Live data from Hacker News

Forced Exposure

groklaw.net

41–50 of 430 posts

Re: Forced Exposure

#41
post #7

For me, personally, this is much more sad than Lavabit shutting down. Groklaw was an icon, it has huge significance. I do not know whether this - i.e. shutting down - is a good strategy in general. It raises some awareness, it might cause some change ... but what if change does not happens? What other means of protest will we have?

He's not shutting down to raise awareness, but because he feels unable to conduct the blog without feeling his communications with his readers are private.

Re: Forced Exposure

#42
post #30
post #8

How feasible is Freenet for email? We can use PGP today, but the metadata is available to all. But what journalists who need to communicate more anonymously that that used pseudonymous PGP keys - one per story, rather one per person, and posted encrypted messages on Freenet?

It's just non-feasible. Freenet is a distributed file/web database, not realtime internet.

Email does not have to be real time.

Re: Forced Exposure

#43
post #5

Earlier quoted context omitted.

That's nice to say. Get angry, be outraged. But what do we do , day-to-day, while things are still a mess? How do you organize a revolution under the noses of the people you're revolting against? The code still has a purpose, even if it's not the "right" solution, long-term.

Revolution is not what you think. It consists of the small actions of millions of people. The small actions are usually more revolutionary than the large. The NSA has just created a huge market for guaranteed secure communications infrastructures. The technology is there. It may need some extensions but it is there. Some ideas (again no time for a startup now and this is too important): 1. An email-like service based…

Encoding your own mail means that you are playing by rules of the game NSA has set up. The only way is to make your own game and make them play by YOUR rules. If you encode your communications there is a barrier that they will break down directly by making you disclose the keys while threatening with Tax audits, jail time etc. Or by breaking down encryption commications. They are the largest employer of IT/Security/Cryptographers on the face of the earth.

So the only way to do this is to make them not play their game.

Frankly whole cancerous security apparatus has been fueled by privatized sector just like the one with privatized jail system.

Sad to say this but there only way I can see this being resolved is political/etc. Start websites cover the stories. Find methods of figuring out whether they are listening to you or not. For example set up fake drug deals so you can draw them on fact of monitoring your communications. Sue them every instance you find them breaking down your doors. Yeah I know it is not pleasant.

Just like OP said there is no easy way out of this.

Also make working for contractors of NSA and being employee of NSA being a very unpatriotic and scummy thing to do - akin to digging around underwear drawer of your next door granny neighbor.

My 2c.

Re: Forced Exposure

#44
post #13

When folks like Lavabit and Groklaw preemptively shut down because they cannot take the security & privacy of their communications for granted, it makes me wonder the converse: how are other companies that deal in sensitive information (patents, lawsuits, competitive bids etc.) dealing with it? Have they resigned themselves to it? Are they devising new corporate communication policies that assume always-on surveillan…

I doubt many companies care about it.

My personal information for my apartment is stored on an FTP server and their offices use WEP encryption on their WiFI. They have a scan of my passport, every facet of information about me; if their storage was compromised it would be fairly devastating to their tens of thousands of clients.

Unfortunately I have no clout regarding the storage of this information, and no choice as to who I store it with.

Re: Forced Exposure

#46

Lets not try to code our way out of this. We succumb to terror pushing away meaningless bits of code on Github as a crypto projects in response. Some projects flourish sure but the same forces that profit off the court-less killings of others are collating your data, your pet projects. Harvesting your stolen info out of botnets. Giving you a salary for technician work keeping infrastructure ticking. Enough enabling t…

Why is Dell on that list?

Re: Forced Exposure

#47
post #8

How feasible is Freenet for email? We can use PGP today, but the metadata is available to all. But what journalists who need to communicate more anonymously that that used pseudonymous PGP keys - one per story, rather one per person, and posted encrypted messages on Freenet?

I think Tor would be a better idea of what to try to emulate, but the full envelope (including envelope from) would have to be encrypted such that it would be decrypted at the end-point.

I think something sufficiently secure is possible for email. I think it would require a whole new set of protocols and approaches, and for some things (like voice) it is not.

Re: Forced Exposure

#48
I guess I don't get it. Didn't we "know" about things like Carnivore in the 90s? Isn't it rather expected that unencrypted communications are going to be gathered? You don't even need a nation-state to do so. Anyone with physical access can place taps, and parsing and saving port 25 traffic ain't exactly Manhattan Project level work.

I agree it's upsetting and citizens should be demanding oversight. But to assume your plaintext transmissions over uncontrolled wires are somehow private seems absurd. It's like the silliness people got whipped into over Google's WiFi collection which was essentially passing "-s 0" instead of "-s 64" to tcpdump.

Re: Forced Exposure

#49
This to me is the most pernicious thing about this whole surveillance business. The mere presence of a comprehensive surveillance apparatus, even when you don't live in a totalitarian state when jack booted thugs pay you a visit to "get your mind right", does incalculable damage to the first amendment. In a free society, it's "game over" without the first amendment. This is in some ways even more damaging than the actual surveillance (which in theory could be shut off today) because once the public feels they've lost the freedom of speech, it is extremely hard to convince them otherwise. Look at how hard it has been for the citizenry of forer communist countries to embrace and internalize the freedoms we in the US have had for a few hundred years.

Re: Forced Exposure

#50
post #29

Earlier quoted context omitted.

> While I understand his personal reasons pj = Pamela Jones But yeah, it's devastating -- especially when it comes just one day after a editor of the Guardian states that they can no longer report on certain topics from London. It seems like we need entirely new communication protocols.

> we need entirely new communication protocols Whole new enforcement of privacy laws, you mean?

No, I mean protocols.

While elsewhere in the comments, there is the sentiment that "you can't code yourself out of this", my hopes of voting myself out of it (or otherwise "fixing" a system, as if it was just accidentally "broken") are much lower.

(But note that "protocols" may also have non-technological components.)

Post reply on HN