Live data from Hacker News

CloudFlare’s last Warrant Canary was published over a year ago

cloudflare.com

101–110 of 145 posts

Re: CloudFlare’s last Warrant Canary was published over a year ago

#101

Earlier quoted context omitted.

Why wouldn’t they fund the worlds largest MITM attack?

Cloudflare is not a MitM attack. By that same logic AWS would be an even bigger MitM attack.

That's a lie. Cloudflare decrypts HTTPS connections

Re: CloudFlare’s last Warrant Canary was published over a year ago

#102

Earlier quoted context omitted.

These threads amuse me. If adamgamble's speculation were the case, I'd go to jail for things I'd have illegally signed in our SEC disclosures attesting to the sources of our revenue and any government contracts. Suffice it to say, I like not being in jail. It's really, really hard for public companies to be part of some grand conspiracy for so many different reasons. So… once we went public I kind of thought this sil…

Hi, kind of hijacking this conversation but as Cloudflare is unfortunately routing the majority of websites I visit I have to ask this: Can you guarantee my Firefox browser will keep on working on 'the open internet' now Chrome moves towards "Web Environment Integrity" and Safari towards "Private Access Tokens" and Cloudflare is supporting and implementing such technologies on scale? I intent to not participate in th…

How could Cloudflare guarantee websites dont implement WEI in their codebase. that makes no sense

Re: CloudFlare’s last Warrant Canary was published over a year ago

#103
Maybe I’m just getting old and distracted, but I feel like CloudFlare went from “whoa some HN pros are doing great CDN work with some serious chops and an underdog work ethic” to “is it possible to never connect to them” like, really fast.

Re: CloudFlare’s last Warrant Canary was published over a year ago

#104
post #51

Earlier quoted context omitted.

Nothing is stopping them from lying. Signaling that their infrastructure has been compromised is kind of a weird lie for them to make though...

The SEC could throw me in jail. And, sure, you could believe that the FBI or whoever could tell the SEC what to do. We have European and Asian investors too, so their financial regulators could also sue me personally for lying. Perhaps the FBI/CIA/NSA control them too? Gets tricky to believe: the bigger the conspiracy the faster it falls apart. It's really, really hard to be part of some grand conspiracy as a public…

The concern isn't a grand conspiracy, it's that you've been coerced to comply with the kind of surveillance overreach that US intelligence and enforcement agencies have repeatedly engaged in.

Cloudflare isn't the bad guy in this scenario, it's the hostage.

Re: CloudFlare’s last Warrant Canary was published over a year ago

#105

I love cloudflare, but honestly I assumed they WERE the CIA/FBI not just compromised by them. It would be the perfect front company for the government.

These threads amuse me. If adamgamble's speculation were the case, I'd go to jail for things I'd have illegally signed in our SEC disclosures attesting to the sources of our revenue and any government contracts. Suffice it to say, I like not being in jail. It's really, really hard for public companies to be part of some grand conspiracy for so many different reasons. So… once we went public I kind of thought this sil…

Ha thanks for the reply, was mostly just joking didn't expect a reply from Matthew directly :). I appreciate that you're active on HN though!

Re: CloudFlare’s last Warrant Canary was published over a year ago

#106
post #56

Earlier quoted context omitted.

Nothing stops anyone from lying to you. In this case it would be considered fraud if the lie was discovered or leaked. Which is one of the rationales on why courts cannot compel a company to lie and post false warrant canaries, because it would incriminate them.

Courts absolutely can and do compel companies to maintain warrant canaries. Fraud? Fraud against who? For what damages?

Fraud against paying customers, if they can demonstrate they wouldn't have paid if the company didn't lie. Also competitors if they can demonstrate they lost business due to the lie.

Re: CloudFlare’s last Warrant Canary was published over a year ago

#107

Earlier quoted context omitted.

Cloudflare is not a MitM attack. By that same logic AWS would be an even bigger MitM attack.

By that same logic, it would not be surprising to discover AWS working with the feds either.

You're right. That definitely wouldn't be surprising!

Re: CloudFlare’s last Warrant Canary was published over a year ago

#108

Maybe I’m just getting old and distracted, but I feel like CloudFlare went from “whoa some HN pros are doing great CDN work with some serious chops and an underdog work ethic” to “is it possible to never connect to them” like, really fast.

I think there was 10 or so years in the middle there :)

Re: CloudFlare’s last Warrant Canary was published over a year ago

#109
post #51

Earlier quoted context omitted.

Nothing is stopping them from lying. Signaling that their infrastructure has been compromised is kind of a weird lie for them to make though...

The SEC could throw me in jail. And, sure, you could believe that the FBI or whoever could tell the SEC what to do. We have European and Asian investors too, so their financial regulators could also sue me personally for lying. Perhaps the FBI/CIA/NSA control them too? Gets tricky to believe: the bigger the conspiracy the faster it falls apart. It's really, really hard to be part of some grand conspiracy as a public…

> It's really, really hard to be part of some grand conspiracy as a public company.

No it's not. Twitter and Facebook have had defacto government censorship collusion, as suspected by the paranoid.

For years and years it was dismissed as conspiracy, but clear evidence has now come out that it was happening in these public companies.

Re: CloudFlare’s last Warrant Canary was published over a year ago

#110
post #55

It's weird to me people think warrants are still used. No warrant is needed by any government agent to read your email that is over six months old and the major providers just give them a backdoor so as not to waste any time/money with requests. Who is going to stop them from doing that with anything else? The supreme court? Good luck with that belief system. You think the NSA ever stopped just because they were disc…

Source?
Post reply on HN