Earlier quoted context omitted.
At the moment, the NSA still permits use of 2048-bit RSA for classified information up to SECRET. It would be highly questionable for them to do so if they knew of easily exploitable weaknesses, as they're taking the chance that other governments won't find them. Remember, the NSA's mandate is twofold: They are a signals intelligence agency, but they are also charged with protecting government communications, much of…
That's not the only form of "exploit" http://www.scip.ch/en/?vuldb.2721
An encrypted message to Edward Snowden
121–130 of 164 posts
Re: An encrypted message to Edward Snowden
#122If you look closely, about halfway down, in the ciphertext you can almost make out some non-random parts: http://pastebin.com/q7mxqRn7
Re: An encrypted message to Edward Snowden
#123Earlier quoted context omitted.
> Proof that an Ars Technica reader can amount to something. Cute. I'm sure he read Dilbert a few times too. It takes quite an astonishing level of arrogance to suggest that being an "Ars Technica reader" was an important part of his identity, as that article did. Internet nerd makes a few comments on tech website, huge shock there.
I'm pretty sure he was being sarcastic, playing on the fact that Wired and Ars Technica are sort of competitors.
Re: An encrypted message to Edward Snowden
#124Snowden, just remember that Kevin Poulsen and Adrian Lamo helped the US Government in catching Bradley Manning. EDIT: Also, a pretty safe way to carry an interview would be VPN + Tor + Bitmessage. EDIT2: Users sneak and tlb claim Tor isn't safe because of timing attacks. Read below.
http://online.wsj.com/article/SB1000142412788732467720457818...
That might be another reason that TOR isn't safe. You don't ever know who any of the other servers belong to ... and the staff at the Exit Node can (and has) read anything. I wouldn't bet my life on software 'originally sponsored by the U.S. Naval Research Laboratory'.
Re: An encrypted message to Edward Snowden
#125Re: An encrypted message to Edward Snowden
#126Snowden, just remember that Kevin Poulsen and Adrian Lamo helped the US Government in catching Bradley Manning. EDIT: Also, a pretty safe way to carry an interview would be VPN + Tor + Bitmessage. EDIT2: Users sneak and tlb claim Tor isn't safe because of timing attacks. Read below.
A couple of days ago I read that 'As of 2012, 80% of the Tor Project's $2M annual budget comes from the United States government.' http://online.wsj.com/article/SB1000142412788732467720457818... That might be another reason that TOR isn't safe. You don't ever know who any of the other servers belong to ... and the staff at the Exit Node can (and has) read anything. I wouldn't bet my life on software 'originally spons…
Re: An encrypted message to Edward Snowden
#127Earlier quoted context omitted.
Only use your private key with Tinfoil Hat Linux on an offline air-gapped computer: http://tinfoilhat.shmoo.com/ I recommend disconnecting your monitor and only receiving output by having it blinked out at you through your capslock light on your keyboard. Bonus points if you can get your hands on some TEMPEST hardened hardware, and/or tamper-resistant hardware. Anything less will leave you vulnerable to the black hel…
Well, if you can do that (program a computer via a blinking keyboard LED in Morse code to avoid Van Eck phreaking,) you're well on your way to discovering the lost Nazi gold in the Philippines.
Re: An encrypted message to Edward Snowden
#128Earlier quoted context omitted.
I'm sorry you've found yourself in the crossfire. How do you feel about Snowden?
He's a whistleblower of historic importance. That Verizon FISA order alone has exposed deception at the highest levels of government. Proof that an Ars Technica reader can amount to something.
Re: An encrypted message to Edward Snowden
#129Snowden, just remember that Kevin Poulsen and Adrian Lamo helped the US Government in catching Bradley Manning. EDIT: Also, a pretty safe way to carry an interview would be VPN + Tor + Bitmessage. EDIT2: Users sneak and tlb claim Tor isn't safe because of timing attacks. Read below.
Re: An encrypted message to Edward Snowden
#130Earlier quoted context omitted.
I2P has protection against timing attacks. Bitmessage has deniability, but if the receiver end is compromised or untrustworthy, then the deniability is gone, and the timing attack might be possible. Combining Bitmessage and I2P would be solution, I think, but I don't know of any Bitmessage nodes on I2P.
Bitmessage doesn't have forward secrecy.