Live data from Hacker News

US Anti-Robocall Litigation Task Force

thecentersquare.com

201–210 of 223 posts

Re: US Anti-Robocall Litigation Task Force

#201

Earlier quoted context omitted.

I get 4-5 a week on Bell, my SO gets 1-2 a day on Rogers.

Have you signed up for the national do not call list?

Yes, of course I have. But the “CRA”, Duct Cleaners, and the women who speaks only Chinese all ignore that list.

Re: US Anti-Robocall Litigation Task Force

#202

Earlier quoted context omitted.

I get an e-mail and they show up on a web UI and it is instantaneous more or less. And I don't know why I have to get robocalls because gramma can't operate the internet. And both my 80+ year old parents can navigate the internet well enough to get lab test results off of websites.

We should still take into account the usability of public utilities for those who struggle with internet illiteracy or disabilities, regardless of how well your parents can cope. A full 25% of people 65+ don't use the internet in any capacity at all.

What's the number of people 65+ who don't use a phone in any capacity at all? It's not zero.

There will always be people left to the wayside, and we need to act when that number is manageable. 25% might be way too much to legislate against robocalls in all forms, but we need to weigh the loss against the gains; how many seniors would benefit from less scams?

Re: US Anti-Robocall Litigation Task Force

#203

This is so easily fixable with the lessons we've learned with egress filtering on the Internet. Legally require large providers to never allow their customers to falsify caller ID. Then have the large providers disconnect small providers who pass along fraudulent caller ID until all small providers are either out of business or aren't facilitating spammers. It's literally that easy, but Congress has ducked this up ti…

"Falsifying caller ID" sounds bad but:

1) we get calls if one of our kids misses class. The number is of their school but they use an outside service.

2) we get calls from business on one of their lines but they want the number to show as the main number. Businesses have a few to a few thousand outgoing lines but they may have many too many thousand extensions.

3) there are people who work from home and call out to customers.

There are legit reasons to falsify caller ID. The issue seems to be more "this call is from a number belonging to a Verizon Wireless customer but it's originating from John's Bait and Telco".

Re: US Anti-Robocall Litigation Task Force

#204
post #83

Earlier quoted context omitted.

I never, ever get legitimate calls from overseas. Just turn those calls off for my phone. Well, perhaps callbacks from helpdesks located in other countries, in which case give me time-boxed control over foreign calls, and perhaps a passcode that I can communicate along with my callback number. There are billions of dollars at stake, of course. This is a solvable problem, and the FCC doesn't even need to get involved.…

Can't all of this be done locally on the phone? Why does the phone app not have an option to simply ignore all garbage calls

The phone company doesn't give you the originator information. This is what they need to be forced to do. Then users could block calls and texts from international numbers to politicians to voips to anything from the state of Wisconsin, adblock-style.

Re: US Anti-Robocall Litigation Task Force

#205
post #39

Earlier quoted context omitted.

What does “accessible to all” mean in this context? Why do I in Europe get almost zero spam calls or text while in the US it seems like a plague?

In the US, one of the loopholes in rules requiring STIR/SHAKEN and other protections was that smaller carriers, usually serving rural or under served markets, were exempt. This became a profit center for them as they became one of the only means for these spam calls, which originated in overseas call centers, to connect to US callers. Thus the smaller carriers were incentivized by profit to connect the calls.

Now that STIR/SHAKEN is supposedly a thing, is there a way in Android that I can block calls that go through those carriers?

Re: US Anti-Robocall Litigation Task Force

#206

Earlier quoted context omitted.

The carriers could absolutely implement authenticated caller id as a very first start. Then, you can at least trust the caller ID and screen/block effectively.

Do you mean like Shaken/Stir? https://en.m.wikipedia.org/wiki/STIR/SHAKEN

OK so I am on T-Mobile, I use an Android device. Is there a way I can automatically display the true origin for all phone calls and texts? I would like to block any calls from VOIPs, international origins, or non-SHAKEN/STIR providers.

Re: US Anti-Robocall Litigation Task Force

#207

Earlier quoted context omitted.

Could she not leave a message? I have the same setup as someone here mentioning Tasker. I route all calls to voice mail, where I can decide if I need to call back. If they are not willing to leave a voice mail with a return number and reason, the call was not that important.

Wow, no one from any age group ever listens to voice messages anymore either, at least down here in my country

I also don't listen to voice messages, in my 30s, in the US. My phone doesn't even tell me when I get them and I have no plans to change that (except when dealing with financial or legal bullshit).

Re: US Anti-Robocall Litigation Task Force

#208

This is so easily fixable with the lessons we've learned with egress filtering on the Internet. Legally require large providers to never allow their customers to falsify caller ID. Then have the large providers disconnect small providers who pass along fraudulent caller ID until all small providers are either out of business or aren't facilitating spammers. It's literally that easy, but Congress has ducked this up ti…

"Falsifying caller ID" sounds bad but: 1) we get calls if one of our kids misses class. The number is of their school but they use an outside service. 2) we get calls from business on one of their lines but they want the number to show as the main number. Businesses have a few to a few thousand outgoing lines but they may have many too many thousand extensions. 3) there are people who work from home and call out to c…

Put some sort of restriction or registration for falsifying ID. If I work for your school, can associate my number to your school, it's registered with the telco, and call you with that number showing up. Maybe I call the school first and all the calls go through them. Either way, still a verifiable chain of events.

If some random scammer tries to set its ID to the school, the call should not go through. If for some reason the school lends out its number to scammers, then the school should face legal consequences along with the scammer.

Re: US Anti-Robocall Litigation Task Force

#209
post #199
post #140

Earlier quoted context omitted.

> Spoofed IP addresses used to be a much bigger problem on the Internet than they are today (many examples but see Smurf Attack). Most of the large DDoS attacks are UDP reflection, the attacker spoofs the victims address and sends to chargen[1] servers or whatever. So spoofing is still alive and well. [1] yes really, the worst ones are people who install Microsoft's Services for Unix and enable the chargen server to…

How long have you been on the Internet? I ask because I started an ISP in 1996 and IP address spoofing used to be soooo much worse. Today’s situation is the product of literally 2.5 decades of encouraging and/or shaming Internet-connected networks into properly configuring their routers to drop spoofed packets egressing from their network with a spoofed IP address not from their network.

Approximately forever, although while I worked at an "ISP" in 1999, it was a two T1 ISP; one for modems, one for upstream; and then we outsourced all the modem stuff to MegaPath when something weird happened to our modem T1, but I was never trained on how that T1 worked, all just magic to me. I kind of sort of get the idea today, but ... I poked at the RADIUS server, and setup webhosting for customers. I never worked for a real DDoS target until 10 years ago (and even then it was mostly people kicking the tires with 90 second DDoS services). I'm sure it's not as bad as it once was, but it's still probably easier to get a big DDoS with UDP reflection than through botnets directly hitting the target.

Back to the topic of telco spam. STIR/Shaken should maybe get us actual caller-ids soonish, I think there's one more deadline for small carriers that service actual phone lines. OTOH, what are you going to do with a real caller id? I'm pretty sure phone companies just don't want to do it anymore, there's no money in voice calling, and it'll fall apart like landlines have.

Re: US Anti-Robocall Litigation Task Force

#210

Earlier quoted context omitted.

Then you can leave robocalls on.

Imposing that option on people negates its usefulness. Which option would you recommend to your elderly relatives? Accept robocalls from international scammers or receive updates from their doctors office? You might as well ban robocalls for legitimate uses too, since legitimate users won't be able to rely on it anymore.

I agree it's not a 100% solution for all cases ever. But it's still a strict improvement for many people.
Post reply on HN