Live data from Hacker News

As Feds Demand the Keys, Preparing for the Death of Public-Key Encryption

lauren.vortex.com

291–295 of 295 posts

Re: As Feds Demand the Keys, Preparing for the Death of Public-Key Encryption

#291
post #246

Earlier quoted context omitted.

Even if we are 100% clear that there is no evidence that vaccination causes any malady, government mandates requiring that the government chooses what things should be injected into every single citizen crosses a very important line of freedom of action for me. Just like the argument that you may not agree with someone but will defend their rights to say it. I may not agree with an anti-vaccination person but I would…

The problem is it is not about your freedom and safety. It's about the freedom and safety of others. Herd-Immunity is essential for protecting those who can't be vacinated because of allergies or age. By refusing vaccinating you aren't just giving up your ability to be protected from these life-threatening diseases, you're also endangering others. The government has these laws for the same reason we have laws against…

Your position would be more clearly stated if you said that the problem is weighing freedom against safety. There I agree with you. It is not my freedom from government mandated medical injections or procedures the needs to be weighed against safety for the herd but rather the importance of freedom of choice generally weighed against safety for all. Also, the government does not have these laws. This is a line leglislaters have not crossed, and good thing too, given the importance of setting good precedents around medical ethics in a fast advancing field.

Re: As Feds Demand the Keys, Preparing for the Death of Public-Key Encryption

#292

It's a neat argument that the Feds have. If you send traffic unencrypted: 'You have no expectation of privacy, because you're broadcasting information publicly.' Turn on encryption: 'Clearly you have something to hide, and deserve additional scrutiny. It's still not a fourth amendment violation because we are just compelling a business to give us your keys'

Corporations are people now as per http://en.wikipedia.org/wiki/Citizens_United_v._Federal_Elec...

Let's sue for the violation of our company's 4th amendment rights.

Re: As Feds Demand the Keys, Preparing for the Death of Public-Key Encryption

#293
post #281
post #241

Earlier quoted context omitted.

Except for cert pinning. I think moxie is working on a general form of that right now.

Cert pinning doesn't solve that problem. Cert pinning solves the problem of a compromised CA signing false certificates. If an attacker has the private key of the endpoint , cert pinning will do nothing.

I.e. the attacker completely simulates the desired endpoint since they have the priv key, DNS and all? I think that makes sense indeed.

Re: As Feds Demand the Keys, Preparing for the Death of Public-Key Encryption

#294
post #238

Earlier quoted context omitted.

That may have been true for whichever couple of days the talking heads devoted to the unfortunate Ms. Dean, but it simply isn't borne out over the long haul. If you look really hard, I doubt you can find a single piece about Dean that was produced today , while most outlets have several about Snowden.

You can't find a piece about Paula Deen today because the attention has shifted to Prince George. Which, by the way, is exactly the point: While there are people who care about Snowden, NSA, etc., they are not currently any kind of substantial part of the public. We all ignore that at our peril. The fact that Snowden may be a larger-than-normal individual news story doesn't change the fact that the story doesn't capt…

Prince Who? Look, I'm an American. We fought several wars to confirm that we don't have to give a flying fuck about King George III or any of his syphilitic inbred descendants.

Re: As Feds Demand the Keys, Preparing for the Death of Public-Key Encryption

#295
post #236

The only defense against government snooping is air gap. Don't connect your stuff to the Internet.

From the article, I got the impression that the only way to really have secure communications is to create your own crypto. Now that you mention "air gap," I think that is the key (pun intended): it would have to be a crypto device that communicates with a PC through an air gap. Not USB nor bluetooth, actually nothing digital. The device I'm thinking of would rely on certain kinds of digital-to-analog and analog-to-d…

How about QR codes? Light spectrum communications.
Post reply on HN