Live data from Hacker News

The NSA’s Hidden Spy Hubs in Eight U.S. Cities

theintercept.com

1–10 of 192 posts

Re: The NSA’s Hidden Spy Hubs in Eight U.S. Cities

#5
post #2

I’d love to see the intercept publish the equivalent for China, Russia, etc. It feels the press has very overindexed into the NSA.

Nice whataboutism.

While I agree China/Russia has the intent, but do they have the ability to conduct wiretapping on this scale? It sounds like the US is uniquely able to do this since so much of the internet's backbones/services reside here.

Re: The NSA’s Hidden Spy Hubs in Eight U.S. Cities

#6
One wonders if a CDN might advertise, "we promise once your data enters our network at our edge locations outside of the US, it does not traverse any AT&T networks while reaching your server inside the US". Same with cloud companies' private networks across regions.

Re: The NSA’s Hidden Spy Hubs in Eight U.S. Cities

#7
post #2

I’d love to see the intercept publish the equivalent for China, Russia, etc. It feels the press has very overindexed into the NSA.

America can't claim to be near the peak of human culture, freedom and civil liberties while also wanting to be compared against places like China and Russia.

Hold yourself to higher standards if you really are No. 1.

Re: The NSA’s Hidden Spy Hubs in Eight U.S. Cities

#8
post #6

One wonders if a CDN might advertise, "we promise once your data enters our network at our edge locations outside of the US, it does not traverse any AT&T networks while reaching your server inside the US". Same with cloud companies' private networks across regions.

Given how peering is implemented among backbone providers, I don't think that is technically possible today.

Re: The NSA’s Hidden Spy Hubs in Eight U.S. Cities

#9
post #6

One wonders if a CDN might advertise, "we promise once your data enters our network at our edge locations outside of the US, it does not traverse any AT&T networks while reaching your server inside the US". Same with cloud companies' private networks across regions.

Couldn't the NSA start working with other ISPs than AT&T?

I'd really like to see CDNs like CloudFlare start requiring Cloud Origin encryption; e.g. what CloudFlare calls "Full SSL" -- https://support.cloudflare.com/hc/en-us/articles/200170416-W.... Right now, you can do TLS termination ("Flexible SSL"), which end-users aren't aware of -- they see a padlock -- and I'm sure the NSA doesn't mind.

Re: The NSA’s Hidden Spy Hubs in Eight U.S. Cities

#10
post #6

One wonders if a CDN might advertise, "we promise once your data enters our network at our edge locations outside of the US, it does not traverse any AT&T networks while reaching your server inside the US". Same with cloud companies' private networks across regions.

Trouble is, internet exchanges are often flat insecure layer 2 networks that operate on trust. Anyone on that network can suddenly decide to advertise anyone else's address space, and start receiving traffic.
Post reply on HN