeli LockBit Developer Rostislav Panev Extradited to U.S. for Cybercrime Charges

Author's Other Posts

Your Cloud Security Checklist Doesn’t Work the Way You Think It Does intruder.jpg

Your Cloud Security Checklist Doesn’t Work the Way You Think It Does

September 7, 2026 0 0
Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts screen.jpg

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

September 7, 2026 0 0
Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released tel.jpg

Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released

September 7, 2026 0 0
N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw nable.jpg

N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw

September 7, 2026 0 0

Related Stories

intruder.jpg
  • The Hacker News

Your Cloud Security Checklist Doesn’t Work the Way You Think It Does

[email protected] The Hacker News September 7, 2026 0 0
screen.jpg
  • The Hacker News

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

[email protected] The Hacker News September 7, 2026 0 0
tel.jpg
  • The Hacker News

Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released

[email protected] The Hacker News September 7, 2026 0 0
nable.jpg
  • The Hacker News

N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw

[email protected] The Hacker News September 7, 2026 0 0
chrome-cookies.jpg
  • The Hacker News

JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies

[email protected] The Hacker News September 7, 2026 0 0
micro.jpg
  • The Hacker News

Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication

[email protected] The Hacker News September 6, 2026 0 0

Trending Now

Your Cloud Security Checklist Doesn’t Work the Way You Think It Does intruder.jpg 1

Your Cloud Security Checklist Doesn’t Work the Way You Think It Does

September 7, 2026 0 0
Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts screen.jpg 2

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

September 7, 2026 0 0
Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released tel.jpg 3

Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released

September 7, 2026 0 0
N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw nable.jpg 4

N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw

September 7, 2026 0 0

Connect with Us

Social menu is not set. You need to create menu and assign it to Social Menu on Menu Settings.

Trending News

Your Cloud Security Checklist Doesn’t Work the Way You Think It Does intruder.jpg 1
  • The Hacker News

Your Cloud Security Checklist Doesn’t Work the Way You Think It Does

September 7, 2026 0 0
Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts screen.jpg 2
  • The Hacker News

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

September 7, 2026 0 0
Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released tel.jpg 3
  • The Hacker News

Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released

September 7, 2026 0 0
N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw nable.jpg 4
  • The Hacker News

N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw

September 7, 2026 0 0
JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies chrome-cookies.jpg 5
  • The Hacker News

JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies

September 7, 2026 0 0
Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication micro.jpg 6
  • The Hacker News

Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication

September 6, 2026 0 0
Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner rev.jpg 7
  • The Hacker News

Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner

September 6, 2026 0 0

You may have missed

intruder.jpg
  • The Hacker News

Your Cloud Security Checklist Doesn’t Work the Way You Think It Does

[email protected] The Hacker News September 7, 2026 0 0
screen.jpg
  • The Hacker News

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

[email protected] The Hacker News September 7, 2026 0 0
tel.jpg
  • The Hacker News

Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released

[email protected] The Hacker News September 7, 2026 0 0
nable.jpg
  • The Hacker News

N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw

[email protected] The Hacker News September 7, 2026 0 0
Copyright © 2026 All rights reserved. | MoreNews by AF themes.