Live data from Hacker News

Wikileaks Releases New 'Insurance' Files

facebook.com

21–30 of 115 posts

Re: Wikileaks Releases New 'Insurance' Files

#21
post #5

Earlier quoted context omitted.

Psh, everyone knows that it only takes the span of a commercial break to crack military-grade double-layered crypto if you use a logic bomb.

So why don't you do it then? You would be famous for sure.

I would, but I don't know how to write a GUI interface in Visual Basic :(

Re: Wikileaks Releases New 'Insurance' Files

#22

This seems like a good plan to me, but can any crypto pros poke holes in it?

Clearly, just use a standard solution (PGP). Don't do this with a weak passphrase, and use key-strengthening (bcrypt etc.) just in case. Assange is pretty good at crypto, so I'd expect Wikileaks to broadly get this right. Also, they already got in trouble for reusing a password ( http://boingboing.net/2011/08/31/wikileaks-guardian-journali... ), so I'm pretty sure they won't do that again...

No, the key strengthening is probably built-in.

Also, most likely it doesn't use a passphrase, but a big generated gpg key (with a passphrase protecting it, of course)

Re: Wikileaks Releases New 'Insurance' Files

#24
post #10
post #7

Earlier quoted context omitted.

When you're up against the US government with all of their cracking hardware, your passphrase won't be simple.

Unless the insurance files are bluffs, you may as well give the US government the keys yourself so that they know you are not bluffing. The threat that makes the insurance files work is that the public/press and/or foreign governments may get the keys.

Under most circumstances I imagine I would want my opponent to be uncertain of what I have. Letting them know the contents gives them the ability to accurately assess damages and prepare responses.

Re: Wikileaks Releases New 'Insurance' Files

#25
post #10

Earlier quoted context omitted.

Unless the insurance files are bluffs, you may as well give the US government the keys yourself so that they know you are not bluffing. The threat that makes the insurance files work is that the public/press and/or foreign governments may get the keys.

The problem with doing that is that the US government might release the information themselves, just dampened a bit with some PR, so the insurance files aren't worth anything and so WikiLeaks don't get the credit.

Which would generally imply that they're not very good insurance files.

I had the last one for a bit, and deleted it just now because I'm seriously doubtful these things are anything more then /dev/urandom piped into a file.

Re: Wikileaks Releases New 'Insurance' Files

#26

Earlier quoted context omitted.

My roomate's mother makes $87 hourly on the laptop. She has been fired for 7 months but last month her pay was $21739 just working on the laptop for a few hours. Read more here=====>>>>>=====w­w­w.j­o­b­s­3­4.c­o­m

If you want that domain to die please continue to spam this forum. Of all the places on the web this is probably the least smart to pull stunts like this.

Does anyone actually fall for this stuff ?

Re: Wikileaks Releases New 'Insurance' Files

#27

Earlier quoted context omitted.

If you want that domain to die please continue to spam this forum. Of all the places on the web this is probably the least smart to pull stunts like this.

Does anyone actually fall for this stuff ?

ROI: if nobody would fall for it they wouldn't do it...

Re: Wikileaks Releases New 'Insurance' Files

#28
post #25

Earlier quoted context omitted.

The problem with doing that is that the US government might release the information themselves, just dampened a bit with some PR, so the insurance files aren't worth anything and so WikiLeaks don't get the credit.

Which would generally imply that they're not very good insurance files. I had the last one for a bit, and deleted it just now because I'm seriously doubtful these things are anything more then /dev/urandom piped into a file.

What gives you any indication of that? There's no way of telling a ciphertext from random bytes.

Re: Wikileaks Releases New 'Insurance' Files

#29
post #9
post #6

why on earth is this a link to Facebook of all things?

I don't understand why they don't post it on their own site.. but well.. here is twitter: https://twitter.com/wikileaks/status/368426845735120896

Thanks, I can't access Facebook from here. Might as well post the direct torrent URLs:

3,6GiB (20130815-A):

    http://wlstorage.net/torrent/wlinsurance-20130815-A.aes256.torrent
    magnet:?xt=urn:btih:e0a092ac0f9b56c886c41335ca36f34aaed6b80c&dn=wlinsurance-20130815-A.aes256&tr=udp%3A%2F%2Ftracker.publicbt.com%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.istole.it%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.ccc.de%3A80%2Fannounce
49GiB (20130815-B):

    http://wlstorage.net/torrent/wlinsurance-20130815-B.aes256.torrent
    magnet:?xt=urn:btih:95381785c3fb446df35c5b4a8e5ef167dcb72011&dn=wlinsurance-20130815-B.aes256&tr=udp%3A%2F%2Ftracker.publicbt.com%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.istole.it%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.ccc.de%3A80%2Fannounce
349GiB (20130815-C):

    http://wlstorage.net/torrent/wlinsurance-20130815-C.aes256.torrent
    magnet:?xt=urn:btih:091eed7793fdb48c5bd8488431e888dde41a889f&dn=wlinsurance-20130815-C.aes256&tr=udp%3A%2F%2Ftracker.publicbt.com%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.istole.it%3A80%2Fannounce&tr=udp%3A%2F%2Ftracker.ccc.de%3A80%2Fannounce

Re: Wikileaks Releases New 'Insurance' Files

#30
I wonder what are the risks associated with downloading and sharing such torrents.

Evidently, anyone getting them becomes a highly visible target and once the content of these torrents is known, you could become involved in the distribution of classified data.

Even if the content is not known, it could be viewed as an 'unfriendly' act and could make you become a "target of interest" to some zealous 3-letter agency...

Maybe I'm too paranoid. On the other hand, maybe not enough. Hard to know these days.

Post reply on HN