Juniper breach mystery starts to clear with new details on hackers and U.S. role
121–130 of 180 posts
Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#122Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#123Earlier quoted context omitted.
Open- and FreeBSD deserve more usage
Well, JunOS is FreeBSD -- the magic is in their proprietary hardware. I'm not aware of open/whitebox solutions that can compete
Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#124It's too bad Soekris is gone. For home and small-corp networks they made an awesome router and you could put your favorite Linux on there. Trustable devices are hard to find. Also, if anyone knows of a Soekris like alternative I'm all ears, what to do if my 6501 and my spare 6501 die. Edit: this http://www.soekris.com/products/net6501-1.html
Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#125This is ground breaking. The NSA made Juniper use a backdoored algorithm, and a foreign adversary hacked into Juniper and changed the backdoor key (essentially). That's surreal.
Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#126It's too bad Soekris is gone. For home and small-corp networks they made an awesome router and you could put your favorite Linux on there. Trustable devices are hard to find. Also, if anyone knows of a Soekris like alternative I'm all ears, what to do if my 6501 and my spare 6501 die. Edit: this http://www.soekris.com/products/net6501-1.html
IIRC Soekris basically decided they couldn't make any money. Is PC Engines acceptable as an alternative? E.g. https://www.pcengines.ch/apu4d4.htm It does have limitations, e.g. only 1 GHz clock speed. The bigger problem for all manufacturers is the chip shortage. E.g. most of PC Engines stuff is "expected ~ 2022". But there may be some stock at their distributors. https://www.pcengines.ch/newshop.php?c=4 Edit: if you…
Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#127It's too bad Soekris is gone. For home and small-corp networks they made an awesome router and you could put your favorite Linux on there. Trustable devices are hard to find. Also, if anyone knows of a Soekris like alternative I'm all ears, what to do if my 6501 and my spare 6501 die. Edit: this http://www.soekris.com/products/net6501-1.html
https://protectli.com/
Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#128> Members of a hacking group linked to the Chinese government called APT 5 hijacked the NSA algorithm Just wanted to acknowledge how brilliant that is. They could have made any other code change, but it was genius using NSA's own backdoor. NSA advocated for that backdoor to be included in the standards. The US government then would be embarrassed and would want to cover up any issues related to it, including the fact…
Steal the other guy's stuff is no longer brilliant, it's not even surprising. It shouldn't have been surprising to "brilliant" people advocating back doors back in the day.
Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#129Re: Juniper breach mystery starts to clear with new details on hackers and U.S. role
#130This is ground breaking. The NSA made Juniper use a backdoored algorithm, and a foreign adversary hacked into Juniper and changed the backdoor key (essentially). That's surreal.
Not surreal at all. It's exactly what everyone in the cryptography communuty said would happen if people listened to the government and added backdoors for the "good guys". Hope this sort of thing keeps happening. I want more concrete examples to cite when people defend this stupidity. I want the governments of the world to be too embarrassed to talk about cryptography ever again, least of all demand backdoors into p…