Live data from Hacker News

Forced Exposure

groklaw.net

151–160 of 430 posts

Re: Forced Exposure

#151

Earlier quoted context omitted.

The thing is, GPG is not bollocks. Barring a major unforeseen discovery, RSA cryptography will easily stand up to five years' retention. If you're worried, use a long keylength. I've been using 4096-bit keys for over a year now and there's no noticeable performance hit for regular comms on my computer. On my phone, 4096 is noticeably slower than 2048, but it still works fine (probably about a 5-10 sec operation to de…

The longest key in the world won't protect you from a FISA warrent.

What.

A FISA warrant doesn't magically render RSA invalid. If all your comms are encrypted, they can get whatever warrants they want, and they still won't be able to read your information unless you surrender your passphrase and key.

Re: Forced Exposure

#152
post #6

Want to keep your rights and freedom? It's time to act, now. History is full of great things going all the way down. Don't wait for the Superman.

> It's time to act, now Suggested courses of action? Tried and didn't work: * voting * not voting * protesting online / offline * writing about these issues, raising awareness What options do we have left? Violence? Hopefully there's more.

Governments are inherently prone to corruption and abuse of power. It is stupid to grant the single entity the right to proctect you, your life and your well-being.

What we need is multiple court systems, multiple police systems, etc. And what's more important -- the ability to freely choose between them. Just like you're able to choose Pepsi over Coke or to choose Google over Bing, or to choose one bank over another.

This isn't easy system to achieve, but mostly because a lot of people are skeptical.

More on this topic: http://mises.org/rothbard/newlibertywhole.asp

Re: Forced Exposure

#153
post #141
post #134

Earlier quoted context omitted.

How would you send the new file to your recipient?

The same way that message boards do this already on Freenet. See https://freenetproject.org/understand.html . Something like: Publish a site using a USK (perhaps one per recipient), containing all encrypted messages sent recently. Update the site with an additional message when you need to send one. The recipient checks it for updates periodically. I'm not sure if my understanding is inaccurate, but since Frost alrea…

Yep, you're right.

Re: Forced Exposure

#154

Earlier quoted context omitted.

Its a subject I keep an eye on, e.g. freenet and off-the-record messaging. I think these systems cannot work :( If you can make a system that is immune to traffic analysis - http://williamedwardscoder.tumblr.com/post/54088903127/onion... is my own blog but I'm about to shoot it down - then you basically have an open router and the spam abuse that implies. Any reasonably anonymous system will collapse under the weight…

Its not as though we don't have a spam problem already… Freshly pulled-out-of-the-air suggestion – anonymous but requiring micro-payments. Say, 500 or 1000 satoshi (around a tenth of a cent) per message delivered – not as a means of generating revenue, but as a way to destroy email's current "if I only get one sale per 100,000 emails I send, that just means I need to send 10,000,000 emails a day to get my desired 100…

Yes there have been various attempts at proof-of-work algorithms to fight e.g. spam. http://en.wikipedia.org/wiki/Proof-of-work_system

Bitcoin is itself a proof-of-work system.

However, these again don't work. The abuser has ample resources to actually do the work on: a botnet.

Re: Forced Exposure

#155
post #6

Want to keep your rights and freedom? It's time to act, now. History is full of great things going all the way down. Don't wait for the Superman.

> It's time to act, now Suggested courses of action? Tried and didn't work: * voting * not voting * protesting online / offline * writing about these issues, raising awareness What options do we have left? Violence? Hopefully there's more.

I think that The Power of the Powerless, essay written about this topic in 1978 by Vaclav Havel, might be interesting even these days. I am not sure it can resonate with western people. Nevertheless, I am going to give it a try: http://www.vaclavhavel.cz/showtrans.php?cat=eseje&val=2_aj_e...

Re: Forced Exposure

#156

Earlier quoted context omitted.

> Lets not try to code our way out of this. I disagree. Let's use all our skills and avenues, not just some of them. > We succumb to terror pushing away meaningless bits of code on Github as a crypto projects in response. That is a subjective opinion. Email itself is meaningless bits of code. You want us to stop using email altogether? What about the web? Why are you even posting on this forum so? > Some projects flo…

"Some projects flourish sure but the same forces that profit off the court-less killings of others are collating your data, your pet projects. Harvesting your stolen info out of botnets." > That is alarmist hyperbole. Those were two direct references, the first being SAIC with their military drone[1] and domestic 'domain awareness center[2]' operations. The second being Endgame Systems and their monetization of botne…

Thank you for taking the time to provide these links, sir.

Re: Forced Exposure

#157
post #20

While I understand her (1) personal reasons for shutting down Groklaw, this is an extraordinarily bad decision for privacy and democracy. In the last few weeks quite a few providers of private communications and/or freedom (for some definition of freedom) have shut down. Lavabot, Freedom Hosting, etc. If the US could shut down The Guardian they would. This leaves fewer and fewer secure channels for private communicat…

> If the US could shut down The Guardian they would. That's stupid. Of course they wouldn't. They would require them to stop reporting on the security state. But that is vastly different from shuttering them all together. The Guardian certainly performs a public service in a variety of other domains (from which the government can and does benefit). The security state just doesn't want the press banging around in thei…

Even better, would be to have them report favourably or obtusely instead of shutting them down. I fail to see the hyperbole here... just a difference of method.

Re: Forced Exposure

#158
This doesn't make sense to me. There's a simple technical solution: stop using email for tips and setup a secure web form on the site. Can someone explain why this wouldn't solve the problem?

Re: Forced Exposure

#159

Earlier quoted context omitted.

>Can PJ not figure out GnuPG? I'm sure she can, but by doing so has reduced the set of people capable of sending her mail significantly by imposing the requirement that they figure out GnuPG before they send her an email.

If you want to use it, you can figure it out. It requires more work than most people care about.

Not in the same way that you can use email though. It is unsafe to use GnuPG on a computer you do not own or trust like a computer at a public library or an Internet cafe. It is, however, possible to register an email address on such a computer and send unencrypted email on that same computer with some precautions and still be fairly sure that the contents will not be connected to you.

Re: Forced Exposure

#160
post #39

I have said this on HN several times, and I will say this again. Dragnet surveillance of private digital correspondence by the US and other governments is wrong, and a gross, unjustified, overreaction to the real threat of terrorism. And yet, when taken as part of the whole picture that is the internet, government surveillance is little more than a drop in the ocean. While governments may collect a possibly significa…

Corporations can't put me in jail.
Post reply on HN