Slashdot Mirror


Law Professor: Tech Companies Are Our Best Hope At Resisting Surveillance

An anonymous reader writes: Fusion has an op-ed where Ryan Calo, Assistant Professor of Law at the University of Washington, argues Google, Apple, and Microsoft pushing back against government surveillance may be our only real hope for privacy. He writes: "Both Google and Yahoo have announced that they are working on end-to-end encryption in email. Facebook established its service on a Tor hidden services site, so that users can access the social network without being monitored by those with access to network traffic. Outside of product design, Twitter, Facebook and Microsoft have sent their formidable legal teams to court to block or narrow requests for user information. Encryption tools have traditionally been unwieldy and difficult to use; massive companies turning their attention to better and simpler design, and use by default, could be a game changer. Privacy will no longer be accessible only to tech-savvy users, and it will mean that those who do use encryption will no longer stick out like sore thumbs, their rare use of hard-to-use tools making them a target."

72 of 115 comments (clear)

  1. Get a bear to guard your honey by markdavis · · Score: 3, Interesting

    >"Law Professor: Tech Companies Are Our Best Hope At Resisting Surveillance"

    Except they (tech companies) are just as guilty for surveillance. Plus, all the data they do gather is still information that the government can obtain legally through warrants and "illegally" through other means (which WILL continue).

    1. Re:Get a bear to guard your honey by TheRaven64 · · Score: 4, Insightful

      Exactly. With the exception of Microsoft (which sells software, yet still doesn't have a great track record, especially with the Windows 10 fiasco), all of the listed companies have business models that rely on collecting as much information as they possibly can from their users (not to be confused with their customers). If you want to resist surveillance, then don't buy into large centralised communication systems.

      --
      I am TheRaven on Soylent News
    2. Re:Get a bear to guard your honey by Z00L00K · · Score: 1

      Just look at the Microsoft monitoring items.

      But I think it will develop to some kind of trench warfare between those performing surveillance and those that will protect us against it.

      --
      If builders built buildings the way programmers wrote programs, then the first woodpecker would destroy civilization.
    3. Re:Get a bear to guard your honey by dryeo · · Score: 1

      Microsoft is also embracing the collecting info on their users business model with free Win10 that collects lots of info and sends it home, and the functionality has been backported to Win7 and Win8. Seems there is a lot of money in targeted advertising.

      --
      https://en.wikipedia.org/wiki/Inverted_totalitarianism
    4. Re:Get a bear to guard your honey by swillden · · Score: 1

      >"Law Professor: Tech Companies Are Our Best Hope At Resisting Surveillance"

      Except they (tech companies) are just as guilty for surveillance. Plus, all the data they do gather is still information that the government can obtain legally through warrants and "illegally" through other means (which WILL continue).

      OTOH, the end-to-end encrypted e-mail solutions Google and Yahoo are building will keep them from seeing your email as well.

      --
      Note to ACs: I usually delete AC replies without reading them. If you want to talk to me, log in.
    5. Re:Get a bear to guard your honey by chihowa · · Score: 1

      Which should honestly make us wonder if these solutions are trustworthy. What do Google or Yahoo have to gain from cutting off their own access to their users' email contents? If they're willing to not scan their users' email, they could start by no longer scanning their users' email, today.

      There are many different ways for Google to subvert this system, being that it is an extension that runs in Google Chrome, stores the keys in Chrome, and will assumedly be provided and (silently) updated by Google. The OpenPGP spec itself allows for options like "--hidden-encrypt-to", so unwary users could still end up sharing all of their information with Google or whoever else.

      TL;DR - Why should we trust Google or Yahoo here?

      --
      If you want a vision of the future, imagine a youtube comments section scrolling - forever.
    6. Re:Get a bear to guard your honey by swillden · · Score: 1

      Depending on how far you're willing to go to assume bad faith, there's no way for them to really prove they don't have some way to sneak access to your data. But, they're making it all open source and calling for extensive public review. Also, if they were to be caught lying about this it would cause a huge PR shitstorm. Also, keep in mind that Google is under ongoing scrutiny from the FTC related to its privacy practices, since it signed a consent decree.

      I'm neither a PR flack nor an attorney, but it seems to me that building a secret backdoor in to be able to read your e-mail while telling you that it's secure would be a fantastically risky proposition, and one without much upside for companies that have the all-your-data-are-belong-to-us attitude that you ascribe.

      It's much more plausible to believe that Google and Yahoo actually believe people should be able to have privacy when they want it -- and that people should be able to trade privacy for services when they want that.

      --
      Note to ACs: I usually delete AC replies without reading them. If you want to talk to me, log in.
    7. Re:Get a bear to guard your honey by chihowa · · Score: 1

      I'm not presuming bad faith and I agree that it would be extremely risky to put a backdoor in this system. At the same time, there's no reason to trust Google and this extension doesn't align with their demonstrated motives, so your original comment doesn't really give any solace.

      I'm also annoyed that this isn't a genuine attempt to make securely encrypted email mainstream, since mainstream use of encryption would limit Google's ability to harvest data and harm the core of their business. They can't make this system too easy to use (encrypt by default) or too many people will use it, so it's not targeted at "normal" people. It'd be pretty stupid of them to put a backdoor in such a system, but it'd be just as stupid to blindly trust them not to do so. Privacy-conscious people have just as much reason to distrust Google as any other third party, so who exactly is this targeted at?

      --
      If you want a vision of the future, imagine a youtube comments section scrolling - forever.
    8. Re:Get a bear to guard your honey by swillden · · Score: 1

      I'm also annoyed that this isn't a genuine attempt to make securely encrypted email mainstream

      What makes you think it's not, other than your assumption that Google wouldn't do something to harm their business model?

      --
      Note to ACs: I usually delete AC replies without reading them. If you want to talk to me, log in.
    9. Re:Get a bear to guard your honey by swillden · · Score: 1

      No, an assumption is not enough.

      --
      Note to ACs: I usually delete AC replies without reading them. If you want to talk to me, log in.
    10. Re:Get a bear to guard your honey by TheRaven64 · · Score: 1

      You know that Bing Ads is one of the largest ad networks around, right?

      Actually, I had no idea - I've never seen one. Apparently they have 15.6% of the US market share, though it's not clear how much they have worldwide. Thanks for the info.

      --
      I am TheRaven on Soylent News
    11. Re:Get a bear to guard your honey by swillden · · Score: 1

      Well, it's assumptions either way. At least one of them is credible.

      One of them is "assume that the company with a lot to lose if it lies is telling the truth". The other is "assume that the company is lying, and risking a serious PR and possibly regulatory backlash". Yes, one of those is credible. Buttressing its credibility is the fact that the system is being built completely in the open, and security experts the world over are being invited to scrutinize it for any flaws, including any that could permit Google to get at the data.

      Barring heavy confirmation bias, I see only two realistic explanations. First, that it's completely legitimate and that Google thinks its more important to enable private communications than to be able to advertise based on the contents of those communications (which I suspect wouldn't be a huge hit to Google's revenue, and might result in a net goodwill benefit). Second, that Google doesn't expect to ever actually deploy the thing.

      I happen to know that the guys who came up with the idea and are building it strongly believe the first interpretation, and so far management is encouraging them, not telling them to stop. But given a sufficiently-powerful dose of confirmation bias, it's easy to just assume I'm in on the scam, so that doesn't mean much.

      --
      Note to ACs: I usually delete AC replies without reading them. If you want to talk to me, log in.
  2. Or the Gordon Dickson approach by smittyoneeach · · Score: 3, Funny

    Would it not be ironic if a parallel, completely pre-Information Age system of handwritten, couriered messaging evolved in response to the whole Big Brother thing?

    --
    Get thee glass eyes, and, like a scurvy politician, seem to see things thou dost not.--King Lear
    1. Re:Or the Gordon Dickson approach by Anonymous Coward · · Score: 5, Funny

      There is a special government program going on in the US right now where for $0.49 a uniformed representative of the government will hand deliver your sealed correspondence to its destination.

      I find this to be a useful way to communicate and do business in the Digital Age.

    2. Re:Or the Gordon Dickson approach by Anonymous Coward · · Score: 1, Informative

      Therein lies the rub. The laws regarding the sanctity of the mail were written prior to the wholesale auction of the government, and the entire distribution chain is controlled to where any shenanigans by either the government or private entity is obvious. I've even had mail carriers inform me of my right to refuse a package when there were signs of tampering or something else seemed amiss, thereby limiting my legal liability for the contents. Try getting that from a private business without the NSA breathing down your throat.

      The truly paranoid still make regular use of the mail as the manpower required to monitor it is prohibitive, and you are pitting government agency against government agency in maintaining its fidelity.

    3. Re:Or the Gordon Dickson approach by drooling-dog · · Score: 1

      I'm trying to imagine, at the time the postal service was organized, what the public reaction would have been if it was announced that your mail would be opened and read, and the information so gained would be sold to merchants, employers, and police in your area. Would people have accepted that in exchange for free postage?

    4. Re:Or the Gordon Dickson approach by plopez · · Score: 1

      I disagree. If you look at how government was done in the 1800's or early 1900's things *are* better. Better support of health and safety, education, research, a professional civil service, product safety, help for the elderly, assistance for the elderly etc. Unfortunately there are forces that want to gut these initiatives and turn back the clock to the 1800s.

      --
      putting the 'B' in LGBTQ+
    5. Re:Or the Gordon Dickson approach by smittyoneeach · · Score: 1

      I was thinking Dorsai, where countermeasure have driven everything to a bare physics level, even below an organized Postal Service.

      --
      Get thee glass eyes, and, like a scurvy politician, seem to see things thou dost not.--King Lear
    6. Re:Or the Gordon Dickson approach by GLMDesigns · · Score: 2

      Do you not feel that we have gone too far in the way of centralized control? You're not horrified at a child's lemonade stands being closed down due to lack of licensing? Or that you must have a fence around your pool else a trespasser who falls in your pool can sue you?

      Is there no happy medium between regulatory micromanagement and your description of how horrible it was in the 1800s?

      --
      If you're scared of your govt then you need to further restrict its powers
      Vote 3rd Party in 2016 and beyond
    7. Re:Or the Gordon Dickson approach by Anubis+IV · · Score: 1

      The truly paranoid still make regular use of the mail as the manpower required to monitor it is prohibitive, and you are pitting government agency against government agency in maintaining its fidelity.

      Which is why Snowden's leaks revealed that the NSA is routinely intercepting electronics packages heading to surveillance targets, installing surveillance software/malware, repackaging them as if they were new, and then sending them on their way. The leaks indicated that they were even jailbreaking iPhones in order to install their surveillance package, before repackaging the phones and making it look like they were still brand new.

      The battle over maintaining the fidelity of the mail system was silently lost long ago.

    8. Re:Or the Gordon Dickson approach by crtreece · · Score: 1
      And, they are only sure to scan the item to log the source address, destination address, and post office where the item was postmarked.

      Don't worry though, the Postmaster General says they only keep the data for 1-4 weeks.

      --
      file: .signature not found
    9. Re:Or the Gordon Dickson approach by Anonymous Coward · · Score: 1

      If you believe that bit of stupidity you haven't fucking been paying attention and are justly parroting something you heard once like a fucking moron.

      Between tough on crime legislation which is unconstitutional, or surveillance legislation which is unconstitutional, or bringing in US style "politics is money is free speech" ... Harper is no no fucking way "left of the democrats".

      It's a cute fucking meme, but you're apparently too fucking stupid to know what it means or why it's wrong.

      It's the same faux-libertarian economics and social conservatism which panders to the rich and corporations while ignoring everybody else.

      Please, just shut up if you're not even going to bother.

    10. Re:Or the Gordon Dickson approach by plopez · · Score: 1

      "Do you not feel that we have gone too far in the way of centralized control?"

      Yes, corporations need to be less centralized and more focused on human values.

      "You're not horrified at a child's lemonade stands being closed down due to lack of licensing?"
      Citation please.
      "Or that you must have a fence around your pool else a trespasser who falls in your pool can sue you?"

      That's just common sense. I would do it any way as I do not want children or pets drowning.
      "
      Is there no happy medium between regulatory micromanagement and your description of how horrible it was in the 1800s?"

      Yes there is and I think we were close in the 1970s

      --
      putting the 'B' in LGBTQ+
    11. Re:Or the Gordon Dickson approach by GLMDesigns · · Score: 1

      Re lemonade stand: http://www.cnn.com/2015/06/11/...

      and instead of thinking I was bull$hitting you could have googled it: The following will give you a good list.

      https://www.google.com/webhp?s... Re 1970s - I agree in a large part of everday life - except for the ridiculous laws on drugs, sex.

      But the overwhelming mercantile regulations were bad then too. You are a big corporation (airlines) you get protected. You make money. No competition. And prices are out of reach for everyone but the wealthy.

      --
      If you're scared of your govt then you need to further restrict its powers
      Vote 3rd Party in 2016 and beyond
    12. Re:Or the Gordon Dickson approach by dryeo · · Score: 1

      Actually Harper is so far right that he is actually to the right of Obama. Slightly more authoritarian too. See the political compass. http://www.politicalcompass.or... http://www.politicalcompass.or...

      --
      https://en.wikipedia.org/wiki/Inverted_totalitarianism
    13. Re:Or the Gordon Dickson approach by plopez · · Score: 1

      No, it is not my job to provide your references for you. YOU are making the positive assertion, YOU have to back it up. Not me.

      --
      putting the 'B' in LGBTQ+
    14. Re:Or the Gordon Dickson approach by GLMDesigns · · Score: 1

      That's true. Fair enough.

      --
      If you're scared of your govt then you need to further restrict its powers
      Vote 3rd Party in 2016 and beyond
    15. Re:Or the Gordon Dickson approach by kellymcdonald78 · · Score: 1

      Perhaps I was being slightly facetious, and I agree that the Convervatives have shifted more authoritarian in the past few years (which is why they have lost my support). While I'd agree that they are fiscally more right than the democrats, as hard to believe as it is, the Conservatives (when compared to the US) are left. Abortion, same sex marriage, healthcare, campaign finance reform, prostitution, while perhaps not vocally supportive of these, the Conservatives have remained largely hands off (when they could have easily passed laws on any of these). Our controversies de jour are Senate expense scandals, the long form census, and long gun registry. The biggest issue we face is bill C-51 (which even the Liberals supported), and the increasing beating the drum of "terrorism" when I'm still more likely to be killed by a moose.

    16. Re:Or the Gordon Dickson approach by dryeo · · Score: 1

      Harper is smart and knows that if he raises most of those issues, he'd be gone to the same fate as the Reform Party. Instead he is doing the slow frog thing, small changes that add up. Instead of attacking health care, underfund it until people get pissed off enough to reject. Campaign Finance reform. First thing he did when he got the majority was cut public funding. Then with the "Fair Voting Act" he snuck in a bit about if the election was longer then the usual 6 weeks, spending limits go up. Notice how long this election is and how the Conservatives were the only party prepared to spend the extra that the long campaign allowed. The important thing to him is being able to out spend everyone else.
      Prostitution, well he just made buying sex illegal and made it illegal to sell sex within miles of schools etc.
      He is still limited by the Constitution so same sex marriage isn't worth worrying about, especially since the majority of Canadians are OK with it,
      He's also done the right wing things like fuck the environment, Ran the biggest deficits in our countries history while claiming that they're the only fiscally responsible ones. No thought given to paying of the debts that he racked up either. Continuous war. No more peace keeping, just bombing civilians as long as they're not white. Total support of Israel to the point of mumbling about charging anyone who talks bad about them with hate crimes.
      And of course the attacks on our democracy. Robocall scandals. Disenfranchising parts of the electorate. Neutering Elections Canada, to the point they can't even encourage people to vote. And of course the attitude that openness means everyone but him.

      --
      https://en.wikipedia.org/wiki/Inverted_totalitarianism
  3. The professor is an optimist by Mostly+a+lurker · · Score: 3, Interesting

    Big Brother is here to stay. Surveillance tools are being built into the hardware and BIOS. End to end encryption becomes moot when the data is collected at source.

    1. Re:The professor is an optimist by rmdingler · · Score: 1, Interesting
      It seems the consortium of Google, Apple, and Microsoft would have little incentive to push back against the governments' surveillance, except perhaps where those acts of surveillance hinder the corporations' operations and profits.

      There does not, as yet, appear to be enough (or even any) outrage from the average internet user that might inspire the Big 3 to go to the trouble. The social media crusaders are busy wielding the power of the electronic mob for other inferred social injustices.

      Realistically, unless the governments begin selling data that is the bread & butter of these tech giants, I just don't see enough incentive for them to initiate any real reforms.

      --
      Happiness in intelligent people is the rarest thing I know.

      Ernest Hemingway

  4. No by TCM · · Score: 4, Insightful

    Cryptographers are our best hope.

    What is this headline supposed to suggest? Trust cloud providers? LOL.

    --
    Of course it runs NetBSD. BTC: 1NT7QvbetmANwaMzhpVL6
    1. Re:No by sociocapitalist · · Score: 1

      Cryptographers are our best hope.

      What is this headline supposed to suggest? Trust cloud providers? LOL.

      I'll see your cryptographers (in the public domain) and raise you an NSA with a virtually unlimited budget and fuckloads of computing power.

      Cryptographers in the corporate world are at the mercy of corporate interests that are willing to take money to install backdoors.

      --
      blindly antisocialist = antisocial
    2. Re:No by jbmartin6 · · Score: 1

      There is plenty of great encryption already, it hasn't helped much unless someone implements it. There is also the problem that at some point it has to be decrypted to be used.

      --
      This posting is provided 'AS IS' without warranty of any kind, implied or otherwise.
    3. Re:No by Sloppy · · Score: 5, Insightful

      Communication is too basic to not be a commodity. If you have a software "vendor" then you're doing it wrong.

      What is really getting fucked up here, is that we are using the names of these three companies in our discussion, rather than the names of standard protocols. Because the public isn't using standard protocols. That's intolerable.

      --
      As copyright owner of this comment, I authorize everyone to defeat any technological measure which limits access to it.
    4. The key in your statement is backdoors and people suspect that some may have been put in to things like bitlocker, Android and iOS full device encrypt and other closed source products. This however doesn't prevent you from using things like TrueCrypt (included because there hasn't been shown to be any real red flags even with the limited audit), PGP/GPG, the various TrueCrypt successors, other encryption programs. Something that requires 2^256 bit flips is going to be awfully energy intensive even if it is done with the magic of quantum computers which can speed up the process but not that much (I want to say it can cut the exponent in half but I may not be remembering it correctly). So if we take an optimistic view with quantum computers that still means it takes 2^128 bit flips and good luck finding enough energy to do that. Basically proper cryptography without backdoors or flaws is something that cannot be broken even using all of the available energy in the universe. If that doesn't offer enough protection then you could always use a one time pad.

      --
      Time to offend someone
    5. Re:No by sociocapitalist · · Score: 2

      The key in your statement is backdoors and people suspect that some may have been put in to things like bitlocker, Android and iOS full device encrypt and other closed source products. This however doesn't prevent you from using things like TrueCrypt (included because there hasn't been shown to be any real red flags even with the limited audit), PGP/GPG, the various TrueCrypt successors, other encryption programs. Something that requires 2^256 bit flips is going to be awfully energy intensive even if it is done with the magic of quantum computers which can speed up the process but not that much (I want to say it can cut the exponent in half but I may not be remembering it correctly). So if we take an optimistic view with quantum computers that still means it takes 2^128 bit flips and good luck finding enough energy to do that. Basically proper cryptography without backdoors or flaws is something that cannot be broken even using all of the available energy in the universe. If that doesn't offer enough protection then you could always use a one time pad.

      You're making the assumption that those attacking it are using the same technology that you are aware of - which may be the case. Then again it may not.

      Whatever you rely on, there will be ways around it and governments just have a lot more resource to throw at something than you do. Of course they probably don't care enough to make the effort.

      --
      blindly antisocialist = antisocial
    6. Re:No by Forgefather · · Score: 1

      Hence, why the big three play such an important roll in protecting privacy. Yes, the NSA can circumvent just about any safeguard, beyond encrypting the entire hard drive before unplugging the machine and destroying the keys, but that is only the case for one person.

      Why are they in such a tizzy about google and apple's default encryption? Because when everyone is encrypted it means no more free lunch. They will have to dedicate resources at the individual level, and that will obscure the normal persons data. In order for them to justify the time an expense of cracking encryption they will need prior evidence that indicates the time and expense will be worth the effort which brings us closer to where we should be in law enforcement. It will mean greater attention to physical evidence.

      --
      "There are lies, there are damn lies, and there are statistics"
    7. You're making the assumption that those attacking it are using the same technology that you are aware of - which may be the case. Then again it may not.

      At this point if they have something more than a dwave quantum annealer or I'll go so far as to even say a theoretical 256 bit quantum computer for technology then they likely have moved into the realm of magic pixie dust and unicorn farts. Even assuming that they have some magical theoretical device that is capable of cycling through a 256bit key space without actually destroying data, i.e. the bit flips cost zero energy, they still wouldn't have done any checks on those keys which will take energy at least comparable to the energy to do the 2^256 bit flips. Since none of the leaks from the NSA indicate that they somehow have under their control a separate universe to suck energy out of I'm not worried about that type of attack as brute force is hard.

      That said yes they do have some very smart people working there but there are also a lot of very smart people outside the NSA as well doing crypto work. Given this even the best attacks on something like twofish still are at best theoretical and require vast amounts of power and resources. So if one assumes that indeed twofish is susceptible to this type of attack then the solution is to do what most tools allow which is a cascading of algorithms like TrueCrypts AES->Serpant->Twofish. Add in additional algorithms like 3DES and IDEA and you make it so even if one is compromised or "easier" to attack it doesn't mean that the entire chain is compromised.

      If the government wants to decrypt your stuff the most effective type of attack is the $5 wrench or rubber host type of cryptanalysis. If they are willing to go to that level of effort for your stuff you are fucked anyways. Also if you use a one time pad and then destroy your pad once done like you should then there is no way that the data can be decrypted even with rubber host cryptanalysis, that is unless you memorized the pad which would seem to be an exercise in futility. Cryptography is not going to be the weak link in most cases unless you roll your own algorithm, allow weak ciphers, or do stuff like keep the keys around. More than likely the problem will be with the user doing dumb things like leaving the key under their keyboard, or leaving encrypted volumes open all the time even when the data should be a rest.

      --
      Time to offend someone
  5. Microsoft, really? by Anonymous Coward · · Score: 1

    Windows 10 has telemetry and backdoors that no user asked for. It looks like it was designed with the NSA in mind.

    1. Re:Microsoft, really? by Z00L00K · · Score: 1, Interesting

      I'm also worried about the later Linux kernels - how much hidden features are there in them?

      An independent review of one of the later kernels should be worth considering. However this doesn't really help against a leaking BIOS.

      If I want to be clandestine and run a reasonably secure solution with encryption I would look at designing something using an old 8-bit microprocessor.

      --
      If builders built buildings the way programmers wrote programs, then the first woodpecker would destroy civilization.
    2. Re:Microsoft, really? by Endymion · · Score: 1

      The problem is Intel's new SGX ("Software Guard Extensions"). They allow the creation of memory regions that "maintain confidentiality even when an attacker has physical control of the platform and can conduct direct attacks on memory". The CPU encrypts RAM so you cannot pull keys out of it with a cold boot attack or a logic analyser on the memory bus.

      Of course, the rare news article about SGX likes to assume this is something intended for the user so they can protect their GPG keys. What nobody is talking about is that this lets, for example, Microsoft create unbreakable DRM. MS will finally have their infamous Palladium "trusted computing" platform. They have already started the chain-of-trust with UEFI's SecureBoot. I hope people are taking the hint now with the Windows 10 scandal and fleeing the platform, because you aren't going to be able to remove their spyware once it is in the "trusted" enclave.

      If that isn't worrying enough, consider what hidden SGX enclaves means for Intel's System Management Mode - the network enabled BIOS feature that allows remote access - which is already in your computer if have an Intel system newer than ~2010. This even works independent of the installed OS, so you can't get away from SMM by using Linux.

      Ever get the feeling you don't actually own your computer? Current "trusted computing" design allows an untrusted OS to run most of the time by implementing the DRM/spyware at a lower hardware protection ring while making sure plaintext never leaves the CPU.

      --
      Ce n'est pas une signature automatique.
    3. Re:Microsoft, really? by JohnFen · · Score: 1

      Fortunately, we have choices that are not Intel or Microsoft. BIOS is s tougher problem, but hardly insurmountable.

  6. Uh uh by Anonymous Coward · · Score: 1

    Just make sure you get the source code and verify that it matches the binary you run. Not gonna happen? Exactly.

    1. Re:Uh uh by beelsebob · · Score: 1

      Being compiled on your computer doesn't imply that the binary matches the source code. Your compiler may be maliciously inserting code into other binaries.

    2. Re:Uh uh by Anonymous Coward · · Score: 1

      Is that Microsoft Gentoo, Apple Gentoo or Google Gentoo?

  7. Windows 10 = privacy tool by Anonymous Coward · · Score: 2

    I'd say Free Software is our best hope, not companies like Microsoft who build surveillance into the operating system and encourage people to store all of their files in the cloud. Didn't Microsoft destroy Skype's decentralized architecture so that they could make it possible to wiretap?

    1. Re:Windows 10 = privacy tool by GameboyRMH · · Score: 1

      Didn't Microsoft destroy Skype's decentralized architecture so that they could make it possible to wiretap?

      Oh no no no, they did it for "performance reasons" ;-)

      --
      "When information is power, privacy is freedom" - Jah-Wren Ryel
  8. Winston, hide your razor blades by Jahat · · Score: 1, Troll

    Just look at all the ways that big tech companies partner with the very governments we are supposed to be protected from. Google especially looks like a branch of DARPA.

    --
    Sola Scriptura Sola Fide Sola Gratia Sola Christus
  9. While Microsoft hands them the keys by Anonymous Coward · · Score: 2, Funny

    Windows 10 will safely backup your key to the cloud whenever you encrypted data with Bitlocker. Making the whole process useless. Any government agency, Microsoft employee or hacker who can get in there has full access to your data.

  10. Hotmail wouldn't attach encrypted zip file by sasparillascott · · Score: 4, Interesting

    Yesterday I wanted to get a small file from one computer to another, didn't want to use a thumb drive (didn't have cloud storage on one as well) so I just figured I'd Hotmail myself (via its web interface) an e-mail with the attached file zipped and encrypted (it was a tax doc) to another e-mail address of mine...no problem right? So I try to attach the file and Microsoft decided it had to be able to scan and identify (and log?) what I had in that zip file before it would allow it to be attached (since it was encrypted it wouldn't allow it to be attached...tried it several times...the NSA must be pleased)....so much for user's privacy.

    With all the information, since Snowden, about Microsoft working hand in glove with the U.S. government I have to laugh a little at them being included here - as it seems a PR stunt on their part.

    http://www.theguardian.com/wor...

    1. Re:Hotmail wouldn't attach encrypted zip file by Anonymous Coward · · Score: 2, Informative

      Assuming the file is below whatever the attachment size limit for Hotmail, try renaming it to a JPEG or some other picture format file extension.

    2. Re:Hotmail wouldn't attach encrypted zip file by Anonymous Coward · · Score: 3, Informative

      Had this problem when I was in the military. Charged the extension to .txt or .ppt to get around it.

    3. Re:Hotmail wouldn't attach encrypted zip file by Nemyst · · Score: 1

      The parent meant sending the encrypted zip file with a JPEG extension, thus generally bypassing zip archive recognition and analysis.

    4. Re:Hotmail wouldn't attach encrypted zip file by N1AK · · Score: 1

      Thanks for explaining, I hadn't considered that possibility.

  11. If that is true.... by Revarg · · Score: 3, Insightful

    ... we are screwed. If our best hope against government surveillance are companies who spend most of their time collecting our information to sell to the highest bidder, then we are in for some heavy government surveillance.

    1. Re:If that is true.... by drooling-dog · · Score: 1

      That's completely untrue. The lower bidders get a lot of that sweet data as well.

    2. Re:If that is true.... by Revarg · · Score: 1

      Correct. At the end of the day the companies don't care about the government having the information, they just to sell it to them, not have the gov collect it on their own.

    3. Re:If that is true.... by geekmux · · Score: 1

      ... we are screwed. If our best hope against government surveillance are companies who spend most of their time collecting our information to sell to the highest bidder, then we are in for some heavy government surveillance.

      What makes that even more disgusting is the way in which our government is "paying" these companies in exchange for information.

      Tell me IRS, how much did these companies pay in taxes in recent years as the largest entities in the history of capitalism?

      Yup. Thought so.

      Oh yes lawmakers, tell us again how we should raise taxes. I just love hearing that fucking line again...

  12. Hey - hear him out! by megaronic · · Score: 2

    His argument comes with the weight of jurisprudence.

    Really good for him to put the facts on the table for all to appreciate.

    And it's also been very brave of Google, Apple, Microsoft and Facebook to criticize governements and corporations who don't have high standards of privacy or care to protect the rights of others.

    Well done these four!

    They all deserve a big award.

  13. Who guards the henhouse? by soap_and_dish · · Score: 1

    Not that I'm disagreeing with the summary, but the idea that we're resting our hopes of protection from spying on a different group of spies is probably cause for concern. The government gets away with this thanks to voter apathy. The private companies get away with this thanks to consumer apathy... While more ubiquitous encryption is only something to celebrate, the real cause for celebration might simply be that its presence calls attention to itself and maybe possibly gets people to be slightly less apathetic.

  14. Tech companies = front door surveillance? by Anonymous Coward · · Score: 1

    As a European:
    Goverments have no credibility, especially US gov.
    Corporations in general has no credibility, especially Microsoft and all telecoms companies

    I suggest letting privacy oriented organizations dictate terms to both governments and corporations, and let the shitshow play out.

  15. Rapists in savior's clothing by macraig · · Score: 3, Insightful

    "Tech companies" are no saviors of anyone but their executive staff and their shareholders. It has been well established that, as a general rule, sociopaths are in executive control of virtually every human hierarchy, be it a corporation or gang or government or military. The Peter Principle is a myth, a misdirection; the real principle at work is that sociopaths willing to make the "hard" unethical decisions that disproportionately benefit each organizational tribe are the ones who consistently get elected, appointed, promoted. Tribalism is very alive and well, and it's sociopaths who benefit the most from exploiting it.

    In the case of tech companies, at the same time they appear to be resisting government oppression they are also supplying government (and anyone else with cash in hand) with the tools it needs to oppress. That doesn't sound messianic to me at all.

    So who is this Ryan Calo that he is motivated to publish such misdirecting tripe?

  16. You don't fool me Microsoft! by AndyKron · · Score: 1

    Microsoft pushing back against government surveillance on the one hand, while monitoring our computer usage on the other.

  17. Govenment Is Not Working For It's People by BrendaEM · · Score: 2

    Is this how it ends?

    --
    https://www.youtube.com/c/BrendaEM
  18. Trouble is by JRV31 · · Score: 1

    The corporations want to protect your data; from everyone but themselves.

  19. What the hell sort of propaganda is THIS!? by kheldan · · Score: 1

    ..Google, Apple, and Microsoft pushing back against government surveillance..

    Are you FUCKING KIDDING ME!? Especially Microsoft, with it's gods-be-damned spyware package entitled "Windows 10"!? Seriously!? What the actual fuck!?

    --
    Are YOU using the TOOL, or is the TOOL using YOU? Think about it!
    1. Re:What the hell sort of propaganda is THIS!? by kheldan · · Score: 1

      'Claiming' being the operative word, there. "Here, we'll save you from the nasty 'ol NSA! Trust us!" Yeah sure whatever you say. Sounds like misdirection to me. Here's an idea: How about they collect no data of any kind, that way there's nothing for the NSA to seize from them! What a concept!

      --
      Are YOU using the TOOL, or is the TOOL using YOU? Think about it!
  20. The law is the problem by epyT-R · · Score: 1

    Until the law is changed, providers cannot be trusted as they can be compromised with an NSL.

  21. End-to-end encryption in email by nickweller · · Score: 2

    "Both Google and Yahoo have announced that they are working on end-to-end encryption in email."

    Unless the keys reside only on the end devices then it ain't secure.

  22. If that's true, then we're doomed by JohnFen · · Score: 1

    All of those companies (albeit Apple least of all) are pretty cavalier about their own invasions of our privacy. None of them are defenders. At best, they're just giving us the choice of who will be spying on us.

    If they are our best hope, then we've already lost.

  23. Re:Techy people themselves are... apk by nvm_my_comment · · Score: 1

    DRASHEK.... Welcome back! we missed you from the inquirer days.