> ## Content Index
> Fetch the complete content index at: https://techlore.tech/llms.txt
> Use this file to discover other available public pages before exploring further.

# How the FBI Read Signal Messages Without Breaking Signal | April 14, 2026
- URL: https://techlore.tech/how-the-fbi-read-signal-messages-without-breaking-signal-april-14-2026/
- Published: 2026-04-14T00:58:54.000Z
- Updated: 2026-04-28T04:39:43.000Z
- Description: A court case revealed that deleted Signal messages can survive somewhere Signal has no control over: your phone's notification database.
- Author: Henry Fisher
- Tags: Surveillance Report

# On Our Radar 🎯

[**The FBI Found a Suspect's Signal Messages in a Place Signal Can't Touch**](https://www.404media.co/fbi-extracts-suspects-deleted-signal-messages-saved-in-iphone-notification-database-2/)

**Update: Apple has** [**fixed this issue**](https://techlore.tech/your-deleted-signal-messages-were-never-really-gone-but-apples-latest-update-fixed-that-april-27/) **in the latest version of iOS.**

The FBI successfully extracted deleted Signal messages from a suspect's iPhone. The good news is that Signal wasn't compromised. In fact, there was no attack against Signal itself. What the FBI accessed was something almost no one thinks about: *The iOS notification database.*

**Here's how it works:** When Signal sends you a message, iOS processes a notification. If previews are enabled, that content gets stored in a local notification database. So when investigators had physical access to the device, they were able to access previous incoming messages that appeared through Signal notifications—no need to break encryption. In fact, Signal had already been removed from the device completely!

Fortunately, the fix here is straightforward, and it's something we've recommended before: disable message content in notification previews. On iOS, go to *Settings → Notifications → Show Previews → Never.* This prevents the notification database from storing actual message content. Similarly, Signal[ has notification preview settings](https://support.signal.org/hc/en-us/articles/360043273491-In-App-Notification-Options) if you want to handle it within the Signal ecosystem.

It's also important to acknowledge these concerns expand beyond Signal on iOS:

- Any application with message previews are victim to this same attack on iOS.
- Android's notification system also stores message content in local databases. While it hasn't been demonstrated yet in course cases, the underlying architecture is similar enough that it's safe to assume the attack can be replicated on Android.
- Finally, both mobile operating systems process notification content through Apple & Google servers, which can be [handed over](https://www.404media.co/apple-gave-governments-data-on-thousands-of-push-notifications/) to governments.

**What you can do:** My takeaway isn't that Signal failed. It's that good tools require good habits around them. Even in light of this story, I'll still be using Signal with notifications and previews **completely enabled**, as these are very high threat model concerns. But if you feel this attack could jeopardize your safety, some more options to explore:

- Disable notification previews for your messaging app(s).
- Apple's [Lockdown Mode](https://www.youtube.com/watch?v=ENuGWhz10UY) & Google's Advanced Protection Program are powerful tools to consider for endpoint security.
- Finally, visit our Signal hardening guide which covers maximum privacy and security configurations for Signal:

---

# Bits & Bytes 🤖

[**\~ France Is Ditching Windows for Linux**](https://techcrunch.com/2026/04/10/france-to-ditch-windows-for-linux-to-reduce-reliance-on-us-tech/)**!**

France announced plans to migrate government systems away from Windows toward Linux, explicitly citing a desire to reduce reliance on US tech infrastructure.

**Our take:** I think it's wonderful to see more people around the world reclaim their digital freedom and escape the gatekeepers controlling the digital landscape. If you've been with us a while, this is the kind of win we love because it doesn't make mainstream news the way it should.

[**\~ WireGuard's Developer Can't Ship Updates...Because of Microsoft**](https://techcrunch.com/2026/04/08/wireguard-vpn-developer-cant-ship-software-updates-after-microsoft-locks-account/)

Speaking of gatekeepers...the developer behind WireGuard, the open-source VPN protocol, found themselves unable to push software updates because Microsoft locked their account. No breach, no policy violation explained, just a locked account creating a hard stop on critical infrastructure updates. The worst part is this also impacted [Veracrypt](https://techcrunch.com/2026/04/08/veracrypt-encryption-software-windows-microsoft-lock-boot-issues/) and Windscribe VPN. 

**Our take:** It's an argument for decentralized distribution that writes itself. We did [far more coverage for this in dedicated content](https://techlore.tech/microsofts-silent-lockout-why-wireguard-veracrypt-windscribe-can-no-longer-update-windows-users/) with full takes 😄

[**\~ Wisconsin Rejects Age Verification Bill**](https://gizmodo.com/wisconsin-remains-a-gooning-sanctuary-state-after-governor-rejects-age-verification-bill-2000742910)**!**

Wisconsin's governor rejected a bill that would have required age verification! Age verification mandates sound protective on the surface, but the implementations consistently require collecting sensitive identity data from every user, including adults, with significant privacy and democratic implications.

**Our take:** A huge win! Not every state is moving in the same direction, and the pushback matters. We will continue tracking these updates as they come, and we even covered this story when it broke:

---

# This Week on Techlore 📺

Big week with lots of new faces, so I want to welcome anybody who recently joined our fight 🙏 I did some reactions to a commentary piece involving Meta's AI glasses and the creepy implications in public spaces:

[Why Meta’s Smart Glasses Are Called “Pervert Glasses” And Why That Should Scare YouI came across a solid piece by a journalist, not a privacy advocate, not a tech skeptic, just a regular person who decided to spend a day wearing Meta’s Ray-Ban smart glasses. After using them, she reported back that these glasses didn’t just make her feel like a creep, they![](https://static.ghost.org/v5.0.0/images/link-icon.svg)TechloreHenry Fisher![](https://storage.ghost.io/c/a2/66/a26623cd-de8a-40f5-bb97-cc1265613cf7/content/images/thumbnail/v4.png)](https://techlore.tech/why-metas-smart-glasses-are-called-pervert-glasses-and-why-that-should-scare-you/)

I did deeper coverage on Microsoft's ban of privacy-first developers and what prompted these problems, as well as the lack of response from Microsoft: 

[Microsoft’s Silent Lockout: Why WireGuard, VeraCrypt & Windscribe Can No Longer Update Windows UsersIn more news not on my 2026 bingo card...Microsoft silently suspended the developer accounts for WireGuard, VeraCrypt, and Windscribe—three of the most important open source security tools that are consistently recommended to our audience. and none of these developers were notified. Not an email, not a warning, nothing.![](https://static.ghost.org/v5.0.0/images/link-icon.svg)TechloreHenry Fisher![](https://storage.ghost.io/c/a2/66/a26623cd-de8a-40f5-bb97-cc1265613cf7/content/images/thumbnail/thumbnailmicrosoftv2.png)](https://techlore.tech/microsofts-silent-lockout-why-wireguard-veracrypt-windscribe-can-no-longer-update-windows-users/)

Last week's Surveillance Report featured VPNs exposing you to more spying, North Korea's open source hijack, Android malware hitting 2.3 million device via Google Play, and many other critical stories:

[VPNs Could Expose You to NSA Spying, North Korea’s Open-Source Hijack, Android Malware Hits 2.3 Million Devices via Google Play, and the EU Ending Chat ControlTechlore Surveillance Report: Weekly News for Your Digital Freedom![](https://static.ghost.org/v5.0.0/images/link-icon.svg)TechloreHenry Fisher![](https://storage.ghost.io/c/a2/66/a26623cd-de8a-40f5-bb97-cc1265613cf7/content/images/thumbnail/v3.png)](https://techlore.tech/vpns-could-expose-you-to-nsa-spying-north-koreas-open-source-hijack-android-malware-hits-2-3-million-devices-via-google-play-and-the-eu-ending-chat-control/)

We invited Organic Maps on to Techlore Talks to discuss the privacy considerations of Apple & Google maps and what a true alternative can look like:

[How Organic Maps Built an Open Source, Offline-First Maps App That Doesn’t Track YouTechlore Talks brings you in-depth conversations with the experts at the forefront of digital rights, privacy and security.![](https://static.ghost.org/v5.0.0/images/link-icon.svg)TechloreTori![](https://storage.ghost.io/c/a2/66/a26623cd-de8a-40f5-bb97-cc1265613cf7/content/images/thumbnail/20260411-ORGANIC-MAPS-INTERVIEW-thumbnail-v1.jpg)](https://techlore.tech/how-organic-maps-built-an-open-source-offline-first-maps-app-that-doesnt-track-you/)

And finally, I shared my first reactions to Firefox's new, 50GB free VPN, now live in the Firefox browser:

[Firefox’s Free Built-In VPN: First Impressions, Live Tests, and What You’re Actually GettingThis one I didn’t see coming...Mozilla just shipped a free VPN built directly into Firefox. No app, no subscription, just 50 gigabytes a month of IP protection baked into the browser right out of the box. The setup is straightforward. It requires a Mozilla account, which I assume is![](https://static.ghost.org/v5.0.0/images/link-icon.svg)TechloreHenry Fisher![](https://storage.ghost.io/c/a2/66/a26623cd-de8a-40f5-bb97-cc1265613cf7/content/images/size/w1200/2026/04/v6.png)](https://techlore.tech/firefox-free-built-in-vpn-first-impressions-live-tests-and-what-youre-actually-getting/)

---

# Action Item ✅ 

Audit your endpoint security this week. Open your messaging apps one by one...Signal, WhatsApp, iMessage, whatever you use...and **check your privacy & security settings.** A quick five-minute audit goes further than most people expect. I'll see you all in the next Digital Rights Digest 🫡