AT&T has a fiberoptic splitter copying our data to NSA
eff.org
eff.org
Can someone show/tell me what I, an average person, can do? It feels a bit overwhelming and things like this point out how powerless we really are. I hope I'm wrong and there are things we can do...I just don't know what they are.
EDIT -
Asking two more specific questions:
1. What can we do technically to be safe?
2. What can we do to fight this? Petition Government? Support EFF? Other? Very much at a loss on #2
In a similar vein, I've deleted all the trusted root CA certs from my computer, and am now marking individual certs trusted as I hit them. Not fail-safe, but safer, I think.
If you use CA certs to trust site certs, the site certs can change on the fly (i.e. be replaced with an NSA interloper) without you knowing.
If you kill your CA certs, and mark individual sites trusted, than at least your browser will notify you if the site's cert has changed since you lasted trusted it. Theoretically. I haven't actually tested this yet. :(
Excuse my ignorance, could you tell why it's useful to remove the certs from a PC. I've heard about root certs a couple of times already but don't understand what they really are.
"This particular website is X". And it can back this up with all sorts of fancy math.
The problem then, is how do you know that the particular certificate is correct? I can go through and make a certificate saying that i'm santa clause. How you get around that is by using another certificate that you already have, and using that to certify the websites certificate. Ie. if you trust godaddy (or the hong kong post office), and I have a certificate saying that i'm me, signed by godaddy, then you can trust that i'm me.
The collection of certificates that you trust are then called the "root ca", and having random certificates there is a problem because if one of them was to produce a forged certificate, you'd never know about it. ie. by adding in untrusted certificates to your root ca, you lose trust in the whole certificate chain of trust process.
I was on T-Mobile for years (out of ATT spite) until Verizon got the iPhone and I jumped within the week. I also spent a lot more money on internet using alternatives to ATT DSL (although I doubt my information was more secure from that choice).
http://en.wikipedia.org/wiki/Qwest#Refusal_for_NSA_spying
A lot of time has passed, and they have a new CEO. I wonder if they have continued to hold out, or have quietly installed the black-room...
EDIT: I see they were just acquired last year by CenturyLink. I have to doubt that they have now not rolled over (call me a pessimist).
Very sad that corporations are so willing to forsake the privacy of the entire country's citizens (on the level of a constitutional breach) in order to make a dime or curry favor. Beyond sad, it is terrifying that the government then used warrantless wiretapping to specifically target our journalists:
http://www.theregister.co.uk/2009/01/25/tice_nsa_revelations...
...at least according to the same source that was responsible for leaking the existence of the black-rooms in the first place.
Sigh. Maybe I'll pick up my old copy of 1984. It's getting ironic now.
So it is not clear whether this applies to all traffic through AT&T routers, or only traffic to and from AT&T customers.
Since this article was published it's likely that other providers were pushed into doing the same thing. If I'm not mistaken, there was even an exec. shake-up at Verizon as a result of them not wanting to concede to the NSA's demands.
http://arstechnica.com/tech-policy/news/2007/05/verizon-says...
http://www.democraticunderground.com/discuss/duboard.php?az=...
The problem with making yourself 'technically safe' is that it realistically leaves most non-technical people exposed.
The only way to 'protect' everybody is to cure the cancer, not just your symptoms.
then lets make everybody safe technically. it's hard, but doable. if everyone ran tor and 10% of users ran tor relay, that should be a hell to track, no?
You're proposing a technical solution to a legislative problem. Working with the law (constitutional or otherwise) creates the environment where you aren't trying to work around the issue or 'hide' from anybody.
Privacy laws are there for your protection. As another commenter mentioned, you wouldn't accept the gov't or private corporations reading your mail, e-mail shouldn't be any different.
I would like to see mobile end-to-end secure communications apps that allow for users to have completely encrypted message passing.
I had the following idea - please tell me if this would work:
You have a distributed truecrypt file system with a client that the users run on their device, and intermediate cloud storage.
Each user device is a "folder" on the file system - messages are effectively truecrypt encrypted files that gave saved out to the remote folder that == the recipient.
The system would notify you that you have a new file that has been pushed to your folder - you can then decrypt and read it.
However - I feel that the weakness would be in the required key/passwd to open the files -- this might not be securable.
It may require that folders between two users have a known password on each eand - and that for every contact/recipient you would have to have a separate key (they could be the same value, but still separate) thus a communication looks like this
[typed mesage] --> [truecrypt'ed file] --> [to: folder] --> [routing engine/store and forward] --> [from: folder] --> [truecrypt decrypt by user] --> [user reads message]
But in a mobile environment...
Anyway - half baked stream-of-thought idea... Why would this not work?
AFAIK, there are several IM apps that could support encryption, but I don't think they are actually doing so (and if they are, they aren't advertising it). As it is, end-end secure communications is not (I think) on anyone's feature bullet-list.
No differentiation between a txt or file...
I can take pidgin and OTR and with about three minutes worth of "You should click here", have it set up easily enough that even a complete non techy can use it.
The problem is 1) It requires installation and 2) People don't know it exists. (Strangely enough, once it's installed i've never had anybody move back, mostly as pidgin is a fair amount nicer to use then MSN)
https://twitter.com/#!/moxie__/status/48185775111684096
It is probably worth noting that the speaker (and tweeter) has had some significant delays in the last year while clearing customs.
Among the disadvantages of Freenet are that it's incredibly slow, difficult to find content on, and cannot access content on the regular internet.
Well, actually you won't, but only because you will "listen to reason" when some well-dressed uninvited guests come over for an evening chat.
Call me mad, but do you ever wonder why there is no consumer hardware PGP telephone?
Not on the analogue phone. But you can easily get a TLS-enabled or ZRTP-enabled hardware or software VoIP phone. Many vpbx providers will also provide you with a vpn tunnel endpoint if you ask about it often enough.
Also, since the analogue phone PSTN interface is pretty trivial to handle, there are multitude of analogue encryption boxes which work as an adapter to the line. Plug & play. You could even use a pc to compress the voice on one side, encrypt, send over an established modem connection and decrypt on the other side.
You don't need the analogue phone itself to do that at all.
And not on a consumer cell phone, either.
> But you can easily get a TLS-enabled or ZRTP-enabled hardware or software VoIP phone.
In theory, arbitrarily strong/usable encryption products can be marketed within the USA.
In practice, from this list:
A) Usable by non-experts (requires no software fiddling, hardware mix-and-match, or other wastes of time)
B) Based on uncrackable/de-facto uncrackable cryptosystem (One-time pad, Public Key - respectively)
C) Affordable by / marketed to ordinary people
We are permitted to choose only TWO.
>...the analogue phone PSTN interface is pretty trivial to handle, there are multitude of analogue encryption boxes which work as an adapter to the line.
Analog "scramblers" are a joke. Any seriously-interested party can crack any and all of them without breaking a sweat.
>...use a pc to compress the voice on one side, encrypt, send over an established modem connection...
Sure, you can use a PC. But if you package this up as a pure-hardware solution usable by anyone who already knows how to use a telephone, certain people will take steps to ensure that your product does not stay on the market.
I do not know what the penalty is for violating the "gentleman's agreement" between the NSA and the electronics industry. But I would not care to find out.
There's absolutely no way to get security without some sort of verification by the user. At the very least, you need someone to verify that the keys are correct "can you read me your phone's security serial?". It shouldn't be too hard to create affordable, usable phones based on PKC. The problem is that nobody cares who listens to their conversations, because it's all "where are we meeting tonight/that movie was shit/i can't believe X did Y".
A year of 9600 baud is ~36.1 GB.
Hand-deliver a flash stick once a year.
Obviously this is not a solution for everyday telephony between strangers. But RSA could be.
> nobody cares who listens to their conversations
This is true mostly because seriously caring is at present impractical.
You can use a symmetric cipher (AES is the current standard), and exchange keys via Diffie-Hellman key exchange, which is a method of securely generating a shared private cipher key over a public channel.
As I understand it, the primary advantage of public key cryptography is that it makes encryption and decryption asymmetric processes - i.e. everyone can encrypt something using your public key, but only you can decrypt it, because only you know your private key. In the phone case, the asymmetry would actually be annoying, because both parties want to send encrypted messages to each other, so you'd have to deal with two key pairs for each phone conversation.
See http://en.wikipedia.org/wiki/Diffie%E2%80%93Hellman_key_exch... and http://en.wikipedia.org/wiki/Advanced_Encryption_Standard .
Hardware-only plug & play box will never work here. You actually have to know something about the connection - information provided out of band. And I don't think most people would accept pressing ~150 digits on the pad as an easy solution.
Analog encryption does not end on scramblers and they don't have to be a joke. As mentioned before, put 2 modems together, apply gsm encoding and any digital encryption you want.
There's a lot of FUD here. If you come up with a proper system, black vans will take you away; NSA has gentelman's agreement; your product will disappear from the market; etc. etc. I don't think you can prove any of it and I can't disprove it either, so I'd rather stay with things we can be sure about.
If it doesn't have backdoors now, it will soon. The remote-intercept capability mandate for land line phones is in the process of being extended to all commercial VOIP.
> Hardware-only plug & play box will never work here.
This looks like an example:
http://en.wikipedia.org/wiki/Secure_Terminal_Equipment
Or, for that matter, this:
http://www.gdc4s.com/content/detail.cfm?item=32640fd9-0213-4...
> I don't think you can prove any of it
Naturally.
But the absence of any easy-to-use/uncrackable/provably non-backdoored secure voice phone on the market is proof enough for me.
If you have to worry about being monitored by government, a super secret phone will not help you anyways. If it's worth doing, your room / furniture / clothes / windows are already bugged and all you say will be recorded before it hits the phone. I really think a provably secure phone is a non-issue.
The worth of the phone is to prevent you from turning into someone who ought to worry in the first place.
Bugging room / furniture / clothes / windows is expensive.
The NSA is known to use voice recognition and keyword search. It is no longer necessary to already be a target in order to be extensively and intelligently eavesdropped on.
Geez. How, difficult is that? Oh wait, you guys only have one option laid down as only two parties... tough.
Before you start to disagree, name one candidate that had "end patriotic act" on their government plan.
and i have no idea what those names means (paul i may have heard about while reading slash dot)
That also reminds me of that simpsons episode where the aliens take place of the democrat and republican candidates, and when they discover they are aliens trying to take over earth, someone shouts that he will vote for somebody else. the alien just says "go ahead, waste your vote" and the guy agrees and feels defeated.
Ran Paul has a pretty safe seat in the house. It is not practical to expect Americans to elect him president. I believe the OP asked for practical advice.
Just to be clear, I'm not saying I think Rand Paul is a racist. I'm just saying I don't think he has a chance in a national election.
PAUL: Well, I think what you've done is you bring up something that really is not an issue, nothing I've ever spoken about or have any indication that I`m interested in any legislation concerning. So, what you bring up is sort of a red herring or something that you want to pit. It's a political ploy. I mean, it's brought up as an attack weapon from the other side, and that's the way it will be used.
But, you know, I think a lot of times these attacks fall back on themselves, and I don't think it will have any effect because the thing is, is that every fiber of my being doesn't believe in discrimination, doesn't believe that we should have that in our society. And to imply otherwise is just dishonest.
http://wiki.debian.org/FreedomBox
http://www.kickstarter.com/projects/721744279/push-the-freed...
Get personally involved with your representatives and senators. Write paper letters, call, and show up in person. Be friendly and talk with other voters at the events you show up to. Educate them on this issue. Abandon party affiliation, work with both Democrats and Republicans.
I note that Hacker News still doesn't have https access...
Also you seem to have forgot that most AT&T customers have bandwidth caps in place that would make it difficult for them to run this attack in the first place.
X-Spook: Hamas subversive War on Terrorism Kosovo Delta ForceThere are many other more useful signals (and the fact that you use encryption is probably one). The goal is to find outliers, not people using scary words Furthermore it would be probably quite easy for them to filter that kind of "DoS", it is just too simplistic. If you come up with something more clever they probably are interested about knowing more about you anyway.
cryptanalysis Roswell blackjack Exon Shell Ruby Ridge NORAD Al Jazeera world domination Becker cybercash nuclear csim SHA Leuken-Baden BLU-114/B
... and, furthermore, it would take a huge bite out of spammers and phishers while allowing you to, e.g., talk to your doctor and banker over email without needing to sign in to some other closed service.
Of course, it kills Gmail's big feature, which is search. But for that, I figure you could take the wordlist from the email, hash each one individually, and then paste that at the bottom of the message. So your searches would still find matching messages, they'd just be a garbled mess to Google or any interceptor.
This doesn't seem like it'd be terribly complicated, but I don't think anyone's done it.
2. Encrypt everything. Or at least something randomly. Even the NSA will have a hard time cracking AES 256 when large amounts of traffic are encrypted.
"The right of the people to be secure in their persons, houses, papers, and effects, against unreasonable searches and seizures, shall not be violated, and Warrants shall not be issued, but upon probable cause, supported by Oath or affirmation, and particularly describing the place to be searched, and the persons or things to be seized."
Am I missing something? Of course the problem is that it's near impossible get something like this to the SCOTUS. The only real possibility is more whistle blowing.
Actually, I do know why. It's a depressing disenchantment with government.
They don't understand that government is not going anywhere, and that government can be as good as it can be bad.
The quote zmblum posted is brilliant, and it is an example of what Good Government is capable of. It is not just for your 5th grade civics class. It's for RIGHT NOW. Read the quote, understand and respect it and its authors, and take action. The government is not just them, it's also you, and sitting on the sidelines being cynical is supporting them.
No way in hell. Where, in either the future or the history books, is the saintly leader who will counterbalance a Stalin or a Mao?
The current problem with the system is that: 1) the Federal government has grown too large, and 2) the US is ruled by only two political parties that are both (at their core) about the status quo and not all that different from each other.
Perhaps the issue Good Governance vs Bad Governance would be effective/useful? (as opposed to the current axis of big vs small)
As was said by Deng Xiapong "it doesn't matter if the cat is white or black.."
Besides, even what you said is a sensible start, yet most of America seems far from having a sensible debate about Governance. From outside, every thing that happens is twisted into some sort of attack vector for ... I don't know what.
..because "Parkinson's Law works everywhere." - Mikhail Gorbachev
the irony is that Quote 1 - China Quote 2 - USSR
It's harder to have 'good government' when there are more ways for it to fail.
I'm not so delusional to think that there will be some magical shrinking of the government, but you seem to be telling me that it isn't a worthy goal, which I disagree with. You can have the goal of making the government work now while at the same time trying to trim away the useless pieces.
The debate about big vs small govt. is one of many, pointless hand-wavy, ideas used to harm your debate.
Is it wrong to point out that something is being used to obfuscate discussion, polarize opinion, and detract from getting a solution?
One can be cynical without being resigned. Cynicism is recognition of the depth and breadth of corruption and not necessarily equivalent to apathy.
But you're right that the corruption we see in the government is a reflection of our own corruption. The mess we now find ourselves in wouldn't be possible without generations of self-deception, apathy, and twisted values. We let ourselves be conned into building the world that the founding fathers warned us against. We'll likely only wake up when survival itself is at stake.
They're not afraid of terror or drugs, they aren't afraid of anything.
And like all premature optimizations, maybe it wasn't such a good idea.
The latter question is relevant in terms of inter-citizen disputes like theft, but in terms of government intervention the former is the appropriate one. Unfortunately it's usually the latter that gets asked.
It doesn't matter that rifles of the time were the assault weapons of the time and the meaning of "papers" of the time can be extended to email.
These actions are terrible, but completely legal.
The question is does Google give them raw data or pre-process it willingly for them?
Here's an overview resource: http://amzn.to/etLNze
Mark was given an award by the EFF a couple of years ago for his bravery.
See the Ecehlon program: http://en.wikipedia.org/wiki/Echelon_%28signals_intelligence...
Get with the programme ;) The new hotness in european wiretapping is called the INDECT project. Here's a presentation from CCC where a representative of one of the firms contracted to build it gets into an argument with the assembled hackers during the Q&A. It's pretty entertaining.
http://media.ccc.de/browse/congress/2010/27c3-4237-en-indect...
Furthermore, when, exactly, were the good ol' days, those days from which we are presumably descending into tyranny, when we (all, not just white folk) were truly "free"?
You can use computers to search for whatever pattern you want in milisecons. I think this makes it different from the past.
Either way, call me when someone finds out they can decrypt and examine all the SSL traffic in real-time.
2) Do you think every CA with a cert on your system is incapable of being bullied by the US government?
The real danger would come if they didn't have to target you and could just mass mine every single encrypted packet.
Since this is a mirrored copy of their entire backbone, they're also catching traffic to and from peering points. In Mark Klein's deposition[1], he testifies:
Starting in February 2003, the "splitter cabinet" split (and diverted to the SG3 Secure Room) the light signals that contained the communications in transit to and from AT&T's Peering Links with the following Internet networks and Internet exchange points: ConXion, Verio, XO, Genuity, Qwest, PAIX, Allegiance, Abovenet, Global Crossing, C&W, UUNET, Level 3, Sprint, Telia, PSINet, and MAE-West.
Even if you're completely awesome and use SSL everything (like, say, Gmail), eventually that e-mail you sent is going to find its way from Google's servers to its final destination. That, with almost no exception, is plaintext. If the final destination's MX lives on AT&T's backbone and transits those peers (there might even be more possible scenarios I haven't thought of, such as AT&T selling transit), they are able to copy that e-mail in flight. All of the public information about this case is dated; I can't imagine that the NSA hasn't improved the facilities since.
This is a very specific example, but you get the idea. There are a lot more examples of why this sucks. It's not just your browsing they're catching; there's a shitload of traffic going into that room.
Aside: I'm really surprised this is coming up again. FISAAA mostly and grudgingly killed this story for me in what, 2008? 2009?
[1]: https://www.eff.org/files/filenode/att/Mark%20Klein%20Unreda...
I think that's kinda why the constitution set the default to innocent. Too bad we don't really see that as necessary any more.
Call recorded by NSA.
They really have more important things to do than monitor the geeks. Unless you come up with some nifty new crypto.
p.s. SPLITTER!
Besides, who cares if you have nothing to hide. Right?
I guess when you are in debt, about to lose your house, your job, your health insurance, you don't really give a crap if Uncle Sam looks through your emails ... ?
Think of it this way, the average person has something in their past they're probably not happy about that could be misused against them in a political way, if say, they ever wanted to be involved in politics. Enemies will use this, and enemies now have all of the data they want.
I am against the illegal spying, but what you're saying seems like a conspiracy theory.
"Who watches the watchers" argument.
After all, they have nothing to hide...
Seems like he believes in Us vs Them mentality: https://secure.wikimedia.org/wikipedia/en/wiki/False_dilemma
(As an aside, I sometimes bitterly contemplate how many great Korean minds were lost in that war because of their personal politics)
Privacy is a human requirement, as evidenced by the deprivation of privacy as a punishment in prisons, and is much more than protection of those with something to hide.
It's probably more targeted at a juvenile segment, but an interesting and enlightening book nonetheless.
I used T-Mobile for years because they were the only ones that there wasn't much evidence against, plus I thought the parent company was a bit more credible, but it's all a black box from the user's perspective.
As for the mountains of data: how many HN'ers for instance would love to climb them for no other reason than to use some BigData tools on them without questioning that cause?
An even scarier thought is that what if they get access to data 30 years down the line, with vastly more computing power?
(Heck, what happens if someone gets a hold of old tossed out ISP hard drives with logs on them?)
Go rent the movie Brazil. It's a movie about what would happen in a society with strongly defined elites and suffocating bureaucracy, dominated by a fear of terrorism, practicing torture in secret. The information professional class is relatively privileged, although oppressed at the workplace like everyone else. For fun some can snoop on citizens at will. Yeah I know, it's science fiction, but it could happen some day.
The entire plot is set in motion when a fly falls into a mechanical typewriter and causes the government agents to break into the house of Archibald Buttle (instead of Tuttle).
I had a good laugh when I read (think it was Wikipedia) about that room. AT&T was sued over it... they defends themselves by 1) the room does not exist AND 2) this lawsuit should not be proceed due to Act of National Security setting aside lawsuit frames. LOOL! I dont know about you -- but to me first contradicts the second one :)) the judge only decided on count 2) -- that it is indeed NSA involved - so it was dismissed, but if there is NSA then the room exists, hahahaha!!
People forget that the US President that first set a policy for this type of illegal behavior was Roosevelt leading up to WWII. Cable/Wireless companies were pressured by US Gov to record and copy cables sent by US citizens and to send those copies to the US government.
Did not stop terrorism than will not stop it now..and yet 70 years later and no one has learned.
1) Massive government abuse
2) "Look, over there, corporations!"
It doesn't even matter that a company is involved. AT&T could go out of business tomorrow, and the government would lean on someone else to give them what they want.
AT&T will not go out of business tomorrow. "The government", as you know it, will go. At least it's made of elected officials. Peons don't elect or have any control over large corporations.
Maybe you guys are just clueless about us having real enemies out there or something. No fucking way is FBI or local law enforcement going to be granted anything from NSA for shit. Because it's unlawful.