How do you end up in this limbo where you need critical infrastructure to play judge?
How do you end up in this limbo where you need critical infrastructure to play judge?
So they're criminals as far as the US and allies are concerned, but de facto not criminals where they live. If they're going to be locked out of the system, it has to be by the infrastructure, because their government has no interest in stopping them.
Do you ever think it's weird that we have gone through web 1.0, web 2.0, semantic web, intertubes clogged with spam bots, web 3.0: crypto edition, and the dawn of AI scraping, and we still haven't figured out these issues?
Would you want authoritarian governments to be able to demand Cloudflare stop serving those they consider criminals that are outside their borders?
International law is messy.
There is a procedure to get a foreign case recognized in the US, too, but it has to be serious, and it's not an easy process.
I again ask: is it desirable for any of those countries to be able to unilaterally force a company to enforce its laws regardless of where the individual in question is?
If CloudFlare chooses to do business in China, that's a choice they're making and it comes with consequences.
Maybe they can offer service where customers will only be served from equipment outside of China, maybe that's not something they choose.
They can easily order it to reveal the origin server of a website, or the sign-up IP address of the account, or to stop providing services to one.
To answer your question: most malware actors can be traced back to Russia, what exactly do you think "sending the cops" after them will accomplish and if the answer is "nothing", then does that mean you don't think they can be called criminals?
I know, because I bought RX stuff from India and it did not get labelled as medication
Our legal system is unfortunately not perfect, which is why it matters what infrastructure providers do.
Do they enable criminals by shielding them from the police? Or do they have policies in place that prevent abuse of their service?
With Cloudflare, I'm pretty sure they lean towards the former.
(This is also why, whenever you hear about e.g. police stings on Tor forums, they never mention requesting courts to issue warrants to ISPs for collection of e.g. traffic-analysis-correlation info about locations of servers hosting illegal content. Instead, this de-anonymization step is something they always have to achieve extra-judicially, usually by contracting a private network threat intelligence firm.)
Is the website illegal? Or maybe the police need to deal with spam calls more sensibly. Presumably they can trace where the calls are coming from in real life