Live data from Hacker News

Viewing profile — csoghoian

csoghoian

HN member
Joined
Sat, Sep 24, 2011, 8:45 PM UTC
HN karma
256
Public activity
44 items

About csoghoian

No profile information was provided.

Recent public activity

  1. comment
    Comment #38858280

    The successor to Do Not Track is the Global Privacy Control, which companies are required to respect in several states, including California and Colorado. Support for GPC is alread…

  2. comment
    Comment #28763520

    The Open Technology Fund provides free security audits for open source projects. Apply here: https://apply.opentech.fund/red-team-lab/

  3. comment
    Comment #12960044

    DHS is a law enforcement agency, which regularly uses surveillance techniques, some of which exploit security flaws in devices and software. When you share information about securi…

  4. comment
    Comment #12958598

    So you didn't tell the Federal Trade Commission, even though they previously investigated (and punished) HTC for doing something similar?

  5. comment
    Comment #12957867

    This seems very similar (or perhaps even worse) than the fact pattern in the HTC/Carrier IQ case. https://www.ftc.gov/news-events/blogs/business-blog/2013/02/... Did you provide th…

  6. comment
    Comment #11609257

    I think that some webcam indicator lights are vulnerable to remote disabling. Although it is certainly possible that some are not, I and most other users have no way of knowing whi…

  7. comment
    Comment #11609085

    1. My employer, the ACLU, filed two comments in the Rule 41 process. The first, before public comments were even solicited, resulted in DOJ dropping one of their proposed changes t…

  8. comment
    Comment #11606642

    I've researched this issue extensively, and I've not found a case before where a thousand people in the same place were searched pursuant to a single search warrant, let alone a th…

  9. comment
    Comment #11606596

    The FBI has been using malware since at least 2003 [1], probably a few years before that. Today, the FBI has a dedicated team, the Remote Operations Unit, based out of Quantico, wh…

  10. comment
    Comment #11606549

    This isn't just about the district where the judge is based. There is also the bigger question of whether or not judges should be authorizing bulk hacking operations. The three Tor…

  11. comment
    Comment #11372550

    Pay an award booking service to find you the best flights possible. There are several out there, and they know a lot more than you about how to find obscure flights/routing. it's w…

  12. comment
  13. comment
    Comment #11328134

    Actually, weev neither wrote the script nor ran it. Those were done by his codefendant. Weev took the data provided to him by his codefendant and gave it to Gawker.

  14. comment
    Comment #9529376

    The Federal Trade Commission is an independent agency. They don't take orders from the President. (I know, because I worked there for a year)

  15. comment
    Comment #9149198

    You might want to look at this: https://dnshistory.org/dns-records/mail.clintonemail.com http://whois.arin.net/rest/net/NET-24-187-234-184-1/pft

  16. comment
    Comment #9104936

    You say "Redphone? Whisper? and various other projects - while very cool - didn't achieve even as much popularity as GnuPG" The Axolotl protocol that was created for Whisper System…

  17. comment
    Comment #9012570

    I pitch stories regularly to reporters. Dan is by far one of the best reporters in the business, and is the person I go to whenever I have something that is interesting, but far to…

  18. comment
    Comment #8604897

    The US Marshals are not the only federal law enforcement agency doing something like this. According to documents I obtained through a FOIA in 2012, ICE has purchased an airbourne …

  19. comment
    Comment #7302873

    As one of the complainers (and the person who filed the bug you linked to), I'm happy to see Google make some progress here. I'm even happier to see that they hired Adrienne Felt, …

  20. comment
    Comment #6663129

    Why wouldn't the FBI or NSA just demand the encryption keys and then sign their malware?

  21. comment
    Comment #6611780

    The government obtained a 2703(d) order for the stored non-content data of a particular user (suspected to be Snowden, but redacted from the court documents). They then obtained a …

  22. comment
    Comment #6050193

    Yahoo still doesn't use HTTPS by default, for email or search. Not using HTTPS is huge, gift-wrapped present to the NSA. It also means that the NSA can get Yahoo users' communicati…

  23. comment
    Comment #6028870

    Having worked at the FTC for a year in the team that goes after companies for violating consumers' privacy, I can comfortably say that you are 100% right on that point. The FTC (un…

  24. comment
    Comment #5992252

    If Syrian rebels aren't using computers, why would pro-government forces bother to send them malware? See: https://www.eff.org/deeplinks/2012/12/iinternet-back-in-syri... Your unsu…

  25. comment
    Comment #5951239

    There appears to be a bit of a conflict between the cardinal rule you were taught when you worked at NSA of not collecting information on US persons with the current practices of t…