RetroShare: For the Paranoid in You
linuxadvocates.com
linuxadvocates.com
When the general Petraeus scandal happened, I was thinking that if he would've used Retroshare, which is P2P and encrypted, to talk to his mistress directly, he wouldn't have been found out (unless his PC had a keylogger).
Now if only someone made a prettier interface for it, so "normal" users would be compelled to use it.
EDIT: More info on its security and privacy models, by the team behind it:
Ideals:
http://retroshareteam.wordpress.com/2012/11/03/retroshares-a...;
On security:
http://retroshareteam.wordpress.com/2012/12/28/cryptography-...;
On privacy:
http://retroshareteam.wordpress.com/2013/01/06/privacy-on-th...;
Distributed chat:
http://retroshareteam.wordpress.com/2012/11/16/distributed-c...;
Or ruin it...
Probably explains why it rarely happens.
You have to apply UX to the development process, such as how a user interacts with features, or the steps involved in each action, or the way the app communicates to the user, or delivering feedback after an interaction is completed. Design influences the software requirements.
It's necessary for designers to collaborate with developers if you want a well designed app... not just a pretty one.
For years Microsoft has been accused of building or allowing back doors in to windows. If that is true, none of these schemes will work, right?
For years now, I have just assumed that my computer is a government spy sitting on my desk. OK, paranoid, no real proof what so ever, and OTT. But, I feel it is wise to assume and act like that is true. Or, know the risk you are taking.
How to be secure on the internet? Don't use the internet.
What if the CIA infiltrated Intel. So the i3 - is a dual core with the 3rd core that belongs to the US, similar to i5 and i7. :-)
- can run while the CPU is off
- isn't controlled by the CPU (except some protocol which is voluntary on the ME side)
- has access to the onboard GPU's framebuffer
- has access to onboard USB and on-chipset NIC
- can access RAM, bypassing the OS (_maybe_ host-controlled, since the only known use is IDE-R)
Scary enough?
On AMD the situation looks safer for now: while they have _two_ embedded controllers with firmware, from what we (coreboot developers) could gather, their reach into the system is much more limited: they could probably DoS the system by killing access to RAM and/or turn off the fans
The kill switch could be anything:
1. Some particular frequency that causes the CPU to malfunction deliberately. Just a 1 bit malfunction is enough. 2. Something delivered via an OS update patch.
...heck, I'm not even 90% sure that compilers don't add backdoors to software (it's not paranoia... but with a 30 y o idea, you can imagine that people have had time to refine it to unimaginable subtlety :) http://cm.bell-labs.com/who/ken/trust.html)
Once you have someone as your "friend", random traffic will go between you and him (the network works as sort of p2p). If that "friend" is actually some government agent/copyright enforcer, you can then have troubles with illegal sharing of files, even when you didn't share them yourself.
This is not theoretical, this actually happened in... Germany or France, I am not sure. Probably France.
Quote from the post: the IP's of the sued user "rechner3" was from an IP Range from the lawyers (Rasch Legal).
The e-mail of the user "rechner3" was "pm.hh.04@gmail" it is possible that pm stands for the anti Piracy Company "ProMedia" hh == "Hansestadt Hamburg".
and other indications that lead to the lawyer company and anti-piracy company.
The maximum value of discussion was 10k. If a lawsuit had been started, this value would have been cut down. There was never a lawsuit to discuss the case and start a prove collection or discussion.
There is only a contract with rechner3 and the anti-piracy company, where rechner3 committed to not use RetroShare again.
rechner3 was never seen afterwards.
It looks like, this was a "forged" case to be present in the media with a high value sentence.
However, the general point still stands - RetroShare is routing random traffic through you, if you happen to be near the nodes.
This makes it another reason to use Bitmessage instead.
What about protocols and implementations such as bitmessage then (p2p network, hosts and nodes share everyone's messages, only intended recipients can decipher messages that are sent to them)? Is there a tacit understanding that encrypting any communication is suspicious ?
Uhm.
Sadly, RetroShare didn't really work for us. The UI is too clunky and the software has too many weird issues, like reindexing all files occasionally.
If it absolutely has to be remote, I’d go for a combined audio/videocall on Skype where one reads out the fingerprint and holds up a (ideally hand-written) sign with it – though I’d still prefer IRL-authentication (plus it’s more fun! :)), and ‘only authenticate keys in real life’ looks like a helpful rule-of-thumb to me.
If you want a system with encryption and deniability, try Bitmessage.