Snowden leak: Cavium networking hardware may contain NSA backdoor
twitter.com
twitter.com
From Wiki: >>> NIST SP 800-90A ("SP" stands for "special publication") is a publication by the National Institute of Standards and Technology with the title Recommendation for Random Number Generation Using Deterministic Random Bit Generators. The publication contains the specification for three allegedly cryptographically secure pseudorandom number generators for use in cryptography: Hash DRBG (based on hash functions), HMAC DRBG (based on HMAC), and CTR DRBG (based on block ciphers in counter mode). Earlier versions included a fourth generator, Dual_EC_DRBG (based on elliptic curve cryptography). Dual_EC_DRBG was later reported to probably contain a kleptographic backdoor inserted by the United States National Security Agency (NSA).
From Cavium's NIST FIPS-140-2, Section 3.3 [1] Approved and Allowed Algorithms:
The cryptographic module supports the following FIPS Approved algorithms.
*SP800-90 CTR DRBG Deterministic random number generation 32
1: https://csrc.nist.gov/csrc/media/projects/cryptographic-modu...
Hard to tell what it is, more information is needed.
For example, these devices were validated for the completely appropriately named "SonicOS 6.2.5 for TZ, SM and NSA". Gotta appreciate the irony.
Cavium CN7020 Hash DRBG
Cavium CN7130 Hash DRBG
Cavium Octeon Plus CN66XX Family Hash DRBG
Cavium Octeon Plus CN68XX Family Hash DRBG
I don't know if that's hardware support or just a software validation - but it's still interesting that they validated it.
https://csrc.nist.gov/Projects/Cryptographic-Algorithm-Valid...
In NIST SP 800-90A Rev. 1, the HASH_DRBG section has been significantly updated to that effect.
For instance, Appendix E: (Informative) Revisions.
Section 10: Section 10 now includes a link to the DRBG test vectors on the NIST website. Sections 10.1, 10.1.1 and 10.1.2 now include short discussions about selecting hash functions to support the DRBG's intended security strength. The Dual_EC_DRBG has been removed, and section numbers adjusted accordingly.
On the other hand, I have the feeling that if you instantiate Hash_DRBG with certain classes of insecure hash functions (think MD2) the mechanism that protects the construction from effects of birthday paradox makes it simpler to break the underlying hash function, but for this attack to work the underlying hash function have to be really bad and this attack is probably impractical even for instantiations with MD4, much less the SHA variants in the specification.
All I know is that Dual_EC_DRBG can be backdoored. And there are indeed suspicions, it was known from the start that not only Dual_EC_DRBG could be backdoored, but that it was rather weak to begin with. So, how could it be adopted as a standard?
Now it seems that everyone takes the backdoor as a given. Is there any proof? Ideally the keys themselves (that would make it undeniable), but more credibly, leaks that show usage or potential usage of the backdoor.
But what seems surprising to me about that story is that the potential for a backdoor was known even before the adoption of Dual_EC_DRBG as a standard. Any credible enemy of the state would know that and use something else, and be very suspicious of imported products using it. The ones following NIST recommendations would be allies, but why would you want allies to use weak ciphers?
I think most people's source of proof is the Snowden leaks, but I haven't actually read it or corroborated, and most backdoors should be deniable anyway - it'd be real dumb if they weren't. I think strong circumstantial evidence is really the only thing one can go on.
It isn’t a back door in the sense of ‘poke the code in a certain way and voila’, rather ‘if you know the counterpart to this constant, you can guess what values the RNG spits out at statistically improbable rates’.
You’d never know if someone was doing so unless they admitted it or someone got arrested in a way that was only possible if they’d used it. Which good luck.
The algorithm is bad: it's complicated and slow.
The competing algorithms were much simpler, much more secure by construction, and much faster. Most importantly, there was no obvious way to backdoor the competing algorithms, but there's a hilariously trivial way to backdoor Dual_EC_DRBG.
Ergo: the only reason you would ever devise or use Dual_EC_DRBG is to introduce a backdoor capability. There is no other believable benefit or reason.
But rest assured, the NSA promised that they destroyed all copies of the private key they used to generate the public key for Dual_EC_DRBG.
Oh wait, you thought you could generate your own pair and throw away the private key? Ha-ha... haaa. No. That's not compliant with the "standard", which the NSA forced upon the industry, and/or literally bribed companies with millions of dollars to accept willingly.
It's as obvious a backdoor as you could possibly have.
Even if the NSA didn't use it as a backdoor -- I'm crying with laughter now -- the Chinese hacking group APT5 definitely did: https://blog.cryptographyengineering.com/2015/12/22/on-junip...
I detest the only evidence being circumstantial and the _argument from ignorance_ being the one that you lean on. Make the simple observations and don’t try to oversell it.
But by the time Dual_EC_DRBG was published, we already had alternatives that were better in just about every way, including being much less likely to contain a backdoor.
That's easily a billion dollar motivation right there, and I can't imagine a bunch of low-paid government drones resisting that cash prize. Everyone has a price.
Hence, there's a level of trust that can be gained through observation of failures to abuse backdoors. If they don't exist, they can't be abused. If they exist, then they must be used/abused, otherwise what's the point? Such usage will be eventually discovered. E.g.: The use of the Dual_EC_DRBG back-door to tap into Juniper VPN connections by the Chinese government was discovered and made public.
Of the people I know that work with highly privileged materials, none would take advantage or abuse something like this, even with such a high payout. Even if they did, how would they continue to live comfortably? That said, it just takes one person under the right circumstances to act maliciously, which is why screening and compartmentalization is critically important for these organizations.
With Dual_EC_DRBG, everyone knew that it could be back doored. It's not some guess, or "maybe it could have". It was obviously designed to be back doored. It should have been called "NSA_BACKDOOR_RNG", because that's literally what it is.
And yes, all organisations that are not under the thumb of the US Government laughed at the transparent attempt to introduce a back door and rejected Dual_EC_DRBG. Only US-based companies use it, which ought to give you a hint.
People who live in an evidence-based rational world don’t skip the evidence step and go straight to possibilities and counterfactuals.
An outcome of this is the requirement to treat all possibilities as certainties, regardless of evidence.
In this way, entire sections of industry will auto-assume the backdoor was both deliberate, and used both both friendlies & hostiles.
If you propose a clearly questionable security practice in some arbitrary bureaucracy, the assumption is it's incompetence because that happens all the time and no one detects it until it's already in production.
If you propose a clearly questionable security practice to a cryptography standards body, the expectation is that you get laughed out of the room. Even the possibility of a backdoor would make everyone skeptical, which would be useless in a standard because no one would trust it.
And yet it made it through the standards process for some reason, but there is only one plausible reason.
That’s fine. But they should be equally paranoid of all substitute products/services that use other recommendations from NIST, right? Are there greater than zero products on the (US) market with no encryption in the system recommended by NIST?
Also, I don’t think I was limiting my thinking to a customer of the weak encryption product. I was also thinking through the lens of legal implications.
The cryptographic module uses the CTR_DRBG, not the withdrawn Dual_EC_DRBG. The Dual_EC_DRBG was withdrawn in 2014, but this Security Policy for this module was submitted well past that for FIPS 140-2 revalidation, and the CMVP would not have let a testing lab submit it at all.
This isn’t the back door.
Having an SP 800-90A DRBG does not mean you support all of them, nor does it imply the user could change between the 3 (or, in that hypothetical, 4).
Outside of that, it is unlikely that this module had Dual_EC_DRBG at any point in time for three reasons: 1) Submitting a hardware module that has an entirely new DRBG would require a lot of low level work from Cavium, and the modifications made to the physical module would likely constitute more than an updated certificate (i.e., a new certificate). 2) Even though the DRBG was withdrawn, the CAVP lists algorithm certificates, and this includes historic certificates. Cavium doesn’t have a Dual_EC_DRBG certificate for any operating environment. A list of Dual_EC_DRBG certificates can be seen here: https://csrc.nist.gov/projects/cryptographic-algorithm-valid... 3) the earliest security policy for the module that I could find dates back to 07/22/2014, and it still uses the CTR_DRBG. Security policy here: https://csrc.nist.rip/groups/STM/cmvp/documents/140-1/140sp/...
This doesn't have to be backdoored.
It could simply be a bug in their hardware RNG that uses something that isn't public to break it.
Or something that Cavium did not realise was vulnerable.
AES (128/192/256 CBC, GCM)
Triple-DES (CBC, 3-key)
SHS (SHA-1/256/384/512)
HMAC (SHA-1/256/384/512)
RSA (KeyGen, SigGen and SigVer; PKCS1 V1 5; 2048bits)
ECDSA (PKG, SigGen and SigVer; P-256, P-384, P-521)
CTR DRBG (AES-256)
HASH DRBG (SHA-512)
CVL Component (IKEv2, TLS, SSH)
CKG (vendor affirmed)
Does that imply that the NSA may have kleptographic (algorithm substition, or secondary key) attacks or something different for all of these?
https://www.prnewswire.com/news-releases/caviums-liquidsecur...
It would never occur to me to even suspect that. I assume that anything I do in the cloud is absolutely transparent to the cloud provider unless it's running homomorphic encryption, which is still too slow and limited to do much that is useful.
I would trust them to be secure against the average "hacker" though, so they do serve some purpose. If your threat model includes nation states then you should not be trusting cloud providers at all.
It's not like these keys are shared among disinterested strangers who have no attachment to each other.
This isn’t hard to understand, but it’s easy to forget our civilization hangs by a thread more often than any of us care to admit.
Which is a much much higher bar to clear for any would be rubber hose attackers.
Why do you think governments are demanding those services give them access to quickly remove "misinformation"?
(Including a system of people.)
Even nation state adversaries don’t have infinite resources to allocate for all opponents.
can't torture us all!
Bob, Jon, and Tom have pieces of the key. Bob and Jon are in the US and arrested over and commanded by a court to give up the key. Tom is the holdout. The US will issue an international arrest warrant, and now Tom can never safely fly again or the plane will be diverted to the nearest US friendly airport where they will be extradited. So, yea, "safe" is very situational here.
That's the actual weak link to attack.
It's probably slightly less effective than threatening to kill family members but probably more than threat of jail time.
Either way you require someone alive and with mental awareness. The mind reading tools found in science fiction hasn't been developed yet.
It’s a lot easier to blow yourself up(or to spread ideology which encourages it)for a cause that you believe is helping people, in particular _your_ people.
Ordinary people just want to be left alone. Old guys wishing for more power will use anything to get it, including sacrificing the younger generations.
It absolutely is something that they think helps their people, yes.
Beliefs stop when they are no longer about yourself but about how other people should live. Especially when those other people loudly protest that this is how you think they should be living. Killing them is just murder, not the spreading of ideas.
But hey, those human rights are just for decoration anyway.
I don’t understand why you said “no” before this; I believe this agreed with what I’m saying.
https://en.wikipedia.org/wiki/Psychopathy#Signs_and_symptoms
The 'traditional order of society' is a society run by psycho pathological individuals and benefits nobody except for those individuals.
But you already knew that, didn't you?
1. Not everybody shares your values.
2. People who don't share your values are not necessarily brainwashed.
3. People may do things that are irrational under your system of values, but rational under their own.
And BTW, there is no a single fighting force in the world that doesn't have old men persuading young men to sign up and risk throwing away their lives. There's not a whole lot of difference between regular soldiers persuaded to participate in a forlorn hope or banzai charge attacking a defended position and a suicide bomber or kamikaze.
I think it clearly is.
> "Oh, yes... The law? The law is people. And people is politics. And I can handle of people."
mixing the two implicates humans for the errors of machines
edit:
unless failure to disable autocorrect is counted as a user error
True. But even if you trust your nation state 100%, having a backdoor means you now have to worry about it falling into the wrong hands.
I have been prompted, twice in three years to update though.
Perhaps the requirement depends on your country?
Otherwise, thats more of an iOS option that can be easily altered
Settings < App Store < Automatic Downloads > App Updates
It's not stored very securely either. I wouldn't doubt that three letter agencies have an attack that lets them access the data, but even if they didn't they can just brute force a pin to get whatever they need.
https://community.signalusers.org/t/proper-secure-value-secu...
> Lavabit is an open-source encrypted webmail service, founded in 2004. The service suspended its operations on August 8, 2013 after the U.S. Federal Government ordered it to turn over its Secure Sockets Layer (SSL) private keys, in order to allow the government to spy on Edward Snowden's email
Land of the free...
Also how Yahoo first refused but was forced to comply by the Foreign Intelligence Surveillance Court of Review.
https://www.electrospaces.net/2014/04/what-is-known-about-ns...
(Note that supposedly, "the companies prefer installing their own monitoring capabilities to their networks and servers, instead of allowing the FBI to plug in government-controlled equipment.")
The underlying architectures of our systems are not secure and much of the abstractions built on top of them make that insecurity worse, not better.
For nation state level issues, the solution likely isn’t technical, that is a game of whack-a-mole, it will take a nation deciding that digital intrusions are as or more dangerous than physical ones and to draw a line in the sand. The issue is every nation is doing it and doesn’t want to cut off their own access.
Even when you are a nation state, you still have to worry about other nation states.
But for 2G export crypto it definitely was about keeping it weak enough to break on demand.
[0] https://cloud.google.com/blog/products/identity-security/new...
At my Fortune 250, our threat model apparently includes -- rather conveniently and coincidentally -- everything! Well, everything they make an off-the-shelf product for, anyway. It makes new purchasing decisions easy:
"Does your product make any thing, in any way, more secure?"
"Uh... Yes?"
"You son of a bitch. We're in. Roll it out everywhere. Now."
Welding your vault shut may make it harder for thieves to break in, but if your business model requires making deposits and withdrawals, it's somewhat less helpful.
Not to mention they may be another Crypto AG.
Much more frequently than that if you lump 'anti virus software' in with security products.
They gave me a laptop with 8gb of ram. The laptop runs invisible security software that nominally takes 6~6.8gb.
We just got penetrated by two attackers in the last 40 days.
* that you know of
For instance, Amazon has a staff of thousands or tens of thousands. To me, that means they can't possibly have a good grasp on internal security, that there's no way to know if and when data has been accessed improperly, et cetera. To others, the fact that they're a mega-huge company means they have security people, security processes and procedures, and they are therefore even more secure than smaller companies.
For one of the two groups, the generalized uncertainty of the small company is greater than the generalized uncertainty of the large. For the other, the size of the large makes certain things inevitable, where the security of smaller companies obviously depends on which companies we're talking about and the people involved. More often than not, people want to generalize about small companies but wouldn't apply the same criteria to larger companies like Amazon.
There's a huge emotional component in this, which I think salespeople excel at exploiting.
It fascinates me, even though it's a never-ending source of frustration.
Now I gotta take this to our security team and figure out what to do.
I'm sure a few others here would like to see their response as well.
It confused me when researching it.
I'm pretty aware of how painful it can be to configure AWS well, IAM roles, the overly large eco-system that we won't need and unmitigated complexity to configure it all. It's not comforting to think Azure is worse yet.
The Azure Resource Manager system is much easier to use than the fragmented mess that is AWS.
The problem with Azure is that they’re still catching up to AWS. They have fewer products and the quality is worse.
Really basic issues will remain unaddressed for years.
I was a Linux Sysadmin for a decade. They initially hired me to work on the "BigData" support team
Then after hiring threw me into CI/CD instead. I told them I don't know python or ruby and would be a terrible fit
I asked if I can join the Linux team. EC2 is bread and butter, that's easy stuff
"Oh we're actually shutting that team down soon. I'll move you into containers instead"
Spoiler: they didn't "shut down" the Linux group
you wouldn’t be cynical if you didn’t care, or felt able to do anything about it.
I mean, you are already in US-based cloud, so if NSA is interested, they will just request information directly, no backdoors needed.
(This is a good test for your security team, btw: if they say anything other that "we do nothing", you know its all security theater)
Ironically, the data we're securing is because of US government requirements. So if the government wants to spy on itself, who are we to say?
The Intel Management Engine always runs as long as the motherboard is
receiving power, even when the computer is turned off. This issue can be
mitigated with deployment of a hardware device, which is able to disconnect
mains power.
Intel's main competitor AMD has incorporated the equivalent AMD Secure
Technology (formally called Platform Security Processor) in virtually all of
its post-2013 CPUs.
https://en.wikipedia.org/wiki/Intel_Management_Engine Ylian Saint-Hilaire, principal Engineer working on remote management software
including hardware manageability:
https://youtu.be/1seNMSamtxM?feature=sharedHardware wise nothing changed, it’s just even harder for the actual owner of the hardware to use the legitimate management features while presumably easier for whoever could illegitimately abuse them.
https://www.marvell.com/company/newsroom/marvell-enables-ent...
Also, not great, hope the hyperscalers can diversify this.
If nothing else, at Google/Amazon scale, I’d be concerned about a third-party HSM losing data.
Also, the Cavium one was the fastest one on the market the last time I looked at this. Thales, Safenet and IBM also had them..
I find the levels bizarre. Chromebooks are highly exposed to physical attack. Keys in the cloud are not nearly as exposed. Yet people seem okay with level 1 for chromebooks but apparently want level 3 in the cloud?
I’d rather see a level 1 or level 2 auditable cloud solution, with at least source available.
Yes: https://www.ibm.com/docs/en/cryptocards?topic=4768-overview
If I wanted to store an important long term key in a secure facility, I would worry, first and foremost, about software attacks, attacks doable over a network, malicious firmware attacks, and maybe passively observed side channel attacks. Physical attacks would be a rather distant second.
Now if someone evil-maid attacks the HSM itself, that’s a different story. Any good HSM should resist this, especially one found in a portable device. And this is because you can steal an entire important corporate laptop or other portable device without necessarily raising an quick alarm, whereas I have trouble imagining someone walking off with the HSM out of an IBM mainframe or with an AWS HSM without the loss being noticed immediately.
(To be fair, in the mainframe case, some crusty corporations seem to have a remarkable ability to fail to notice obvious crypto problems like their public facing certificates expiring. But a loss of an entire HSM from a secure large cloud datacenter will, at the very least, immediately trigger “elevated failure rates” or whatever they like to call it…)
It depends who is the attacker. There are countries (western democracies) where the police regularly "visits" datacenters.
The adversary will show up and badge in just like everyone else. They might have worked there for 20 years, or they might be an outside repair person or external consultant.
They will definitely fit in. They're supposed to be there.
It will be the most normal thing in the world. And you may never know their real purpose.
And tech support is horrible, incompetent.
And low power alarms may well be a variation on that theme. Glitching the power supply has been a tool in the arsenal of reverse engineers for a long time so that sort of sensitivity may well make sense. Voltage spikes and drops can be very short, short enough for you not to see them on a DVM but on a memory scope with a trigger value set much lower than you might expect they'd show up with alarming regularity in some hardware that I've worked on. And that explained some pretty weird instability issues. Good power is rare enough that really sensitive hardware usually has power conditioning circuitry right up close to the consumer.
No. I said I've been in touch with technical support, and the manuals, docs, and their support is clear. It should not be wiping, it has a backuo battery too.
We've spent hours and hours testing, to validate the issue, and cause.
They likely have a firmware bug, or bad board design. And we've seen this from cards from different batches, bought years apart.
Their support is incompetent, and I say that with 30+ years of dealing with, and providing tech support. They fail to read tickets, and even spend (supposedly) weeks running tests, while ignoring vital data in tickets, and conveyed in support calls.
They. Are. Incompetent.
In terms of "issues with power", no. Not over dozens of servers, in different datacentres, and even just with the card at rest, out of server, on battery.
Understand, their job is to provide stable. HSM cards are useless, if they randomly wipe when in use, while under power "just cause".
I find it weird that you're playing devil's advocate here, describing how hard this is, this is an enterprise grade card, and people have been making reliable, and safe HSMs for decades.
The problem is 100% them, their desogn.
And even more so, their incompetent tech support.
Did I mention their tech support is incompetent?
I'm not so much playing devils advocate as that I'm aware how hard making such devices is and the difference between 'user error' and 'incompetent staff/faulty product' can be hard to distinguish in a comment.
https://cloud.ibm.com/docs/hs-crypto?topic=hs-crypto-faq-bas...
HSMs are mainly for compliance, where a customer needs to check a regulatory box, because some rules says you must use a HSM. The more standard it is, the easier it is to demonstrate to the auditor that you've checked the box.
Narrative control and information modeling is so powerful it’s scary.
It infuriates me the NSA actively works to undermine American security. Their brief is to protect us, not plant backdoors and then lose the keys.
It infuriates me that the NSA actively works to undermine International security.
Seriously.
I don't think china or Russia really have good offensive capabilities, so as long as it is the case, this helps the US maintain some form of cyberweapon supremacy.
As long as china or small black hats don't do harm, they will not raise security standards.
If they manage to put a backdoor in any software or hardware you use you are affected. They could spy on you and trade that with your government or just lose the keys and now anyone can do it.
PD:Also from outside US btw
You don't have to bow in order to be compromised. You can be compromised without even knowing it.
There is a big difference between an exploit affecting all devices vs a subset which requires a specific not-best-practice configuration. Regardless, still good to be aware they exist.
The majority (I'd say all) of the Eastern-European countries that are also NATO members do in fact bow to the US, and thus to the NSA/FBI/the Secret Service.
Since it was never working as advertised, do I contact them or Ubiquiti to get my refund / warranty replacements?
"That's not the point! It's about privacy!"
Sure. I'll choose it ignore the fact that our civilization is somehow still functioning in a post-nuclear world.
A backdoor is an extra attack vector with often very unfavorable properties that you as a user are unaware of.
Cuts both ways.
The US currently has about 1.2M people in their gulags, comrade*
Sorry that you're wrong on all three points.
[1] https://www.hrw.org/news/2023/08/29/saudi-arabia-man-sentenc...
The average reader may be surprised by how far this cone can extend in some circumstances.
It has been established that the NSA conducts industrial espionage [0], under the cover of national security [1]. To what degree the term "national security" narrows down the scope of any surveillance measures is likely unfamiliar to the laymen, but an NSA representative gave a short description on the agencies views to that regard in 2013:
"The intelligence community's efforts to understand economic systems and policies, and monitor anomalous economic activities, are critical to providing policy makers with the information they need to make informed decisions that are in the best interest of our national security." [1]
While it affirms that it does not steal trade secrets, the NSA reserves the right to pass on critical information about economic developments towards policy makers, who then can use this knowledge in their decision making.
Notable examples of industrial espionage conducted by the NSA consisted of spying on EU antitrust regulators investigating Google for antitrust violations [1], alleged espionage of business conducted by brazilian oil giant Petrobas [2], international credit card transactions [3], SWIFT [4], and the infamous allegations of espionage against european defense company EADS [5].
It's noteworthy that this short list only comprises cases that got attention of the media, the actual list of targets in europe was much higher, about 2000 companies in europe, many of them defense contractors.[5]
So, to summarize, it may be much easier to fall into this cone, than one would assume. The agency is also at odds with it's own claims as this this excerpt from a Guardian article [2] clearly shows:
"The department does not engage in economic espionage in any domain, including cyber," the agency said in an emailed response to a Washington Post story on the subject last month. [...] "We collect this information for many important reasons: for one, it could provide the United States and our allies early warning of international financial crises which could negatively impact the global economy. It also could provide insight into other countries' economic policy or behavior which could affect global markets."
But he again denied this amounted to industrial espionage. "What we do not do, as we have said many times, is use our foreign intelligence capabilities to steal the trade secrets of foreign companies on behalf of – or give intelligence we collect to – US companies to enhance their international competitiveness or increase their bottom line." [2]
To me these statements are mutually exclusive: How is providing policy makers with insights from foreign politics and possible industrial espionage (i.e. not necessarily actual technologies, but research objectives of foreign companies) not giving an advantage to domestic companies, if those policy makers act appropriately?
[0]https://theintercept.com/2014/09/05/us-governments-plans-use... [1]https://www.cnet.com/tech/tech-industry/nsa-spied-on-eu-anti... [2]https://www.theguardian.com/world/2013/sep/09/nsa-spying-bra... [3]https://www.spiegel.de/international/world/spiegel-exclusive... [4] https://www.spiegel.de/international/europe/nsa-spying-europ... [5] https://www.theregister.com/2015/04/30/airbus_us_german_inte...
Let's imagine OpenAI was a Russian company operating mostly in secret. This RU OpenAI secretly discover and use GPT-4-like technology, and show promise that they are not done innovating. While these LLMs are often overhyped, these recent innovations no doubt present a policy issue, right? I'd say there are legitimate national security reasons to know about that technology, not just about making money or making a better product for cheap.
The distinction being made is that the NSA may steal data related to this, but they aren't just giving it to Google to make Bard better. They are getting intel and giving lawmakers the tools to fund research, write policy, or whatever else our elected representatives deem beneficial. Any side action or under the table dealings would make this distinction meaningless of course. So, for the example above, if we started funding departments to research the threat of LLMs/AI, inform the public of the issue, and inform companies that their data is being pillaged to train AI... that is all very different from just stealing a cool new widget design and getting it to market first.
I think there's no debating that this is morally gray, but I think it's a few steps off of what other nation states are doing by stealing tech and implementing it in "private" companies. It's certainly worthy of criticism, but I think it's unhelpful to bucket it with the other type.
If the LLM example isn't your thing, it also makes a lot of sense for the NSA to steal information related to weapon/defense tech, even if developed by a private company, and even if we use what we stole to implement countermeasures. I can't honestly be morally outraged about invading the privacy of someone developing tools of war against you. Fwiw, I wouldn't blame Russia or China for trying this against the US gov or defense contractors either, but it's not like I'd be happy about it. My point is that that is not so much economic espionage or corporate espionage as much as it is just plain old espionage. It saves lives and protects American hegemony - which I recognize may be counter to many people's ideal situation.
It's a nuanced thing. When you take two morally questionable things and reduce them down to both just being bad, the ones doing the worse things benefit. E.g. "all politicians lie" is a handy phrase for truly corrupt politicians because the ones who make small mistakes or half-truths are in the same bucket as them, and the outcome is apathy for the issue rather than being upset at all of it. Kinda the classic whataboutism trope - not to imply you are doing that, but just to say that's where it often leads.
> Let's imagine OpenAI was a Russian company
Nevermind that they're not and that Russia can't currently develop these models, due to lack of silicon. All targets I mentioned, with the exception of the brazillian oil company we're in european states, at the time (and still!) closely allied with the US.
> The distinction being made is that the NSA may steal data related to this, but they aren't just giving it to Google to make Bard better.
How would you even know at this point? Who controls the NSA? There haven't been any leaks since the Snowden revelations and there likely won't ever be any again, since Snowden could only make his move due to some misconfigured/outdated network quota control software.
Hell you can't even FOIA information about these policies, and agencies will go so far to withhold evidence in court when it concerns espionage! And soon as a court case involves this information, the court recedes from the public and is held in secret.
My hostility against US policy is by no means anywhere above the european average, but when it comes to public statements about surveillance, I have no reason to trust the US Government. The Bush administration has proven that it is possible to flout the US constitution on a massive scale with just 10-12 people. At this point I can't blame people putting forward some crazy conspiracy theories about the deep state or qanon, because the US gov has given no indication to be believably concerned about compliance with their own laws.
I don’t see the point in constantly changing hardware that I don’t even know is safe, just to prevent what will already happen.
The specific issue I ran into was that I had a non-ubuiqiti router and AP on my network, and there was absolutely no way to set firewall rules on the Ubiquiti gateway for any clients connected through the non-ubiquiti equipment. This should obviously not be a problem. The gateway provided those clients IP addresses through DHCP and they are in its ARP table, so it should be supported.
But now I'm thinking: Is it better that the US is spying on me in Europe, vs. having EU governments do it? I feel like I'd be somewhat more safe from the US, compared to if my own government decides to spy on me. Maybe I should look into Chilean network equipment, I can't imaging that they'd have much interest in my online activities.
https://en.wikipedia.org/wiki/Five_Eyes
> In recent years, documents of the FVEY have shown that they are intentionally spying on one another's citizens and sharing the collected information with each other, although the FVEYs countries claim that all intelligence sharing was done legally, according to the domestic law of the respective nations.
So in practice, it's entirely irrelevant: your data will end up Hoovered up by someone, coated with a veneer of legality, and provided back to your government to act on (or not).
Don't be too interesting to your government, I guess?
Are you a journalist working in a sensitive/dangerous area?
Do you often participate in discussions with dissident groups?
Do you frequently access content that is illegal in your jurisdiction?
they will see your traffic in plain text by design
Or, alternatively, treat your LAN/WiFI like public internet and don't send anything unencrypted thru it
The SoC manufacturer is irrelevant.
If the USG wants in, it's just a click away in any case.
What's a legal and practical mechanism the US Government could use to do this? In almost any number of clicks, never mind one.
if i were sniffing for outbound WAN traffic as root on the unix-like that the USG run, would i see the exfiltration traffic? or is this [supposedly/apparently] happening at a lower layer that an OS can't see i.e. some kind of BMC or BIOS layer?
wouldn't such traffic also have to navigate the varieties/restrictions of DOCSIS etc? or are they also compromised?
is the worst-case scenario here some kind of giant C2 network with waves hands tons of compromised lower-than-OS mini pieces of firmware exfiltrating data over waves hands compromised network providers hardware into the giant NSA AWS cloud?
Perhaps there is some new watered down usage (like what happened to "literally" or "bricked") but that is precisely why people use the term "air-gapped" - to denote networks with PHYSICAL separation from other means of access.
(Of course, if you connect an AP, it's no longer air-gapped."
I'm still using the access points, since I can run my own controller still, either virtualised in a container or VM, or a raspberry pi and you don't have to connect it to the cloud. I haven't found anything better, TP Link seem to have some interesting looking stuff but I worry about the security given they're based in Shenzhen...
1. https://shop.opnsense.com/product-categorie/hardware-applian...
Wonder if agreeing to enable NSA backdoors they agreed to be compensated when eventually that fact is leaked. "If nobody starts buying your chips, don't worry, we will! ... and then promptly throw them into the recycling bin"
Also interesting is if Marvell knew their acquired tech had this "cool feature".
If you comply we may help you with some tips occasionally to make sure our partnership is working well, or just not reveal your trade secrets to your competitors"
we already saw this happen in public once with Qwest: https://www.eff.org/deeplinks/2007/10/qwest-ceo-nsa-punished...
https://www.theguardian.com/world/2014/sep/11/yahoo-nsa-laws...
https://www.theguardian.com/technology/2016/oct/04/yahoo-sec...
Both she and Yahoo’s shareholders suffered greatly for complying.
There’s also Crypto AG, which was a foreign-owned CIA front that spied on US allies:
https://www.theguardian.com/us-news/2020/feb/11/crypto-ag-ci...
The Washington Post article is now bullshit-walled, but goes into more details.
One of my favorite parts of the story is that the intelligence agency handlers needed to make sure they only hired incompetent / mediocre engineers and mathematicians at the actual company (algorithm and backdoor design was done at a US government agency that employed competent people).
One day, a brilliant woman applied for a job. She aced the interview, and there were concerns she might be too smart, but upper management hired her on the grounds that the interview results were probably spurious. She was just a woman, after all.
She ended up exposing and fixing their backdoors pretty quickly, which caused a huge containment problem for them.
To me, anyone purporting to be an official government employee advising you that you cannot speak to an attorney throws up so many red flags, that I just can't imagine it being anything but sinister.
Note that none of the people that coerced Mayer into breaking the law have been disciplined or even named, so I guess they didn't need to worry about such things after all.
I've heard EFF and corporate lawyers advise people to never speak to law enforcement under any circumstances. The reason is that the police are allowed to lie about their intentions and the facts of the case, and if you say something that is incorrect, you can be prosecuted for lying to them.
So, for example, they can spew a bunch of lies and trick you into incorrectly speculating ("Since Jim was waving that gun at you, then I guess he really did buy it after all"), and then later, you need to prove (probably without the benefit of a recording) that it should have been clear to the officers that it was just speculation, or you go to jail.
Their advice boiled down to politely and repeatedly respond with "I want my lawyer". At least one court has ruled that failing to respond at all to a question (even after repeatedly asking for a lawyer) means that you're now responding (perhaps with body language) and the interrogation is therefore admissible.
Make it illegal for police to lie about their intentions and the facts of the case (although perhaps they should be permitted to hide some of the facts of the case (although they cannot hide what you are actually accused of, or anything like that, if they are actually arresting you (since otherwise they should have no authority to arrest anyone)), and anyone (whether police or not) should always be permitted to claim "I don't know").
If you lie (or make a mistake) to the police while you are being interrogated, that should not be illegal (although making a false police report (while you are not being interrogated) would still be illegal).
Furthermore, any claim they make that, if valid, would not authorize them to do what they are doing to you, makes what they are doing illegal in that instance. For example, if you ask them if they are police and they say they are not police then they have no authority to arrest you (although they can still make a citizen's arrest (for situations where that is permitted, so, not necessarily all of the things that the police might arrest you for), or to call some of the police other than themself (using the methods that ordinary people would use, not the ones reserved for police), etc.
This isn't even half of enough to fix the problems with police, but it is a start.
they apparently just happily sold themselves to German and American intelligence.
We treat these stories as if they were simple matters of politics and tech. But the blast radius is huge. When this happened to Cisco, and their value dropped to about 7% of the market they created, I passed massive dumpsters of Cisco gear in the car park, prematurely torn out of racks and consigned to crushing as e-waste.
Has anyone done a serious cost analysis of just how hard this hits? If a foreign entity sabotaged our industry this way we'd take the battle right to them.
NSA also pays the owner of the Washington Post upwards of $10 billion for cloud services
That's not the only publication that had access to the documents. From wikipedia
>the first of Snowden's documents were published simultaneously by The Washington Post and The Guardian. [...] The disclosure continued throughout 2013, and a small portion of the estimated full cache of documents was later published by other media outlets worldwide, most notably The New York Times (United States), the Canadian Broadcasting Corporation, the Australian Broadcasting Corporation, Der Spiegel (Germany), O Globo (Brazil), Le Monde (France), L'espresso (Italy), NRC Handelsblad (the Netherlands), Dagbladet (Norway), El País (Spain), and Sveriges Television (Sweden).
Wouldn't be more likely that a plant would actually not say that, but rather come up with something else? Seems much more likely that a plant would promote some other aspect of a leak that would be less damaging as the story. Or even possibly making part of the document dump disappear.
Personal injury guys are the most entrepreneurial people I know...
Just Sayin’…
For examples: Accessibility laws, consumer protection laws, and privacy laws.
It's a trivial matter to determine which websites don't comply with the easy targets of accessibility. Yet the concept of running such a scanner, automatically, and charging for corrections, is seen as predatory behavior.
There was an article about grocery pricing with obvious collusion, dark practices, and misinformation yet nothing is done. Business as usual, people need to understand it and work around it. Problem is, it's clearly outside the realm of the average intellectual ability.
Predatory behavior is everywhere. I don't feel compelled to list even a single example.
If the lawyer chasing the ambulance results in a law being followed instead of ignored, that is a positive thing.
The Ashley Madison leaks should have been one name a week and making it a big spectacle till this very day!
Same for the Snowden leaks
you can also get bigger bidders for the data by drumming up interest and suspense
hackers really suck at marketing, so far.
A wikileak revival scares the most powerful
So.. what's your case here? It would be so expensive to host and publish the documents that they would be unable to recoup their investment based upon lack of interest?
> hardly anyone knows who Cavium are, let alone your average Washington Post reader.
Oh.. I don't know.. maybe that's because no one has reported on it and explained why it would be important?
There's a lot of circular reasoning present to create excuses for an entity that really doesn't need or deserve it.
Tangent, but we use Azure instead of OpenAI due to data-retention concerns. To ensure nobody's inputting anything classified or proprietary, Legal demanded implementation of an "AI safety" tool...so we demoed one that ships all prompts to a third party's regex-retraction API.
So you never know who ends up the recipient of your LLM prompt, where it's getting logged to, who's reviewing those logs, etc. Even some local models require execution of arbitrary code, and Gradio ships telemetry data. Uploading Snowden's docs into a black box is a good way to catch a ride in a black van.
You might want to browse /r/LocalLLaMA/ if "security" is an issue for you.
(2010) https://weirdshit.blog/2010/07/23/cointelpro-operation-mocki...
Which is fine I guess, as long as it doesn't go into the more abusive examples listed.
One thing that jumped at me when (re-?)reading the letter to MLK from the FBI : first you have some very informal speech :
"look into your heart", "you are done", "you are [] an evil, abnormal beast", "there is only one thing for you left to do"
Then SUDDENLY : "You have just 34 days in which to do it (this exact number has been selected for a specific reason, it has definite practical significance)."
Lol, talk about a change in tone, I wonder if MLK noticed it ? (The specific reason being Christmas, but still...)
I never do that, except when I do. What kind of soapbox are you trying to stand on. It looks more like a cardboard box collapsing under the weight of your own hubris.
I get the suspicion of news outlets of any kind. It doesn't matter what stream the journalists are fished out of, but they cannot all be subject matter experts in all subjects. This is also an expectation full of hubris on your part.
"Why go out or talk to anyone when I can just stay home and be on twitter all day!?!"
It's the absolute worst outcome for journalism, and none of publications seem to care. If I had a publication the first thing I would do is ban twitter use (and probably go bankrupt because of it.)
Fixed that for you
I'm often remind of PG's essay on corporate PR and the media: http://www.paulgraham.com/submarine.html
They very much did not. Twitter's own lawyers when pressed in court (the place where there are consequences for lying) admitted that nothing in the "Twitter Files" cited by Donald Trump actually show that the social media platform was a tool of government censorship.
https://storage.courtlistener.com/recap/gov.uscourts.cand.38...
https://www.ca5.uscourts.gov/opinions/pub/23/23-30445-CV0.pd...
You are moving the goalposts. First it was "gov policing speech" which there was no proof of. Now it's "gov coercion/encouragement" which is entirely up to how you subjectively interrupt what interactions occured.
Which fine, lets go over the facts. Any exchanges of information were voluntary, at times set up under the initiative of social media companies themselves, and the vast majority of instances of mis/disinfo flagged by the gov were not acted upon by platforms. Social media companies could have stopped talking to the gov at any time (a few did), and they didn't have to act on anything.
Not exactly the picture of an authoritarian government policing speech. The Twitter Files were set up as an exercise in confirmation bias for people that believe gov was censoring speech (and targeting them), which is why they disappeared so quickly when a lack of proof was highlighted in court. It served its purpose.
> We start with coercion. On multiple occasions, the officials coerced the platforms into direct action via urgent, uncompromising demands to moderate content. Privately, the officials were not shy in their requests— they asked the platforms to remove posts “ASAP”
The ASAP was in reference to a case of revenge porn, something not only against the Twitter TOS, but illegal.
> When the platforms did not comply, officials followed up by asking why posts were “still up,” stating (1) “how does something like [this] happen,” (2) “what good is” flagging if it did not result in content moderation, (3) “I don’t know why you guys can’t figure this out,” and (4) “you are hiding the ball,”
Again, this was in reference to illegal content (iirc an OFAC sanctioned entity not only posting content but making money off it). Using such language when a private company isn't following the law isn't "coercion for censorship".
This reads like a political document by partisan lawyers. This document makes no attempt to distinguish between actually illegal content and suggested violations of TOS (such as when spreading COVID disinfo was against Twitter's rules, which it no longer is). It provides no context for how this "coercion" was mostly civil servants either pointing out violations of Twitter's own rules, or federal crimes. Either way, inaction was baffling, as communicated.
But, again, the mere fact that Twitter ignored so much of this, so often, proves they clearly didn't feel the need to respond to gov requests as if they had to.
NSA didn't have to lift a finger. Wait a few weeks and people move on to the next story, this should not be a shocking revelation to anyone.
While the USA and the UK are different, I suspect there was a bit more difficult for the NSA than "didn't have to lift a finger".
The FBI and CIA had agents inside Twitter and Facebook. Of course they have them inside news agencies as well. Part of it over time is access-media, the ones that play ball get the stories and info, the others get weeded out.
It's illegal for FBI or CIA to actively target a US company. Anyone doing so would be fired for cause.
Does that make sense to you? It doesn't to me.
sure, why not. and while we're on this deluded train: Julian Assange's legal problems are not political persecution
That doesn't seem to be true. There are many court cases involving criminal conspiracies where you cannot find unrelated information about the involved people.
Due to the severe corruption of our institutions, the investigators in this case are the public. A time period of a decade is more than enough time to recall all the HUMINT assets that might be harmed by such disclosure.
Like how NSA collects a shit ton of data on citizens... the vast majority of which has absolutely nothing to do with any kind of wrongdoing.
I'm only pointing this out because your comment has a negative tone towards what Snowden did.
No...the organization is behaving exactly as intended.
>After creation of the CIA in 1947, it enjoyed direct collaboration with many U.S. news organizations. But the agency faced a major challenge in October 1977, when—soon after leaving the Washington Post—famed Watergate reporter Carl Bernstein provided an extensive exposé in Rolling Stone.
Citing CIA documents, Bernstein wrote that during the previous 25 years “more than 400 American journalists…have secretly carried out assignments for the Central Intelligence Agency.” He added: “The history of the CIA’s involvement with the American press continues to be shrouded by an official policy of obfuscation and deception.”
Bernstein’s story tarnished the reputations of many journalists and media institutions, including the Washington Post and New York Times. While the CIA’s mission was widely assumed to involve “obfuscation and deception,” the mission of the nation’s finest newspapers was ostensibly the opposite.
https://www.guernicamag.com/normon-solomon-why-the-washingto...
Support or criticism for the intelligence community became very partisan during Trump's campaign and presidency. Once something like this becomes partisan, the average political creature loses some degree of rationality for it. The IC becomes patriotic good guys, stalwart defenders of American democracy standing up to fascism; their past and present malfeasance goes unnoticed, forgotten, or simply ignored. This is how the WaPo's relentless pro-IC stance could be missed; they've been telling a lot of people what they want to hear and all people are less critical and suspicious of things that support their biases and prejudices.
https://www.amazon.in/Journalists-Hire-How-Buys-News/dp/1944...
So, the behavior you point out is enabled by politicians who show such bad judgment in such a critical area, and yet few if any lost their positions over their votes. I personalty have been wondering for the past few years how many of our leaders are actually there of their own accord, rather than put there by various backroom cabals of business leaders and intelligence (foreign and domestic) agencies that want to put their thumbs on the scale with a representative or dozen. How would you ever know, except by their behavior.
There's a lot of pontificating about the virtuous, important, selfless job journalists do, but when they're manipulated to such an extent not just by the Government and intelligence agencies but also by their corporate sponsors... It's hard to not be a bit cynical...
Journalists knowingly report lies, acting as the mouthpiece of the government.
We know at least one news organization had the whole Epstein story locked down and they buried it because they were afraid they’d lose access to the royal family for future news/puff pieces.
You think you hate journalists enough, but you don’t.
Washington Post -> Bezos -> AWS -> Cavium
Pretty simple to understand, really.
However at the time it was the more sexy things like tapping google's fibre and backdoors in cisco's kits that were more interesting. This is because the public could understand those things and therefore it sold papers.
The difference between "cisco, dell and many other leading manufacturers shipped backdoors in their kit" and "cavium the small provider you've not really heard of" is large.
Most people reading the snowden stuff will have assumed that the NSA had put in backdoors to most things.
I don't know what the reason for the betrayal was. I'm pretty sure Alan Rusbridger knows though. He resigned as Editor-in-chief shortly after these events.
I don't get why whistleblowers rely on newspaper publishers to unpack their leaks for the public; it's not as if the press are known for either their honesty or their scruples.
They have an interest in drama and a platform to publish on.
[0]https://watergate.info/1972/06/23/the-smoking-gun-tape.html
The rest of your post is quite the bullshit (easily probable with publicly accessible archives bullshit at that), but this is also wrong. The mythological god-like creatures that crafted America as their divine powers ordained it didn't "intend" for the press to be "the fourth power". That term was first used after the US revolution, and in the UK. You're just retconing stuff into your mythology, and everyone knows that doesn't work and leaves a poor taste.
* it's an amendment, so not part of the original text
* "Congress shall make no law respecting an establishment of religion, or prohibiting the free exercise thereof; or abridging the freedom of speech, or of the press" . I don't know, it doesn't sound to me like the freedom of the press was the most pressing matter when that amendment was written considering the ordering, and again, the fact that it's an amendment and not part of the original text where the rest of the "checks and balances" are written.
Sure - it was a surprise to the public. But rival security services I'm sure would expect US controlled backdoors in US made technology.
[1]: https://www.theguardian.com/uk-news/2014/jan/31/footage-rele...
>Primarily these documents remain unpublished because the journalists who hold them fear they will be considered disloyal or even that they will be legally punished
Whether that's true I can't say. But as a reminder, despite constant claims that Assange is being extradited over hacking charges, something like 17 of his 18 charges are over publishing documents.
if my network hardware is compromised, but all of my communication is encrypted, that leaves… traffic analysis? hoovering up the data and storing it to decrypt in the future when it becomes feasible? using the router as a foothold to attack the rest of my network?
The first two are already happening for data that leaves my LAN. Unencrypted data on my LAN is vulnerable, and there is plenty of unencrypted traffic on my LAN in practice. Is that the risk?
What data is encrypted on the router? VPNs, for one. So a VPN, and all the plaintext traffic sent over it, could be made vulnerable.
What sort of VPN are we talking about?
So I’d assume they could snoop packets and store that data elsewhere. Whenever they harness quantum computing I could assume they put that stored data of yours through it and decrypt it all.
You can see discussion on this going on as far back as 2015, explicitly in regards to what "SIGINT enabled" means and Cavium: https://www.metzdowd.com/pipermail/cryptography/2015-Decembe...
Am I missing something here? People are talking as if there is some new backdoor that's somehow avoided detection. Did everyone just miss this discussion in 2015?
Discussion of the "Sigint Enabling Project" goes as far back as 2013 on HN itself.
You should assume you have no privacy anywhere in your life.
Or are you suggesting that there no way for one of the aforementioned groups to recover your data remotely should they have a focused desire to recover it?
[1] - https://www.electrospaces.net/2023/09/some-new-snippets-from...
[2] - https://pure.tue.nl/ws/portalfiles/portal/197416841/20220325...
Suppose you were given a healthy budget, a team, and a few years. Would you be able to build network hardware that did not contain back doors? How healthy would the budget need to be? How skilled would the team need to be? I assume you’d have to assume most external vendors are compromised and rebuild whatever you needed from them. What would that take?
If you care about performance, then you need to start by building a fab. $100B+, and you’ll end up with government moles.
So, I assume you don’t care about performance. If you keep stuff under 100MHz or so, then you can avoid complicated signal processing.
Design for a old process, and tape out. Now, read up on decapping and reverse engineering old dies with garage-built microscopes.
Make many copies of your chips, then decap a random sample and verify they are to spec by hand. Use the rest to build a computer that can verify the output of the microscope.
You can print circuit boards using hobbyist kits on a laser printer. Since they are 1 or 2 sided, you can visually verify them.
If you can find commercially available chips that are primitive enough for you to decap, scan, reverse engineer and verify, then use those instead (following the random destructive sampling procedure above).
Good luck!
An interesting question I'd like answered: Are the TPM 2.0 modules that Microsoft is requiring for Windows 11 installs similarly backdoored?
https://www.theverge.com/2013/6/6/4403868/nsa-fbi-mine-data-...
I think it's a safe assumption that all American microprocessors have backdoors.
What does this mean for OpSec? If I am a dissident (or garden-variety cyber criminal), how do I evade my online activities being tracked by a sufficiently determined team at the NSA? We've known (or have assumed to know) for years that CPUs produced by AMD, Intel, and Apple have backdoors. If my machine lacks any personally identifying information, only interacts through the internet through a network device that uses a VPN and encrypted tunneling, then I should be fine in spite of CPU/OS backdoors. However, using a VPN with encrypted tunneling doesn't seem to be enough if my router also has a backdoor, and the data or encryption keys can be intercepted and tied to the personal information I've given my ISP.
Where do we go from here? Do I need a Loongson-based PC and a Chinese router on top of an encrypted VPN? Obviously we have to assume that these are all backdoored as well, but that shouldn't matter as my activities don't likely won't make me a target of the PRC.
What's the evidence for this?
>Obviously we have to assume that these are all backdoored as well, but that shouldn't matter as my activities don't likely won't make me a target of the PRC.
Elsewhere in this thread it was claimed that the NSA has hacked Huawei. The NSA could have stolen the backdoors then, or it could've analyzed e.g. Huawei's hardware independently.
Personally, I just forward all WireGuard traffic to another computer on my network and use https://github.com/burghardt/easy-wg-quick to setup a simple VPN.
So absolutely no way to know whether anything needs to be done or not, unless you expect you’re at risk of a nation state actor having a reason to specifically target you, in which case it’d be wise to stop using it.
It's another thing when it comes to resisting surveillance capitalism :
https://web.archive.org/web/20180919021829/https://www.alexr...
It's completely disproportionate that Hollywood is making people lose control of their own computers because they are worried about copyright infringement !!
That a boycott of Intel and Ryzen CPUs, "Trusted" Platform Modules, and Windows (8+) also probably makes the job of NSA/CIA/FBI harder (because they have likely backdoored them) is just a bonus.
(Of course there's also a potential failure mode that some much more hostile actors might get their hands on some of these backdoors, but it doesn't seem worth worrying about it until we get a high profile example of that happening ?)
Of course if you have the responsibility of, say, protecting your non-US company from industrial espionage, the situation is very different.
https://www.justice.gov/usao-sdny/pr/former-employee-technol...
MIPS and ARM.
And Linux MIPS doesn't even have DEP and ASLR.
And we need something better than just private keys.
What if that was theater?
edit: FUCK
“ Quad-core ARM® Cortex®-A57 at 1.7 GHz”
https://store.ui.com/us/en/pro/category/all-unifi-gateway-co...
People paying premium $$$ for this. UI better redesign and compensate users.
I guess I can spare myself the money
Hopefully there's a 4G version coming. This seems too good to be true.
The creators of the project suggest using your phone's hotspot if you need connectivity when not connected to Wi-fi (something I heard in interviews they gave).
> Part of the purpose of Precursor is to validate the system-on-chip (SoC) design we hope eventually to produce as a custom ASIC for use in future such products. This SoC, which we call "Betrusted-SoC," is meant to be the central pillar of security for devices like Precursor. The version of Betrusted-SoC used in Precursor is based on a Xilinx FPGA and has the following features [...] [1]
As for the person who replied to you requesting LTE: won't happen, there's no completely FOSS stack for LTE. Always there is closed source firmware due to regulations. Oh, that wonderful world of transceivers. If you want FOSS, go wired. Tho it seems Precursor found a way to utilize Wi-Fi with a FOSS stack?
Might as well make it difficult though.
Just assume you’re being persistently surveilled - if you use a computer or electronics then the likelihood approaches 100% over your lifetime.
Doesn’t mean we don’t do anything about it, just means we have to acknowledge reality
* When I ordered the first generation Raspberry Pi, they were stuck in the toll a long time, and when they arrived all the warranty seals were broken. Consequently I never really used them.
* When I ordered the first generation Google Pixel, before it was generally available in my country, it was stuck in domestic mail for almost a week. The person who imported them sold and sent two phones the same day: the other one arrived after just two days and travelled a lot further. I used it regardless as I already considered phones a lost cause... (and could not with good conscience sell a possibly compromised device).
At this point I don't trust anything sent by mail.
> When I ordered the first generation Raspberry Pi, they were stuck in the toll a long time, and when they arrived all the warranty seals were broken. Consequently I never really used them.
If state have means to bug raspberry pi it has means to re-seal the box...
That's a good point that I never made sense of. The most likely explanation is simply an oversealouz toll agent. It just left a bad taste in my mouth so I didn't want to play with them...
I had largely forgotten about it until the Google Pixel got stuck.
I believe the fewest are. But constant surveillance is an advantage if you need to monitor general opinions or if they find you interesting at a later point and want to check your history.
So if you talk about burning wood in your stove a lot and it later becomes illegal you might have a hard time denying you have a stove if they ask you to pay extra carbon emission taxes.
Or if you talk about chest pain a lot and later want to get a new health insurance you might find that your options are mysteriously more expensive than others.
Basically, you can only trust things manufactured before "going online" became a thing.
Data exfiltration through audio / fan speed / LEDs blinking / power draw / etc. simply doesn't.
I think that a discussion about metric shitloads of networking gear being compromised is not the place to make fun of the few that didn't compromise on security.
There's a place for offline/airgapped devices and private keys (PGP keys, seeds, whatever) being generated by throwing dice.
If anything all these backdoors do show that math/cryptography do work. The NSA's budget may be 100% of the US GDP, they still wouldn't be changing Sun's gravity or the math behind cryptography.
The joke today is on those who kept making fun of those who didn't trade security for convenience.
It's their job.
They're carefully watching and cataloging any communications technology they can't compromise.
[0] https://www.theregister.com/2021/02/12/supermicro_bloomberg_...
What's your source on this?
Let's all get back to reality now. They LIE and influence US politics to preserve their operations (not political, it's self-preservation).
If you see something like "100 former intelligence agents sign letter saying ..." then run, RUN!
[1] https://en.wikipedia.org/wiki/Prelude_to_the_Russian_invasio...
>... this is not new... It states in the article that this thesis from Jacob R. Appelbaum was released March 25, 2022. The only thing that makes these 'new' (?) is that electrospaces discussed September 14th
https://twitter.com/vxunderground/status/1703995620250325405
Electrospaces article discussion: https://news.ycombinator.com/item?id=37562225
If you have the chip, you can find the backdoor... if you cannot find it, you can't conclude its actually there. There's ways to analyse chips to see if they are backdoored. Decapping, fuzzing and whatnot. Simply basing such of a conclusion from a few lines in a document seems a bit off to me...
Did anyone actually find the thing??
[1] https://www.youtube.com/watch?v=wwRYyWn7BEo
[2] https://www.wsj.com/articles/if-you-play-videogames-china-ma...
[3] https://gizmodo.com/tiktok-cfius-draft-agreement-shows-spyin...
[4] https://www.cnn.com/2019/12/30/politics/army-tiktok-banned/i...
[5] https://www.theguardian.com/world/2014/mar/19/us-tech-giants...
However, as interesting as this revelation is, it's unfortunate that Snowden decided to defect to the Russians and share his stolen cache of top secret documents with them and China, using Western journalists as ideological cover. I look forward to the day when he is brought to justice for treason.
Regardless of your thoughts on the guy, nobody deserves what Assange has gone through in custody. Same with Manning.
Personally I don't think it was intentional on his part to get stuck in Russia, just a bad error. But he is certainly living there by their "good will" now, and it shows in his public behaviour.
Not trashing your host is probably wise, but given his experience with the US government, he probably no longer subscribes to the naive worldview that Putin (or Xi) are uniquely bad, just bad in their own ways and responding to the world with their nation's interests (and their legacies) in mind.
The fact Snowden is still alive pushing anti-US propaganda shows the difference, if the roles were reversed he would have been assassinated long ago.
He did not do that. Instead, he's living a comfortable life in the bowels of a country that is committing vicious, daily war crimes. I don't hear him make a peep about kidnapped Ukrainian children, or the civilians that Russia tortures and kills. He's not a principled activist who's suffering for the cause of freedom at any cost, he's now just a loyal Russian citizen who opportunistically committed a massive act of espionage a long time ago.
> I don't hear him make a peep about kidnapped Ukrainian children, or the civilians that Russia tortures and kills.
Can you really not see why that would be a bad idea? He's kind of tied up here, if he doesn't want to end up dead by somebody's hands.
> opportunistically committed a massive act of espionage a long time ago
How exactly do his past actions go from heroic to a "massive opportunistic act of espionage" because of his actions in the present?
He's been arrogantly self-serving from the start, and it's rather disappointing that some people still haven't grown out of their juvenile phase of blind hero worship.
Maybe if he was as self-serving as you thought he'd continue to live a comfortable life while destroying the rule of law that we pretend to have instead of having to abandon his home and never again be able to see his country or friends again?
He would just be in solitary confinement for the rest of his life, and there's a much better chance the leak to the public would have never been completed in the first.
And again, I'm not saying he would've been protected as a whistleblower, just that he had to choose one or the other: take his chances as a martyr for freedom, or escape all consequences and with them, his legacy as a respectable historical figure. He chose the latter.
Manning spent most of her time in solitary, and it's not listed in your citation.
Not even remotely true.
Yes, Russia are the bad guys, but we have done some truly heinous things as well. Snowden revealed a little of the crimes we commit and you're ready to wash him away because it hurts your position that we are somehow morally superior to other countries?
you'll be a loyal citizen to a nation state that spies on its people, while torturing and killing other people for no good reason.
why is going to jail for whistleblowing honorable? that makes no sense to me.