Researchers ID Skype, BitTorrent Users
itwbennett writes "Researchers have figured out a way to link online Skype users to their activity on peer-to-peer networks like BitTorrent. The team was able to sift out the nodes through which Skype calls are routed and determine the user's real IP address by sniffing the packets. To correlate the identified Skype users with files shared on BitTorrent, the researchers built tools to collect BitTorrent file identifiers, a BitTorrent crawler to collect IP addresses on the network and a verifier to match an online Skype user with an online BitTorrent user (PDF). 'As soon as the BitTorrent crawler detects a matching IP address, it signals the verifier, which immediately calls the corresponding Skype user and, at the same time, initiates a handshake with the BitTorrent client,' they wrote."
Privacy is but an illusion.
Unplug the internet!
C'mon!
Where do they get off calling these guys researchers, when they are clearly criminals attempting to invade the reasonably expected privacy of Skype users and BT users? These guys are peeping toms at best and identity thieves at worse.
Hold the organizations that employ these guys accountable.
So what's this old thing we used to call privacy? Is this even legal for them to be doing? Or will it, like everything else, fall into that gray area and be used against everyone?
I for one welcome our new RIAA overlords.
Apple has "Mac vs PC", Microsoft has "Laptop Hunters", Linux has recession
Give every program and protocol its own IP address.
Seeing as how this relies on packet sniffing of an unaware party's network traffic, I'm pretty sure any application of this without a warrant would constitute wiretapping. Correct me if I'm wrong, but that's my understanding of it.
Ring ring... incoming Skype call, it's the RIAA.
Another great reason to dump skype? Skype in a sence not bad from prespective of security, but, there are other reasons.
Eitherway, bit torrent is not so good with privacy either... People need to shift to decentralised distributing systems. I have no idea what i just said, but it sounded pretty cool!
ring ring ring ... ... ... ... ... ...
"Hello."
"Hello? Is there anyone there?"
"We know what you downloaded last summer!!!"
If you can't be good, be good at it!
If the researchers can do it, the bad guys may already be doing it.
All it is is data mining packets from skype nodes and comparing them to open torrent peer lists. This is not really surprising or scary to me. There are other 'researchers' who can link alot more data to you then this.
good thing I am running a tor exit node on my PC
But that implies the identity is stolen, when in fact it's copied. If I copy yours you have it too, one for me and one for you. What's wrong with copying? Let's embrace it.
Are there any BT clients out there that don't encrypt their packets these days?
moox. for a new generation.
Because NAT and UPNP wouldn't make a random Skype user and a different BitTorrent user appear to be coming from the same IP address..
And why are we happy that researchers seem to think that the more that they can do to strip away privacy as actually a Good Thing? Why not instead work out systems to make our computers more resistant to virus/trojan/rootkit infections. THAT would actually benefit the majority of us overall.
"It's the height of ridiculousness to say for those 9 lines you get hundreds of millions."
Dont use Skype.
Do not look at laser with remaining good eye.
to determine the current IP address of identified and targeted Skype user (if the user is currently active)
Moral of the story - make sure you are logged off from Skype before file sharing.
Seven puppies were harmed during the making of this post.
Fortunately I reconfigured my computer so that it doesn't broadcast an IP addr
[NO CARRIER]
Fail.
Relevant XKCD comic.
But let's not confuse an IP address as being a person. Just because a Skype user is behind an IP doesn't mean the torrent user is the same person. Fortunately (and unfortunately for the media industry) the law, in America at least, is gradually beginning to make that distinction.
So collecting IP addresses now qualifies as research? Will I become a security researcher if I post the IPs of my peers?
Right, at least for those users whose ISP gives them a dynamically reassigned IP address. Log off Skype, disconnect from the Internet and then reconnect, hopefully getting a new IP address (I remember one Slashdot user who kept getting reassigned the same "random" address), and then your IP addresses won't be correlatable.
I pity the guy who ends up with your recycled IP address, though.
404555974007725459910684486621289147856453481154 in hex is "You sank my Battleship?"
[GPG key in journal]
/me slowly closes skype... -.-
Guess who owns Skype, M$.
I smell something funny.
"If any question why we died, Tell them because our fathers lied."
Wasn't ME,,
"Researchers have figured out a way to link online Skype users to their activity on peer-to-peer networks like BitTorrent. The team was able to sift out the nodes through which Skype calls are routed and determine the user's real IP address by sniffing the packets.
There is no valid and ethical use for this technology. As such, these people need to be kicked out of the industry (if not fined / imprisoned) for unethical research, much like a biologist doing genetic experiments on humans would be.
I call FUD on this.
The author neglects documented research, counters with his beliefs and emotions and then attempts to create fear and uncertainty and doubt in the reader.
It's just two NAT's? I know.. Genius right? That way, so while I'm using NAT, if I want to use NAT, I can!