Gaffer: Large-scale graph database by GCHQ
github.com
github.com
As for my future software needs, I expect the code to be written at MI-6 and delivered just-in-time by James Bond.
We're being trolled.
Edit: Looking for forward to the release of RingTone, a system for processing very high volumes of call detail records in real time.
I think it's more likely that it will help with recruitment, pull requests of high-quality might provide a potential interview or job offer.
No 'if', 'ands', or 'buts'. If it's paid for by the people it's the property of the people.
Anyway...
In the US the policy is:
A United States government work is prepared by an officer or employee of the United States government as part of that person's official duties.
It is not subject to copyright in the United States and there are no copyright restrictions on reproduction, derivative works, distribution, performance, or display of the work. Anyone may, without restriction under U.S. copyright laws:
- reproduce the work in print or digital form
- create derivative works
- perform the work publicly
- display the work
- distribute copies or digitally transfer the work to the public by sale or other transfer of ownership, or by rental, lease, or lending.
Source: https://www.usa.gov/government-works
US government based software developer agencies like 18f and USDS (United States Digital Service) license all of their code to the public domain.
The UK is slightly different: https://github.com/GovernmentCommunicationsHeadquarters/Gaff...
But there is the OGL (Open Government License): http://www.nationalarchives.gov.uk/information-management/re...
I just looked at the code: Java code that sits on top of the Hadoop file system. Supports date-binned data storage so it looks applicable to systems where you want to toss out old data occasionally.
Great to see spy agencies cooperating in open source :P
If you want a security expert's opinion, read Bruce Schneier's blog, and if you are inclined to learn more about the ethics, this page is great: http://cs.stanford.edu/people/eroberts/cs201/projects/ethics...
We can be as negative as we wish towards these agencies, but rejecting any and all attempts at communicating with the open source community is a strong way to reinforce their already insular culture. Embracing these projects in some way or another can possibly work as positive feedback toward greater organizational transparency, if not by the brass, than by the developers and engineers that work in these organizations.
"But software which OpenBSD uses and redistributes must be free
to all (be they people or companies), for any purpose they wish
to use it, including modification, use, peeing on, or even
integration into baby mulching machines or atomic bombs to be
dropped on Australia."
-- Theo de RaadtThus, I applaud the helpful and constructive act of releasing this product as open source, and will certainly consider it if I ever need a graph database. This does not, of course, constitute approval of every GCHQ policy.
On reflection, the analogy bites a little closer than I might like to admit. They are stalkers, to each and every one of us. What they do is literally an attack on the entire internet (- IAB).
Please bear in mind that GCHQ are actually worse than the NSA in every way. They have essentially no "equities issue" to speak of; they operate both internationally and domestically; they have repeatedly ignored the law with essentially zero oversight, consequences or meaningful reproach; they have spied, and continue to spy, even on UK Government departments and MPs; and they are very probably about to get official powers to do mass hacking, which in typical form, they've already been doing for years anyway.
Bear in mind also that this is software that they use for analysis of data collected by spying on all of us; graph analysis software that is literally being used right now to select who to murder.
Forgive me if, therefore, I might hesitate to run any of the code of an organisation with a long history of deploying malware against innocent people.
Who are "these people"?
In what way are GCHQs coders and techies "evil"? Is it just because they have so widespread snooping powers? Is that still a problem if they have used those powers to prevent harm and injury from events that you won't have heard of? At what point does the latter outweigh the former?
I also suspect that if we follow the "GCHQ==Evil" logic, we would pretty quickly find that every coder working for a big enterprise is also "evil", and probably quite a few working for smaller ones too.
Given that it's OSS, it's not as if you're funding their vile actions by using it either.
Oh well.
And secondly, I'm sorry but i don't buy the slippery slope argument. As intelligent people we have clear boundaries about what is acceptable as the mandate of an organization and what isn't. If we took your approach to social issues we would never protest illegal wars because everyone else is involved in them or protest BP for polluting the Gulf because everyone drives cars. Its a ridiculous argument m
Still, tax payers money is used to write this stuff, good on them for open sourcing it.
The hypocrisy is staggering.
Seems like a very useful tool, especially if you already have accumulo infrastructure running. Docs need a bit more work I feel, but it's not terrible for a single page.
[1]: https://github.com/GovernmentCommunicationsHeadquarters/Gaff...
https://www.gchq-careers.co.uk/about-gchq.html
https://www.gchq-careers.co.uk/departments/technology-and-en...
The "applied research" is interesting: https://www.gchq-careers.co.uk/departments/applied-research....
I think the internet archive has some older pages with relevant information.
If this is GCHQ it's gently worrying - a github profile is pretty low on my list of what I want in the way of transparency and accountability.
Cybersquatters...
It took about two-hours from clicking the contact a human button to them releasing the name, they simply release it back and ask you to register quickly before someone else gets there first.
> Account names may not be inactively held for future use. GitHub account name squatting is prohibited. Inactive accounts may be renamed or removed by GitHub staff at their discretion.
I have been able to acquire a couple of GitHub names that have been inactive for several years by contacting GitHub support, and they usually reply within a day or so.
I'd say they definitely have the skills to acquire it, if QUANTUM {INSERT|DNS}[1] are still operational. As you said, it's probably not worth it.
1. http://blog.fox-it.com/2015/04/20/deep-dive-into-quantum-ins...
oracle was founded to serve the CIA for fucks sake.
Given that, it's not surprising they'd be involved in funding and doing R&D on database systems.
https://en.wikipedia.org/wiki/Gaffer_%28filmmaking%29
Hence "Gaffer tape" which is black, rather than duct tape, which is the same construction but grey.
Its my favorite tape for general use.
I currently use this one on my glass desk: http://www.amazon.com/Logitech-Wireless-Anywhere-Mouse-Mac/d...
>Haha yeah I have at least ten of those... They do not work on certain glass surfaces, namely any shiny black granite desk.
That's specifically why I bought this one and it works flawlessly on every glass surface I've tried.
It's a bit harder to get this style, because when people say "gaffer tape" they normally mean "duck tape, or duct tape, or anything like that".
This guy is then killed and a press release put out about "Al-Quaeda #2 killed". http://www.longwarjournal.org/pakistan-strikes-hvts