A $200 privacy device has been killed, and no one knows why
arstechnica.com
arstechnica.com
[1] https://en.wikipedia.org/wiki/Haystack_(software)
ProxyHam seems like a neat combination of existing technologies, but it was just a Raspberry Pi + WiFi + 900Mhz interface. Probably was fun to make, but not necessarily something that deserves a lot of hype by Wired etc. Maybe the developer decided it wasn't worth all the trouble.
No reason to not release the schematics, unless they were embarassingly bad.
You scarcely need to read (or listen to) the stories, though I recommend you do.
IN IRAN, NEW SOFTWARE TAKES ON INTERNET CENSORSHIP Transcript Friday, May 14, 2010 http://www.onthemedia.org/story/132777-in-iran-new-software-...
IS HAYSTACK TOO GOOD TO BE TRUE? Transcript Friday, September 10, 2010 http://www.onthemedia.org/story/132909-is-
AFTER HAYSTACK: SPEECH AND PRIVACY ONLINE Friday, September 17, 2010 http://www.onthemedia.org/story/132917-after-haystack-speech...
It was a 900mhz wifi router with some wishy washy "security" speak slathered on top of it to gain attention.
If you want a 900mhz wifi router, here: https://www.ubnt.com/airmax/nanobridgem/
Go nuts. In fact, look at all of the other really cool stuff that ubiquity sells!
My guess would be that this talk was either pulled because the author got in a little over their head, or the organizers of the event realized that this was just going to be a talk about a DIY wifi access point.
BTW, proxyham guy: COOL PROJECT! Wifi access points are really fucking cool, and building your own is really fucking cool too. Everybody should build one.
Downside is the admin system needs Java and runs as a service you browse to (and pretty sure there's a mongo dependency in there). Suppose it makes more sense in a dedicated office environment.
Works great! Had to use a high power flashlight at night to get the angle perfect, but it sure beats satellite internet once we got it dialed.
Based on what?
> believe me, the FCC is excellent at this
Any HAM radio operator or junior electrical engineer is excellent at this. Triangulation isn't magic. http://www.homingin.com/beginr.html#toc
Based on the fact this got any media coverage whatsoever. Idea is cool, from the technical perspective of bridging from one frequency range to another (and there's obviously money to be made in it, as the equipment he used is manufactured by Ubiquiti for something similar to this purpose), but really is a very poor way to try and keep a low profile or make yourself less traceable/make an easier escape.
> Any HAM radio operator or junior electrical engineer is excellent at this. Triangulation isn't magic. http://www.homingin.com/beginr.html#toc
Right, I think it drives home just how relatively straightforward it is, not to say the FCC has a monopoly on the technique by any standards. I had mentioned the FCC, as this tends to be their domain, and I've been on the wrong side of their triangulation once in my youth. ;)
http://blog.erratasec.com/2015/07/proxyham-conspiracy-is-non...
That would be interesting.
You'd still need to be careful about device IMEI, how you get your SIM card and load with credits.
How would that potentially work? Well, I'm no radio engineer but I know it's possible. Normally you receive signals of varying strength as users move throughout your cell. I'm fairly certain that sub-cell positioning metrics are already developed on the change between these various known signal states and directions. One would simply pick outliers (eg. with constant signal strength, or constant direction).
The towers themselves would just be a mishmash of DSPery and C/C++, however. Probably, anyways.
Edit: Not sure if this is what the parent was referring to, but if the tower software was written in Erlang, it's certainly an interesting coincidence.
This kind of correlation is already in use by mobile networks to narrow the location of emergency calls from handsets that are not sending GPS or other positional data.
This wouldn't work with TDM networks (like GSM).
The cellphone periodically has to produce a timing advance offset, so that the phone can send the signals ahead of its time slot, to arrive at the tower when its time-slot is active.
So effectively, your phone measures light-path distance between the tower and your phone periodically, with the help of the tower (this happens in 1/2 km steps).
This however isn't triangulation, so all my attempts to use TA + tower location to make a fake GPS (way back in 2004) ended up giving me erratic movements as I went up and down (and behind buildings).
Faking Timing Advance would be near impossible, because it uses light speed (on the given day's humidity etc).
I work at Cambium Networks (http://www.cambiumnetworks.com/), one of Ubiquiti Network's biggest competitors on this exact type of radio.
They provide you with a network bridge between two radios. The same effect could be reproduced with 2.5 mi of ethernet cables, except it's wireless. This is definitely nothing new. You still need a connection to the Internet at the other endpoint. How this secures you, I'm not sure. Also these radio's are line-of-sight and the antenna is directional. You could effectively follow the direction the radio is pointing at and find the 2nd radio installation.
From my perspective, this is a useless tool. It physically secures your computer. Plus ProxyHam is extraneous, these radio's work with minimal configuration. ProxyHam sounds more like a wireless broadband radio installer than a privacy device.
> Online anonymity tools certainly aren’t illegal. Tools like VPNs have allowed users to obscure their IP addresses for years. The anonymity software Tor is even funded by the U.S. government. But it’s possible that secretly planting a ProxyHam on someone else’s network might be interpreted as unauthorized access under America’s draconian and vague Computer Fraud and Abuse Act.
http://www.wired.com/2015/07/online-anonymity-project-proxyh...
Instead of RF, I think a point to point IR laser link would make much more sense. It has a very significant limitation in that it would require line of sight (with maybe 1 judiciously placed reflector). But the advantages would be that 1) nobody would be expecting it and 2) it wouldn't be continuously announcing itself to the world.
Why not just jump on someone's wifi connection while spoofing your MAC? Directional antenna client-side for distance. Problem solved.
If you're twitting me about style, I just like "Km" more than "km" :) I mean, "KB" and "Kbps" are pretty standard, no?
Some say "kB" and "kb", rather than "KB" and "Kb".
But maybe k=1000 vs K=1024?
triangulation seems to be a weakness if you can separate it out with other stuff transmitting in that range which I think is quite easy to do with the right hardware.
I've got a couple 2.4Ghz nodes but I'd been willing to try other frequencies. Ubiquiti gear is pretty cheap and nice.
I've got a handheld VHF/UHF yagi which is kind of fun (ISS, SO-50), but a rotor and a roof to put it on would be a lot nicer.
> For the record, I asked Caudill about getting a NSL, Caudill would only answer, "No comment."
Because I reckon that's exactly what happened. Paranoid US government steps in as usual.
It is the Ubiquiti "OS" that keeps me away.
Which if your America is Norman Rockwells and has first amendment protections, etc. seems like it would be prima facie unconstitutional.
But there is that thing in our current system where being a test-case just drains your finances as well putting you at risk of criminal prosecution; even if the order is blatantly wrongful.
If someone is issuing such orders we can only hope that they are currently about to be doxed by whistleblowers.