Snowden Used Low-Cost Tool to Best N.S.A
nytimes.com
nytimes.com
They're interesting reads and pretty short.
http://www.geek.com/news/wikileaks-hypocritical-confidential...
"Through his lawyer at the American Civil Liberties Union, Mr. Snowden did not specifically address the government’s theory of how he obtained the files, saying in a statement: “It’s ironic that officials are giving classified information to journalists in an effort to discredit me for giving classified information to journalists. The difference is that I did so to inform the public about the government’s actions, and they’re doing so to misinform the public about mine.”"
It's pretty on point. I'm going to believe he wrote it himself, as it's just the right amount of factual, snarky prose that I'd expect from a sysadmin!
Evidence presented during Private Manning’s court-martial for his role as the source for large archives of military and diplomatic files given to WikiLeaks revealed that he had used a program called “wget” to download the batches of files. That program automates the retrieval of large numbers of files, but it is considered less powerful than the tool Mr. Snowden used.
So the tool wasn't wget. curl, perhaps?
wget is too brittle, not extensible enough, and not as maintainable as a nice python script.
Manning did not have the tech skills of Snowden though, she wasn't neccesarily doing things in the most effective or elegant ways, but it worked.
Or maybe Kermit? Half-smiley; only if he's a masochist. http://www.kermitproject.org/ckscripts.html
Woah!
You mean he could just automatically download without even using a browser?? And he didn't need an expensive tool to do it? On a normal computer? People like that are dangerous, maybe we should be licensing that kind of knowledge...
Or regulate it until it's illegal.
†http://www.washingtonpost.com/blogs/worldviews/wp/2013/07/30...
I totally agree with you that the apparent openness of the intelligence networks information systems is the most newsworthy aspect of this. I don't think that journalists are really knowledgeable at all about intelligence community is supposed to handle compartmentalization. They think the NSA handles things just like they do at their paper.
(The sad part is that apparently, the journos are right.)
The problem of these loopholes allowing classified information to leak was exposed with Bradley Manning. Yet, even in that case, I didn't hear any calls from the press or public to see head further up the chain roll.
But, that should have been enough to highlight the holes in our networks. Apparently it wasn't, and exactly the same thing has happened again.
I want to see heads roll right up the chain for this lack of duty with respect to protecting our national secrets.
By the way, none of the above is intended to imply that I think what the NSA has been doing is legitimate. I am glad that Snowden came public with this information. However, how do we know that other, more critical secrets haven't been sold directly the the Chinese or North Koreans? We only found out about the Snowden leaks because he made them public.
Crawlers tend to die when challenged with authentication. Right... But then they go on to make it worse by saying if he hadn't used this supposed "crawler" that their ultra-fancy security would have detected the intrusion.
Really? Really.
I call bullshit. He had access to all these servers, all he had to do was netuse some windows shares and fill up his thumbdrive. Probably took a total of 45 minutes.
I feel bad for the. (wha?) No I dont!
This, to me, is the most laughable and amazing part of the article. How did they think they had any security at all if this was the case?
"He would have been caught, if he had done it right in front of us!"
What's striking is how easy it was for him to get access to all these documents. It probably means that most of things we hear in the news is already old news for other big government / criminal organizations.
The Post did an article on Manning and wget back in July 2013: http://www.washingtonpost.com/blogs/worldviews/wp/2013/07/30...
Look, NYT: I want to read some text, you want to put some ads next to it. There has to be some solution that is less bad for both of us.
http://www.patheos.com/blogs/geneveith/2011/08/the-murray-ge...
The Congressional staffer says, wow, their coverage of politics is laughable, but I really enjoy their insightful business analysis.
The businessman says, sheesh, they can't get anything right about the world of business. I sure like their great tech coverage, though.
I'm quite sure you should deeply mistrust all media reporting on everything. I see no reason to think that tech reporting is somehow different in how wrong they get it.
And by referring to whatever it is as a "low-cost tool", they're probably just making up facts. It's far more likely that Snowden used one of the many no-cost tools that are used every day by people who work with and on computers.
This article is pretty much a no-op other than creating a dangerous mystique around people who access the internet through obscure tools that don't have an icon on the Mac or Windows stock desktop.
In Pvt. Manning's trial, the governments' case was that Manning's wget use was a CFAA violation. Manning was convicted of a CFAA violation.
And yeah, at the Manning trial, the government lawyers repeatedly explicitly brought up the fact that wget was an unusual tool that doesn't have an icon on the desktop, trying to make it seem sinister.
And yeah, it is frightening.
(I sat in on several days of the trial as an observer).
Seems to me we be better at hiring Google for such an office rather than NSA, we might even get better ethics as a side benefit
https://www.eff.org/deeplinks/2013/07/manning-verdict-and-ha...
Almost the exact same words used by Al Pacino in the movie The Recruit, where Colin Farrel plays an agent who steals information from the CIA.
Goes to show that many corporate security is so focused on keeping outsiders out and leave a wide gaping hole for insiders.