Slashdot Mirror


NSA Chief: Arguing Against Encryption Is a Waste of Time (theintercept.com)

An anonymous reader writes: On Thursday, NSA director Mike Rogers said, "encryption is foundational to the future." He added that it was a waste of time to argue that encryption is bad or that we ought to do away with it. Rogers is taking a stance in opposition to many other government officials, like FBI director James Comey. Rogers further said that neither security nor privacy should be the imperative that drives everything else. He said, "We've got to meet these two imperatives. We've got some challenging times ahead of us, folks."

184 comments

  1. Job is forfeit. by Anonymous Coward · · Score: 1

    New appointment for NSA Chief in 3 ... 2 ... 1 ...

    1. Re:Job is forfeit. by bluelip · · Score: 5, Insightful

      Nah, they just have all methods of encryption broken.

      --

      Yep, I never spell check.
      More incorrect spellings can be found he
    2. Re:Job is forfeit. by Ravaldy · · Score: 5, Insightful

      Neither, he's a smart individual that took the time to look at the landscape and him speaking about it in the public tells me he's already convinced the people above him.

    3. Re:Job is forfeit. by fustakrakich · · Score: 1

      Well yeah, next January...

      --
      “He’s not deformed, he’s just drunk!”
    4. Re:Job is forfeit. by Hognoxious · · Score: 5, Funny

      Could be a good time to invest in companies that make $5 wrenches.

      --
      Confucius say, "Find worm in apple - bad. Find half a worm - worse."
    5. Re:Job is forfeit. by pr0fessor · · Score: 1

      This is what I don't understand this is about more than backdoors it's also about outlawing certain encryption types which could make securing financial data difficult, hinder e-commerce, and eventually result in a rise in identity theft and fraud. As far as I know these things are not the the concern of the NSA but are absolutely something the FBI would investigate why does it appear that these positions are reversed.

    6. Re:Job is forfeit. by U2xhc2hkb3QgU3Vja3M · · Score: 1

      You'll never break 4096-bit RSA with that!

    7. Re:Job is forfeit. by JoeMerchant · · Score: 4, Insightful

      It's a realist approach: "If guns are outlawed, only outlaws will have guns." kind of logic, and it's perfectly sound.

      They can try to keep it out of mainstream consumer electronics, but there's too much "DIY" capability in the world to keep strong cryptography contained.

      It reminds me of the early mp3.com days - the genie has long since left the bottle, doesn't matter if you saw it coming or not, it has happened. Now, you'll have to deal with it. Attempting to recapture the genie is a fool's errand.

    8. Re:Job is forfeit. by JoeMerchant · · Score: 1

      Judges do it with "contempt of court." They don't need no steenking wrenches.

    9. Re:Job is forfeit. by Joce640k · · Score: 1
      --
      No sig today...
    10. Re: Job is forfeit. by rickb928 · · Score: 1

      He's not that smart. It's obvious that functional encryption is essential to commerce, to end-user confidence, and even to regulation.

      Obvious.

      --
      deleting the extra space after periods so i can stay relevant, yeah.
    11. Re: Job is forfeit. by rickb928 · · Score: 2

      The NSA knows that it you try to limit functional encryption to certain uses, you will fail.

      The good stuff still be found and used by the criminals, and nothing is gained.

      --
      deleting the extra space after periods so i can stay relevant, yeah.
    12. Re: Job is forfeit. by Anonymous Coward · · Score: 0

      I think the reverence is to this: http://xkcd.com/538/

    13. Re: Job is forfeit. by Anonymous Coward · · Score: 0

      So you're saying that a smart person can't say something that's obvious?

    14. Re:Job is forfeit. by mlw4428 · · Score: 1

      Better a jail cell than a beating with a piece of iron.

    15. Re:Job is forfeit. by Anonymous Coward · · Score: 0

      Always listen to what they say. Public statements are not made "off the cuff".

    16. Re:Job is forfeit. by flopsquad · · Score: 3, Interesting

      It's the triple back burner reverse reverse psychology gambit. It goes like this:

      a) Only a fool will believe that anything about breaking encryption is "challenging" for the NSA. (That, and get involved in a land war in Asia.)

      b) A savvy skeptic will take this whole "yeah you should use encryption but gee it makes things difficult" charade as a sign that NSA has encryption pwned six ways from Sunday, resigning themselves to using whatever's good enough to at least prevent parties != NSA from sniffing their bits.

      c) The NSA doesn't actually have encryption pwned, but is counting on b)'s resignation and a)'s inexperience/disinterest to keep the status quo, which really is challenging but not as bad as it would be if encryption became both stronger and more widely adopted.

      --
      Nothing posted to /. has ever been legal advice, including this.
    17. Re: Job is forfeit. by Anonymous Coward · · Score: 0

      But you can beat the password out of the person with it

    18. Re:Job is forfeit. by Anonymous Coward · · Score: 0

      If you think that adding bits to the key or changing out the algorithm will give you strong encryption then you really have no idea what is happening and are just as susceptible as some dolt using an Ovaltine code breaker ring

      Encryption is a security blanket that will keep most non-state actors out of your goodies, the longer that the NSA leads you to believe otherwise the better for them

    19. Re:Job is forfeit. by cfalcon · · Score: 1

      If they have ALL the encryption broken, they can just have all the data. I'm not even mad.

      A functioning attack on Serpent 256, AES, and Twofish would be a landmark accomplishment, because it would imply that there's some fundamental parts of math known only to the attacker.

    20. Re: Job is forfeit. by Anonymous Coward · · Score: 0

      it isn't about how smart he is, it is his job.

      The S in NSA is security. supposedly part of their mandate is to help secure computers, not just to spy on us. clearly all the politicians that think it is prudent to legislate backdoors or easily broken encryption need the Head of their own Security agency to point out the obvious to them since they aren't smart enough to realize it themselves.

    21. Re: Job is forfeit. by zlives · · Score: 1

      the smart part is the second leg of the conversation...
      Congress, we need infinite budget for our quantum computers and ai masters

    22. Re: Job is forfeit. by Hognoxious · · Score: 1

      Reference. Nonetheless, it's a pleasant surprise that anybody got it.

      Ah well, the weekend will probably go downhill from here.

      --
      Confucius say, "Find worm in apple - bad. Find half a worm - worse."
    23. Re: Job is forfeit. by chaboud · · Score: 1

      I think their attack is to just own the hardware that's running this code. Job. Done.

    24. Re:Job is forfeit. by Anonymous Coward · · Score: 0

      No they just don't need to break it, your keyboard already has built-in key-logger. (or better yet, it seems, Intel Management Engine)

    25. Re:Job is forfeit. by Dynedain · · Score: 1

      People often forget the NSA has a 2nd role as equally important to their spying operations.

      They are mandated to give guidance on securing the US Government and industry against threats - and they rightly encourage departments to use encryption to avoid eavesdropping.

      It's their job to encourage domestic encryption, and to try to break foreign encryption.

      --
      I'm out of my mind right now, but feel free to leave a message.....
    26. Re:Job is forfeit. by gweihir · · Score: 2

      They can try to keep it out of mainstream consumer electronics, but there's too much "DIY" capability in the world to keep strong cryptography contained.

      It reminds me of the early mp3.com days - the genie has long since left the bottle, doesn't matter if you saw it coming or not, it has happened. Now, you'll have to deal with it. Attempting to recapture the genie is a fool's errand.

      Indeed. Just remember that initial PGP was a single person, and so was TOR. And with the current drive to turn everyone into a software developer in school, there is just no way to prevent people from doing it. Sure, many will get it wrong, but some will not. And as encryption software can in many case be made pretty simple, bugs in it will not save the day for the NSA in the long run. Of course, they can still use targeted access, but that is expensive and risky.

      This person has just understood that there is nothing to be gained going in that direction, but a lot of rather huge risks to society. It is rare to see a pragmatist actually serving in such a position.

      --
      Most ACs are not even worth the keystrokes to insult them. Be generically insulted by this and ignored otherwise.
    27. Re:Job is forfeit. by MillionthMonkey · · Score: 2

      You can't just "outlaw certain encryption types". People in the rest of the world won't be falling all over each other to outlaw encryption technology that the American government can't penetrate. Who the hell would want to do business with any American company if it meant they had to spread their ass cheeks wide open for the U.S. government?

      And any "bad guys" could safely and easily encrypt their plaintext "illegally", and cloak it with a steganographic layer to fool any Feds who would bother to peek through whatever half-assed backdoor they might mandate on the rest of us.

      Right now most politicians don't seem to realize that what they want will require a backdoor. Or if they do, they think it will be one that will magically open just for them. They're still in the stage where they think they can just legislate fundamental changes into number theory and computer science.

    28. Re:Job is forfeit. by MillionthMonkey · · Score: 1

      Why would I be a fool to think that NSA can't break properly-done encryption? Just wondering.

    29. Re:Job is forfeit. by flopsquad · · Score: 1

      Well if my (admittedly tongue-in-cheek) gambit idea is correct, then you'd not be a fool, but right on the money. They just want you to think you'd be a fool for thinking that. (So I can clearly not choose the wine in front of me!)

      The NSA's motivations and meta-motivations aside, I suppose it boils down to a somewhat of a tautology--if they can't break properly done encryption, you're not a fool for believing they can't break properly done encryption.

      I have no way of ascertaining whether the NSA has fundamentally compromised an encryption algorithm. Or, for that matter, whether they've slid in under the door and All Your Base'd the software that's supposed to be doing the encrypting. Which makes knowing with certainty that [the encrypting you just did] == [properly done encryption] an interesting challenge.

      --
      Nothing posted to /. has ever been legal advice, including this.
    30. Re: Job is forfeit. by bytesex · · Score: 1

      Your standards are low. That wasn't an obscure reference! Right? I mean, slashdot hasn't come all this way for a simple xkcd reference to be obscure, right?!

      Right?!

      --
      Religion is what happens when nature strikes and groupthink goes wrong.
    31. Re: Job is forfeit. by mikael · · Score: 1

      You can have encryption that is unbreakable for the masses, but can be cracked by brute-force by those with supercomputing systems with hundreds of thousands of CPU nodes.

      --
      Vintage computer adverts: http://www.vintageadbrowser.com/computers-and-software-ads
    32. Re:Job is forfeit. by KGIII · · Score: 1

      I am a bit of a cynic. The first thing that I thought of was that he probably had political aspirations beyond his current position, namely an elected position, and wanted to be on record as being adamantly against it. I really am that cynical, I guess... I still think the same thing. :(

      --
      "So long and thanks for all the fish."
    33. Re: Job is forfeit. by Anonymous Coward · · Score: 0

      That's obvious, idiot!

    34. Re:Job is forfeit. by Anonymous Coward · · Score: 0

      Not at all. He knows that fighting it is futile, so instead now he can ask for as much funding as he needs to break it. It's a win win for the NSA in reality.

    35. Re:Job is forfeit. by Anonymous Coward · · Score: 0

      Those goals are mutually exclusive. It's not like the old days where the adversary uses their own secret encryption technology. We all use the same public encryption technology now.

    36. Re: Job is forfeit. by Anonymous Coward · · Score: 0

      The good stuff still be found and used by the criminals, and nothing is gained.

      Something very useful has been gained indeed. For starters you've cut the signal to noise ratio. At the moment criminal activity is a very small amount of encrypted traffic in general, finding terrorists/pedophiles/communists is like finding a needle in a haystack. Once you've passed a law that says only criminals use encryption all you have a pile of needles. You wouldn't even bother trying to break it at that point, because combined with metadata the encrypted stream itself is evidence of criminal conspiracy.

    37. Re: Job is forfeit. by rickb928 · · Score: 1

      Criminals have the flexibility to use alternative communications channels, even human couriers.

      We, on the other hand, pretty much get locked into banks, ATMs, and HTTPS.

      --
      deleting the extra space after periods so i can stay relevant, yeah.
    38. Re:Job is forfeit. by lsatenstein · · Score: 1

      In countries where handguns are outlawed, rifles registered and licensed and any other semi/automatic weapon is prohibited, crimes are lower and deaths, from guns about 1/100 of the USA rage. That rage is 30,000 gun deaths per year, mostly children and a few ill.
      And if a crime is committed with a gun, the sentence is doubled.

      However, bank robberies are way down in number, thanks to plastic, so who is the criminal going to steal from? Is it the self-serve gasoline dispenser at the corner.
         

      --
      Leslie Satenstein Montreal Quebec Canada
    39. Re:Job is forfeit. by JoeMerchant · · Score: 1

      Perhaps guns and crypto are a bad analogy, but this is /., and if a car analogy isn't available, a bad one will have to make do.

      If crypto is outlawed, not only is it easier to homebrew crypto than guns, but also less directly harmful. What those in power fear is that crypto allows conspiracy, which can ultimately be more destructive and harmful than a single man with a gun ever could be. Crypto allows better planning and coordination of surprise attacks. It comes down to a question of privacy and personal security vs law enforcement's ability to stop "pre-crime."

      My feeling is that crypto should be protected for the same reason that the right to bear arms is protected under the constitution. Ironically, I don't "bear arms" and I believe the world would be a safer place if no-one but outlaws did, and the outlaws were actively pursued and stripped of their personal implements of instant judgement and execution. I think it's a matter of the world changing over the last 200 years, and I feel that in today's world the right to communicate privately across long distance (and time) is more important to protect against those who would abuse surveillance, run massive searches on private communications, and take action - even if that action is "legal investigation" against those who say things that might be interpreted as subversive. Too much is illegal and unenforced, selective enforcement is bad enough, but selective enforcement against people who may have expressed unpopular political views at some time in the past is worse.

  2. Translation by NotDrWho · · Score: 5, Insightful

    The NSA has backdoors.

    --
    SJW's don't eliminate discrimination. They just expropriate it for themselves.
    1. Re:Translation by sinij · · Score: 5, Insightful

      The NSA has backdoors.

      Cloak and dagger backdoor is preferable to legislated backdoor. With NSA-style backdoors you could find and fix them and having them is not certainty. Also, totalitarian government won't have much success demanding NSA allow them to use these.

      While I'd rather not have any backdoors, to choose between two evils I'd take my chances with NSA.

    2. Re:Translation by shawn2772 · · Score: 5, Insightful

      The NSA has backdoors.

      Some, I'm sure. But the NSA cannot count on always having back doors, and this argument wouldn't make sense from that perspective unless Rogers could be certain that it always will.

      No, hard as it may be to believe, I think the real situation here is that the NSA director is not an idiot, and does actually care at least a little about the "secure US communications" part of the NSA's two-fold mission. He realizes that strong encryption is absolutely essential to the future, even though it creates some obstacles for the "break everyone else's communications" side of the NSA's mission.

      Though I also have no doubt that the obstacles it creates aren't nearly as large as we'd all like them to be, because there will always be lots of vulnerabilities.

    3. Re:Translation by Anonymous Coward · · Score: 0

      Somewhat in agreement.

      Not that I want either option; I'd prefer the government that taxes me abide by the laws as already written to restrain the government and not invade my individual privacy unwarranted.

      However given the state of the issue and the state of the topic and considering the many directions things could go, I would prefer that the government abide by already written law and deny unwarranted invasion of individual privacy (not even a smidgen, as our dear leader likes to say).

      And after realizing that I wrote the same thing twice rather than delete and start over I'll just leave it as an example of my desire that the government follow the already written law.

      Finally if the NSA has a way that doesn't violate the 4th amendment (not even a smidgen) than I think I might be OK with that idea (just a smidgen), but only if the method was well documented and public (at least the part about what they would do, not necessarily the technical bits about how they would do it) and again required a warrant.

    4. Re:Translation by Anonymous Coward · · Score: 0

      I'm against pervasive surveillance and government-mandated backdoors. But I have no problem with the NSA finding exploits in the wild, or surreptitiously planting them on adversaries. They'd be failing at their job if they weren't. Don't forget that Allied codebreaking saved tens of millions of lives in WW2. Without it, victory would have at least been delayed for a couple of years, if not lost altogether.

    5. Re:Translation by Anonymous Coward · · Score: 0

      Technical vulnerabilities are just one part of it. There's also the human vulnerabilities, which are really the glaring problem in almost all systems that intend to be secure.

    6. Re:Translation by digitalPhant0m · · Score: 1

      Exactly.

      Be very weary of anyone in our Government who advocates any sort of "freedom" without any arm-twisting.

    7. Re:translation by slew · · Score: 1

      "We've already cracked everything, any encrypted data is clear as water for us; let's not make a big fuss so people just stay with what they've been doing. Keep cool, people."

      Or more probably...

      If everyone continues to uses standard encryption w/o backdoors, we have a fixed target to attack and we are the best in the world at it.

      If standard encryption has backdoors this might cause cryptographers to go rogue and encryption and splinter the eco-system. Then we will be up to our eyeballs in deep shit to keep up with the mess created putting out small fires everywhere.

      If you know the enemy and know yourself you need not fear the results of a hundred battles.
      Victorious warriors win first and then go to war, while defeated warriors go to war first and then seek to win.

        -Sun Tzu

    8. Re:Translation by NatasRevol · · Score: 2

      They've already legally gotten around needing a warrant.

      FISA/Patriot act/whatever. They're not going back now.

      Which also means that they don't need to abide by the 4th amendment.

      And it was, to paraphrase Star Wars, done to a standing ovation.

      --
      There are two types of people in the world: Those who crave closure
    9. Re:Translation by Anonymous Coward · · Score: 0

      Hey you fucking idiot.

      Enemies are different than citizens.

    10. Re:Translation by myowntrueself · · Score: 5, Insightful

      Hey you fucking idiot.

      Enemies are different than citizens.

      You clearly don't work for a government

      --
      In the free world the media isn't government run; the government is media run.
    11. Re:Translation by Anonymous Coward · · Score: 0

      Where have you been the past 15 years. Citizens are the enemy.

    12. Re:Translation by JoeMerchant · · Score: 3, Informative

      Whatever backdoors are present, they are irrelevant if the payload being transferred is itself strong encrypted.

    13. Re:translation by JoeMerchant · · Score: 1

      Symmetric key encryption is basically unbreakable. It has the challenge of sharing the key by secure channel, but once that is done, there are any number of "quasi random" sequences that perfectly mask any signal. If you happen to be able to guess where in the 2^19997 sequence the key says to start, then: kudos, you've cracked it. Thing is, just guessing on short messages can lead to false positive decryptions - you think the message said "this" but in reality it said "that", you just randomly happened upon a key that decoded the source to "this".

      The only way to break a strong symmetric key (strong: something that can be implemented with an 1980s 8 bit micro encrypting >10KBps) is to get the key, if the communicating parties have adequately protected their key, you're screwed.

    14. Re:Translation by Anonymous Coward · · Score: 1

      *dissenting citizens are the enemy* the uneducated masses are okay.

    15. Re:Translation by Anonymous Coward · · Score: 0

      Exactly.

      Be very weary of anyone in our Government who advocates any sort of "freedom" without any arm-twisting.

      Be very weary of anyone who don't know what the word "weary" means as well.

      I know I am.

    16. Re: Translation by rickb928 · · Score: 1

      Time to vote differently.

      --
      deleting the extra space after periods so i can stay relevant, yeah.
    17. Re:Translation by Anonymous Coward · · Score: 0

      Exactly.

      Be very weary of anyone in our Government who advocates any sort of "freedom" without any arm-twisting.

      Be very weary of anyone who don't know what the word "weary" means as well.

      I know I am.

      I learned the meaning from Elmer Fudd. "Be weary, weary quiet; I'm hunting wabbits!"

    18. Re:Translation by gtall · · Score: 1

      Stop watching TV, it is bad for you.

    19. Re:Translation by Anonymous Coward · · Score: 0

      or "The NSA is confident we can crack your encrypted device" ... Much like shutting down Napster, led to Torrents and a better way to pirate... if companies are forced to provide backdoors, then we're going to see new personal programs to override and make encryption tighter...

      By "conceding defeat" on the encryption debate, people will think Google/Apple are safe/secure, and not resort to creating other encryption methods.
       

    20. Re:Translation by Anonymous Coward · · Score: 3, Insightful

      See as a tax paying American citizen I say they can, to paraphrase Star Wars, pass a law to a standing ovation that blatantly violates key elements of previously written law (while being silent as if it does not), but that doesn't mean its 'legal'.

      In fact, regardless of what the un-elected justices have to say about the matter, as a citizen as far as I'm concerned the FISA/Patriot act/whatevers are themselves illegal.

      And they DO need to abide by the 4th amendment.

      And if they DONT want to abide by the 4th amendment then they'd better hurry up and collect all the guns because the fact that the 2nd amendment comes before the 4th amendment and after the 1st amendment seems to be no coincidence to me.

      Amendments 1 through 5 are very clear:

      1) I can say what I want
      2) I can exercise self defense
      3) keep your soldiers out of my life
      4) keep your spies out of my life
      5) keep your lawyers out of my life

      Given the historical context they can be summed up as:
      "Get off my lawn, government"

      So if tyrants wish to violate previously written law, even if they do it unanimously in fashion of standing ovation, it is still illegal. It goes against the nature of the foundations of this nation and its basic laws. It goes against the very context and reasoning of why the constitution was written and why it was written the way it is.

      Also since I'm at it, our president may be an expert on the constitution, but I do not think he is using that expert knowledge to enforce it. I think he is using that expert knowledge to subvert it. That is the fallacy behind 'I'm a constitutional professor' or whatever he has claimed and his crones have peddled.

    21. Re:Translation by NatasRevol · · Score: 1

      I agree. But that doesn't mean they haven't changed the laws over the last 30 or so years. And enforced them at gunpoint.

      And the supreme court has agreed with it, for the most part.

      So what else is there to do?

      --
      There are two types of people in the world: Those who crave closure
    22. Re:Translation by Anonymous Coward · · Score: 0

      Do the same thing but in the other direction.

      Repeal laws that are illegal.

      And since both major parties have managed a scheme where big money can be injected into political power through non human entities and our elite have learned well elite-speak (politician-speak) 'voting them out' might not be an option.

      And since the un-elected supreme court justices aren't voted in, well 'voting them out' definitely isn't an option.

      So I don't believe its a question of 'what else is there to do?'. I think its more a question of 'what options have they left us for changing this situation'.

      That question may not be answerable, but if you look at the constitution and know how to read then you already know this nations founders have given us 'options'.

      Citizen thought: In 2001 a sleeping giant was shook. Some wish to control the giant, but have a difficult time by virtue of not knowing the giant. The government is not the giant. I am the giant.

    23. Re:Translation by Anonymous Coward · · Score: 0

      *sigh* Elmer Fudd had a problem with 'R's. It was "Be vewy vewy quiet; I'm hunting wabbits!"

    24. Re:Translation by Tharkkun · · Score: 1

      See as a tax paying American citizen I say they can, to paraphrase Star Wars, pass a law to a standing ovation that blatantly violates key elements of previously written law (while being silent as if it does not), but that doesn't mean its 'legal'.

      In fact, regardless of what the un-elected justices have to say about the matter, as a citizen as far as I'm concerned the FISA/Patriot act/whatevers are themselves illegal.

      And they DO need to abide by the 4th amendment.

      And if they DONT want to abide by the 4th amendment then they'd better hurry up and collect all the guns because the fact that the 2nd amendment comes before the 4th amendment and after the 1st amendment seems to be no coincidence to me.

      Amendments 1 through 5 are very clear:

      1) I can say what I want 2) I can exercise self defense 3) keep your soldiers out of my life 4) keep your spies out of my life 5) keep your lawyers out of my life

      Given the historical context they can be summed up as: "Get off my lawn, government"

      So if tyrants wish to violate previously written law, even if they do it unanimously in fashion of standing ovation, it is still illegal. It goes against the nature of the foundations of this nation and its basic laws. It goes against the very context and reasoning of why the constitution was written and why it was written the way it is.

      Also since I'm at it, our president may be an expert on the constitution, but I do not think he is using that expert knowledge to enforce it. I think he is using that expert knowledge to subvert it. That is the fallacy behind 'I'm a constitutional professor' or whatever he has claimed and his crones have peddled.

      The 1st amendment only says the government can't write laws to stop you saying what you want. It doesn't mean you can say whatever you want. Speaking or inciting violence/terrorist actions through your words violates the amendment.

    25. Re:translation by Just+Some+Guy · · Score: 1

      Suppose I exchange a one-time pad with a friend, and we both use it correctly. That is strong encryption, and it's not crackable by anyone without the computing horsepower to simulate the universe in which I created it. Mr. Rogers didn't say "we want what-you-think-is-strong encryption for everyone, just not the real stuff". He advocated actual strong encryption for everybody.

      --
      Dewey, what part of this looks like authorities should be involved?
    26. Re:Translation by Anonymous Coward · · Score: 0

      oh teh lulz, depending on the 4th Amendment, eh?

      "the United States Constitution prohibits unreasonable searches and seizures"

      You are asking a court of the government to rule that any search by the government against a threat to that government is unreasonable???

      Do you think that the founders of this country accidentally put that clause in there?

      You are funny, you say funny things

    27. Re:Translation by NatasRevol · · Score: 2

      And just how do you propose to :

      Repeal laws that are illegal.

      While not being able to vote out the incumbent *system* of $ for votes.
      While the supreme court basically agrees with how things are being governed.

      --
      There are two types of people in the world: Those who crave closure
    28. Re:Translation by Anonymous Coward · · Score: 0

      You just keep telling yourself that the NSA is somehow better than a totalitarian government.

      To the rest of the world, we don't see a difference ... just a bunch of assholes who think we should give up our security for your benefit.

      Which looks no different from Iran or any other fucking government which wants to control the internet for its own purposes.

      Fucking Americans, thinking that a little bit of fascism is OK.

      God you people are fucking morons.

    29. Re:Translation by tsqr · · Score: 2

      "the United States Constitution prohibits unreasonable searches and seizures"

      Yes, it does. Unreasonable searches and seizures are those executed either without a warrant, without consent, or without a combination of probable cause and exigent circumstances. Furthermore, "no Warrants shall issue, but upon probable cause, supported by Oath or affirmation, and particularly describing the place to be searched, and the persons or things to be seized."

      So no, the founders didn't accidentally put that clause in there. They also didn't put it in there for the purpose you seem to be proposing.

    30. Re:translation by MillionthMonkey · · Score: 1
      I'm trying to decide what the Feds think they're going to do.
      • Legislate backdoored encryption and hope people worldwide won't mind Americans being able to see their dick pics
      • Mandate into law that all large pseudoprimes must be easy factorizable
      • Make it illegal to send an encrypted message with no primary key included as an attachment
      • Allocate billions of dollars to a "Manhattan Project" until it proves P=NP

      This seems asinine. "Hello Bob? This is Alice. If you're at FBI headquarters could you please turn off the speakerphone?"

    31. Re:Translation by Anonymous Coward · · Score: 0

      "The 1st amendment only says the government can't write laws to stop you saying what you want. It doesn't mean you can say whatever you want. Speaking or inciting violence/terrorist actions through your words violates the amendment."

      First Amendment:
      Congress shall make no law respecting an establishment of religion, or prohibiting the free exercise thereof; or abridging the freedom of speech, or of the press; or the right of the people peaceably to assemble, and to petition the Government for a redress of grievances.

      See now when I read the first amendment I see the first sentence of your statement is true.

      The rest of that dribble is nowhere to be found though. You made that up. That's how you would like to interpret the meaning of the words. But the words that you are interpreting in addition to the ones that I see, about what the first amendment doesn't mean, the dribble? That part, that part doesn't matter in reality.

      The first amendment is very clear about what congress and the government cannot do. If you know anything about the constitution (don't listen to the 'scholar' elected president) then you already know that the theme of the constitution is *drumroll* what the GOVERNMENT 'CANT' DO.

      So not only does your dribble about what the first amendment doesn't mean not exist anywhere in text within the first amendment, it doesn't even fit the theme of the constitution itself.

      So please shut up and go back to 3rd grade again.

    32. Re:Translation by Anonymous Coward · · Score: 0

      They don't need backdoors to the encryption itself, they just need to access the data in its unencrypted form at point A or point B. Encryption is only needed for the transmission of data, and why bother with that when there are plenty of exploits, both known and unknown, to get admin access to your devices. We need a way to ensure that all processes are encrypted and that the actual encryption/decryption takes place at the input/output devices (mouse, keyboard, monitor, etc).

    33. Re:Translation by NatasRevol · · Score: 1

      LOL.

      As if the Supreme Court, by their very nature, can't clarify what the amendments do and do not mean.

      As if the legislative body, by their vary nature, can't make addendums or qualifiers into law.

      And they have. Often.

      --
      There are two types of people in the world: Those who crave closure
  3. So basically, by gcnaddict · · Score: 3, Interesting

    It doesn't matter if you use any variety of encrypted messaging products (imessage, cyph, silent phone, signal, etc.), we've got a backdoor for it already.

    The only challenge is in justifying using it after the fact.

    --
    Viable Slashdot alternatives: https://pipedot.org/ and http://soylentnews.org/
    1. Re:So basically, by kellymcdonald78 · · Score: 1

      It's called parallel construction

  4. translation by Noah+Haders · · Score: 3, Interesting

    "We've already cracked everything, any encrypted data is clear as water for us; let's not make a big fuss so people just stay with what they've been doing. Keep cool, people."

  5. Dose of common sense. by jellomizer · · Score: 2

    The fact that software can be made (and made well) by amateurs. So such regulations saying that software shouldn't have encryption means outside sources will still make it. This will only put the big companies into a disadvantage as they wouldn't be able to make secure solutions to their system.

    --
    If something is so important that you feel the need to post it on the internet... It probably isn't that important.
    1. Re:Dose of common sense. by Jason+Levine · · Score: 4, Insightful

      We"re also living in a global market. Let's say the US banned strong encryption tomorrow. What's to stop someone in another country from posting the source code to a strong encryption scheme? How would you prevent people from downloading and using this? You'd need to implement a "Great US Firewall" and filter all encryption-related sites. Even if you were able to do this, all you'd wind up doing is making US businesses less secure than foreign businesses. More US business hackings would leave the (valid) impression that you should trust foreign companies over US-based ones and the economy would suffer.

      Encryption opponents like to pretend like they can just have Congress pass a law and all that pesky encryption will vanish with no consequences. In reality, banning encryption would create a horrible mess for businesses and consumers.

      --
      My sci-fi novel, Ghost Thief, is now available from Amazon.com.
    2. Re:Dose of common sense. by Anonymous Coward · · Score: 1

      Gone are the days of 48 bit export encryption, here are the days of 48 bit domestic encryption.

    3. Re:Dose of common sense. by Tharkkun · · Score: 1

      We"re also living in a global market. Let's say the US banned strong encryption tomorrow. What's to stop someone in another country from posting the source code to a strong encryption scheme? How would you prevent people from downloading and using this? You'd need to implement a "Great US Firewall" and filter all encryption-related sites. Even if you were able to do this, all you'd wind up doing is making US businesses less secure than foreign businesses. More US business hackings would leave the (valid) impression that you should trust foreign companies over US-based ones and the economy would suffer.

      Encryption opponents like to pretend like they can just have Congress pass a law and all that pesky encryption will vanish with no consequences. In reality, banning encryption would create a horrible mess for businesses and consumers.

      What's stopping a smart person from growing up and writing their own cryptography method as well? All it takes is 1 person. They don't need to leverage current encryption at all. That's why the whole thing is pointless. They need to embrace the different encryption protocols and devise a way to crack them. Or understand there will be things they can't crack.

    4. Re:Dose of common sense. by Just+Some+Guy · · Score: 2

      We"re also living in a global market. Let's say the US banned strong encryption tomorrow.

      Stop at that point and rephrase those together as "let's say the US only allows export of hardware that the US government can snoop on". Forget everything else, because our economy would be dead as every other nation would universal ban the import of our products.

      When a person in power says they want to ban strong encryption, reply by asking why they're working to destroy our economy.

      --
      Dewey, what part of this looks like authorities should be involved?
    5. Re:Dose of common sense. by Anonymous Coward · · Score: 0

      Or you could start a War on Encryption and put everyone who downloads such software in jail.

    6. Re:Dose of common sense. by Anonymous Coward · · Score: 0

      Considering previous Wars on Abstract Concepts, that should be a decent way to make encryption ubiquitous.

    7. Re:Dose of common sense. by blueg3 · · Score: 1

      Let's say the US banned strong encryption tomorrow. What's to stop someone in another country from posting the source code to a strong encryption scheme?

      Maybe he realizes that this is part of how we got rid of "export grade" encryption in the US. Everyone was just writing software in a foreign country and people were importing it. Once you have the Internet, you can't realistically regulate software imports. Not if you're the US and the software is free. So export-grade encryption became simply a penalty for US businesses with little practical effect. At that point, you might as well accept it and change the laws to get rid of the business penalty.

  6. Please ignore what they say. by Anonymous Coward · · Score: 0

    You can't believe anything from the NSA.

    1. Re:Please ignore what they say. by fustakrakich · · Score: 3, Insightful

      Liar's paradox

      --
      “He’s not deformed, he’s just drunk!”
    2. Re:Please ignore what they say. by gurps_npc · · Score: 5, Insightful
      So true. Guy stands up and says something we agree with and we all yell at him "He must be UP TO SOMETHING!"

      People need to shut up and say thank you when you win - even if it's just a small battle of your opponent saying "It's not worth arguing against them"

      --
      excitingthingstodo.blogspot.com
    3. Re:Please ignore what they say. by Anonymous Coward · · Score: 0

      So true. Guy stands up and says something we agree with and we all yell at him "He must be UP TO SOMETHING!"

      People need to shut up and say thank you when you win - even if it's just a small battle of your opponent saying "It's not worth arguing against them"

      Lying liars have lied. Repeatedly. Words mean nothing.

    4. Re:Please ignore what they say. by 93+Escort+Wagon · · Score: 1

      Norman, correlate.

      --
      #DeleteChrome
    5. Re:Please ignore what they say. by Anonymous Coward · · Score: 0

      As long as the Utah data center exists (as in its there, instead of a big hole in the ground, or nothing for that matter) we haven't won shit.

      NSA crone go fuck yourself for trying to tell me to appreciate a possible 'intelligence' community misdirect.

    6. Re:Please ignore what they say. by Anonymous Coward · · Score: 0

      So true. Guy stands up and says something we agree with and we all yell at him "He must be UP TO SOMETHING!"

      People need to shut up and say thank you when you win - even if it's just a small battle of your opponent saying "It's not worth arguing against them"

      Being sceptical of someone that works for an agency that is built on lies is what sane people do.

    7. Re:Please ignore what they say. by clonehappy · · Score: 1

      Thank you! I get this all the time from people. No matter what someone says, they get the classic ad hominem attack thrown at them. Do I like the NSA? Not particularly, after everything I've seen. Do I believe anything the government has to say about most topics? Generally, no. But this man is correct, and his message is correct: "Arguing against encryption is a waste of time."

      We can wax intellectual all day long about whether we think he has ulterior motives for coming out with that message, or whether the organizations he's associated with can ultimately be trusted, but the message is correct and we need to champion it. So others can see it, read it, hear it, reference it; get the message out there to the non-believers. In the end, whether they have broken all known forms of encryption or not, arguing against it is indeed a waste of time.

      Blindly disagreeing with someone because they're "the NSA" means, in this case, that you have to make the argument that "Arguing against encryption is a worthwhile endeavor", and that's just stupid.

    8. Re:Please ignore what they say. by Anonymous Coward · · Score: 0

      Isn't a sad commentary though, that they find themselves caught in the Liar's Paradox?

      Who put them there? What opportunities for real citizen engagement have been lost? If a TLA told the truth now how would we know? How badly has law enforcement been damaged?

      The intellectual underpinnings of extremists have been reinforced, even as their ability to act, at least domestically, has been weakened.

    9. Re:Please ignore what they say. by fustakrakich · · Score: 1

      The reputation precedes them. It's simply impossible to tell when they are lying. So the safest bet is to assume the worst.

      --
      “He’s not deformed, he’s just drunk!”
    10. Re:Please ignore what they say. by gurps_npc · · Score: 1
      If you are so foolish as to assume they are always lying, then they start telling the truth to manipulate into believing lies.

      The safest bet would be to ignore everything they said completely. But you don't want to play safe, you want to complain.

      --
      excitingthingstodo.blogspot.com
    11. Re:Please ignore what they say. by fustakrakich · · Score: 0

      The safest bet would be to ignore everything they said completely.

      Yes, that is usually what I do. All stories by and about secretive intelligence services should be taken with plenty of salt. Since lying is part and parcel to the business, it is logical that you lie the best you can, *for the right reasons* of course..

      The rest of your post is unintelligible...

      --
      “He’s not deformed, he’s just drunk!”
    12. Re:Please ignore what they say. by Anonymous Coward · · Score: 0

      Dude, he works for the NSA.

      There is NO CHANCE that he isn't up to some sort of evil -- he wouldn't be doing his job otherwise. This is the NSA we're talking about. Their job is actually to be evil. That's their purpose.

    13. Re:Please ignore what they say. by Anonymous Coward · · Score: 0

      Nah. He's saying it because saying it suits his purpose. That has no bearing on whether its true.

      The enemy will lie, the enemy will tell truth, the enemy will do whatever is most useful for them.

      Maybe he says this because they're confident that they can break encryption and nobody else can. Maybe he says this because he isn't comfortable with how quickly a trillion-dollar industry is about to start gunning for his agency, and he's concerned that towing the anti-encryption line will cost his agency more of its power than just living with encryption will. Maybe one of the common encryption standards is actually really hard for them to break and he's hoping that his comment will make people worry that its broken and switch to something less secure. Maybe he's just hoping that the fear of broken encryption leads to a proliferation of many incompatible standards, making encryption less convenient again (and therefore less common).

      Hard to say, lots of reasons why he might say a thing other than simply "it's true and he believes it"

      That he's intending evil whatever he says is a given (it's his job), but you can speak truth while doing evil. It's actually a very useful tool, especially when dealing with adversaries that are aware of your evil intent, as it tends to throw them off guard.

    14. Re:Please ignore what they say. by Anonymous Coward · · Score: 0

      Yes, I think a lot of people are missing the point that disagreeing or ignoring the guys is actually losing the argument.

      It doesn't matter if he's a liar and can already crack consumer encryption, the other side of the discussion want to *ban* strong encryption. If we have no encryption then everybody can read all communications. If we have current encryption then at least only a handful of agencies can read the communications.

      I'd prefer to have strong encryption remain legal today that the NSA can crack because tomorrow may be the day we can have both legally strong encryption and encryption that the NSA cannot break.

  7. Refreshing by Anonymous Coward · · Score: 5, Insightful

    It's refreshing to hear someone address this issue with a little sanity. However, I still don't trust any three letter agency.

    1. Re:Refreshing by sumdumass · · Score: 1

      I was thinking the same thing. But i also wonder if somebody spiked his coffee too. It's odd to see an agency head put sanity and logic above political will in such a public and clear way.

    2. Re:Refreshing by Anonymous Coward · · Score: 0

      I was thinking the same thing. But i also wonder if somebody spiked his coffee too. It's odd to see an agency head put sanity and logic above political will in such a public and clear way.

      He's simply saying what we want to hear.

    3. Re: Refreshing by Anonymous Coward · · Score: 1

      I tend to think that breaking encrypted messages is a decent part of what the NSA is budgeted to do. Legislate it away and they lose funding. Although, it is nice when pragmatic views arise, regardless of their motivations.

    4. Re:Refreshing by The-Ixian · · Score: 1

      Would you trust them if they all when to 4 letters or 2 letters and a number or 1 letter and 2 numbers?

      --
      My eyes reflect the stars and a smile lights up my face.
    5. Re:Refreshing by Anonymous Coward · · Score: 0

      FYI, your livelihood and security is pretty much dependent on the functioning of three letter agencies

      Trust or trust not, you should still acknowledge the need

    6. Re:Refreshing by JazzLad · · Score: 2

      I trust NASA, so maybe :)

      --
      "If you have nothing to hide, you have nothing to fear." - Every fascist, ever
    7. Re:Refreshing by Anonymous Coward · · Score: 0

      I acknowledge that in their perceived attempt to protect me, they are harming me. And you. You should at least admit that.

    8. Re:Refreshing by Anonymous Coward · · Score: 0

      Yeah, they set up/remote foreign dictators, keep our militaries in foreign countries who don't want us there, then wonder why they try to force us out of there. Terrorist! Encryption! Security!

      Morons.

    9. Re:Refreshing by Anonymous Coward · · Score: 0

      It's refreshing to hear someone address this issue with a little sanity. However, I still don't trust any three letter agency.

      What did the WWF ever do to you??

    10. Re:Refreshing by SvnLyrBrto · · Score: 1

      Well, they may be a bunch of evil bastards. But the NSA and the NRO are the three-letter-agencies that are most likely to be technologically clueful. So, as much as I bet they wish that a mandated backdoor for the government were a feasible option; they are also the ones most equipped to know how profoundly stupid a suggestion that is.

      --
      Imagine all the people...
    11. Re:Refreshing by Anonymous Coward · · Score: 0

      So, you don't trust "USA"?

    12. Re:Refreshing by rtb61 · · Score: 1

      Straight up doing a Hollywood reboot. Reputation is crap, they are trusted by no one in the rest of the world, they really have soiled themselves and as such working with others has become very difficult. So they are forced to at least publicly attempt to rebuild their image, of course based upon the lies, years and years worth of lives, that rebuilding of reputation is going to be extraordinarily difficult. To enable working with others again, specifically in defensive roles, likely they will have to be stripped of those defensive roles and those roles passed onto another agency, mix of FBI and FCC. The shrunken NSA in offensive roles, only, as suits their lack of character, can go back to hiding behind No Such Agency, in far smaller premises and the FBI and FCC can over the existing structure.

      --
      Chaos - everything, everywhere, everywhen
  8. Reverse psychology by Nidi62 · · Score: 5, Funny
    I see what he did there. Because so many people are speaking out against everything the NSA is doing, he's trying to trick us. He knows if he comes out and says encryption is good, everyone else will shout back "no, we don't need encryption!". This will then allow the NSA to say "Ok, we will listen to you, no encryption for anyone!".

    He's a genius, he's pulling the classic Bugs Bunny/Daffy Duck Hunting Season trick on us.

    --
    The only thing necessary for evil to triumph is for it to be pitted against a slightly greater evil
    1. Re:Reverse psychology by cayenne8 · · Score: 1

      He's a genius, he's pulling the classic Bugs Bunny/Daffy Duck Hunting Season trick on us.

      DUCK Season!!!

      --
      Light travels faster than sound. This is why some people appear bright until you hear them speak.........
    2. Re:Reverse psychology by i.r.id10t · · Score: 1

      That or he is planning for future budgets.

      "Yah, we'd really like to be able to intercept and listen in on $GROUP but they are using strong encryption so we're gonna need a few hundred million for $PROJECT so we can have a chance at listening"

      --
      Don't blame me, I voted for Kodos
    3. Re:Reverse psychology by FlyHelicopters · · Score: 2

      DUCK Season!!!

      WABBIT Season!!!

    4. Re: Reverse psychology by Anonymous Coward · · Score: 0

      You steal keys or listen before the encryption step.

    5. Re:Reverse psychology by Torodung · · Score: 1

      DUCK Season!!!

      WABBIT Season!!!

      Elmer season?

    6. Re:Reverse psychology by wonkey_monkey · · Score: 1

      DUCK Season!!!

      WABBIT Season!!!

      Wabbit season...

      --
      systemd is Roko's Basilisk.
    7. Re:Reverse psychology by Anonymous Coward · · Score: 0

      I say it's DUCK season and that's FINAL.

      FIRE!!!

    8. Re:Reverse psychology by Anonymous Coward · · Score: 0

      "I may be a sqwewy wabbit, but I'm not going to Alcatwaz!"

    9. Re: Reverse psychology by i.r.id10t · · Score: 1

      But do the congress critters in charge of allocating funds know this?

      --
      Don't blame me, I voted for Kodos
  9. SA Chief: Arguing Against... by sdinfoserv · · Score: 2

    ...civil liberties, freedom, the 4th Amendment, and the 5th Amendment is a waste of time.

  10. "We have some challenging times ahead of us" by Anonymous Coward · · Score: 5, Insightful

    Bullshit. Crime rates have never been lower. The chance of being injured or killed by terrorism is vanishingly small and comparable to a lightning strike. The advantages of secure communication far outweigh any potential aid it gives to criminals. The only challenge here: a government organisation trying desperately to preserve itself and its budget in the face of increasing scruitny and irrelevance.

    1. Re:"We have some challenging times ahead of us" by 110010001000 · · Score: 2

      Well "we" means the NSA in his statement. So you are right.

    2. Re:"We have some challenging times ahead of us" by chipschap · · Score: 1

      The chance of being injured or killed by terrorism is vanishingly small

      I won't argue the stats, but if so, ask yourself why this is the case.

    3. Re:"We have some challenging times ahead of us" by Anonymous Coward · · Score: 0

      Is there any way that a civilian would have access to the information necessary to construct an informed opinion on that subject? For the general public, it seems to be just a question of personal philosophy.

    4. Re:"We have some challenging times ahead of us" by Anonymous Coward · · Score: 0

      Posting anon due to mod...

      When I was in college I took some criminal justice classes (I am not in the field) and it was predicted that crime would go down significantly after the year 2000 because there would be less males ages 16 to 21 to commit crimes. This was due to baby boomer's kids getting older. Furthermore, I've heard that now that we're all connected young people have more outlets to express their frustrations.

    5. Re:"We have some challenging times ahead of us" by bigfinger76 · · Score: 3, Informative

      Maybe because terrorists represent a vanishingly small percentage of the overall population. In other words, they're not everywhere and out to get you. Tiger-repellant rocks, anyone?

    6. Re:"We have some challenging times ahead of us" by Anonymous Coward · · Score: 0

      Lisa: I could say that this rock keeps tigers away.

      Homer: Hmm... how does it work?

      Lisa: It doesn't, it's just a stupid rock. But I don't see any tigers around, do you?

      Homer: Lisa, I want to buy your rock!

  11. What's wrong with people? by Artem+S.+Tashkinov · · Score: 0

    I mean I cannot understand at all why FBI/CIA/police/government want backdoors in "encrypted" protocols.

    After Snowden's revelations any halfwit with half a brain realizes that you cannot trust anything you haven't created yourself. Thus if you want real privacy/control/encryption, you will implement your own means of communication which employ proper encryption, which means only legal entities, people who trust official/commercial means of communication (WhatsApp, Viber, Skype, e-mail, etc.) will be spied on while real criminals will be out of reach.

    Is this rhetoric about encryption is nothing more than a disguise to spy on all of us while those who have power won't be touched?

    Well, fuck them.

    1. Re:What's wrong with people? by Anonymous Coward · · Score: 0

      I worked a contract for A Very Large US Bank in Boston where we wrote, from the ground up, a web-based, secure, videoconferencing application.

      Why?

      So that Large Bank would know there were NO backdoors. I worked VERY closely with the developers (I am a tech doc specialist, 35 years in the business) and they told me this EXPLICITLY.

      What Large Bank will do when US/NSA/FBI/etc. find out they can't peep into this data stream was the question nobody (but me) asked and which nobody would answer.

      Posting AC because DUH.

    2. Re:What's wrong with people? by Anonymous Coward · · Score: 0

      interesting

  12. sounds like a research project by known_coward_69 · · Score: 1

    encrypt stuff with every possible key, look for some kind of common signature or order in the data and make an algorithm to break it using the possible keys

    1. Re:sounds like a research project by Anonymous Coward · · Score: 0

      This is an actual thing, it's called a Known Plaintext Attack. It should not be feasible for any sufficiently secure algorithm.

    2. Re:sounds like a research project by Anonymous Coward · · Score: 0

      This would require more storage than there are particles in the universe.

    3. Re: sounds like a research project by Anonymous Coward · · Score: 0

      Too late. Chinese Remainder Theorem.

    4. Re:sounds like a research project by Torodung · · Score: 1

      Heil bloody Hitler, in fact.

  13. Besides... by Anonymous Coward · · Score: 0

    we (NSA) already have access to all of it anyway, so we don't regard it as an impediment like the others do.

  14. Amen! by Anonymous Coward · · Score: 0

    I gots me guns and if any of dem gubberment types try anything with me and my boys, we're gonna go off and take over some gubberment emtee shack in the woods there! Because the Second Amendment is there to fight tyranny!

    Why look at my brethren in Oregan, the gubberment is to scarred to do anything! We gonna rise up everywhere! In the dessert or in the forest and the gunnerment is gonna get it's just deserts! Damn strate!

    Freedom!

  15. No challenging time at all by Anonymous Coward · · Score: 0

    Encryption without backdoors is the only answer. There is no compromise on this. If there is compromise, we might as well just send all of your information in plain text and give up and go back to the days without any electronic communication.

    We are continually moving towards more and more peaceful times. We are coming to the end, though it may still take 100s or 1000s of years, of the primitive aggressive parts of our brains running our society. We are still a primitive, young society, but we are so much better than any generation in the past.

    Of course this could all change again if we start encountering other alien races before we are ready or before they have rid the primitive warring bullshit out of their society.

    1. Re:No challenging time at all by FlyHelicopters · · Score: 2

      We are continually moving towards more and more peaceful times. We are coming to the end, though it may still take 100s or 1000s of years, of the primitive aggressive parts of our brains running our society. We are still a primitive, young society, but we are so much better than any generation in the past.

      Many young people have said this MANY times over the years, they have all been wrong.

      But don't worry, I'm sure it must be right THIS time.

      Human nature hasn't really changed, we still use violence to resolve our disputes.

    2. Re:No challenging time at all by Anonymous Coward · · Score: 0

      What FlyHelicopters said.

      This will never change as long as sexual attraction deems intellectuals to be undesirable and jocks to be desirable. Major, global disasters do tend to shake things up, however. Look at how two world wars changed Europe. Look at why the USA failed to learn the lesson Europe did.

      Always remember that evolution doesn't have a goal or some enlightened state it works towards. All that matters is who reproduces more. Idiocracy was a documentary, not a comedy film, at least if the status quo had continued past 2019.

      We are continually moving towards more and more peaceful times.

      This won't last long after BRICS moves away from the US dollar and the value of the dollar tanks. Never underestimate the power of millions of people in every major city who are going hungry and being evicted. Millions of people who the previous year had no problem affording the cost of living now homeless and starving because a few numbers in a computer changed. The crops didn't have blight and the buildings didn't suddenly collapse. It's not that there wasn't work to be done, just the same as before. Thus the inevitable collapse of capitalism.

      The walk to the gas station will be for your own good. Things do get better, maybe even better than they are now in some ways. We tend to talk about capitalism in the same tones communism is generally discussed today. The economic system that evolved once we stopped scrambling to survive really isn't either. I'd say it more closely resembles what more people have been calling for: universal welfare with a free market.

      I'm not from far enough ahead in the future to tell what this system will become in 200-300 years.

    3. Re:No challenging time at all by Shompol · · Score: 1

      We are coming to the end, though it may still take 100s or 1000s of years, of the primitive aggressive parts of our brains running our society.

      Aggressive parts are there to give you a chance at natural selection. It cannot be abolished. Just because we stopped spearing people we don't like does not mean we stopped reaping benefits of sometimes being aggressive.

  16. Satan skating to work... by Lord_Rion · · Score: 1

    Someone in the Government who has a clue... AND is speaking out.

    I think I may faint.

    --
    --Hired Net Grunt
  17. Cisco never gets criticized by jones_supa · · Score: 0

    How do we not know if there is not a backdoor in every Cisco router? I find it odd that this issue is not criticized more often by the tinfoil hat open source folks. The Internet is largely woven together using these turquoise boxes running proprietary software. What if NSA can connect to any of them with administrator access, allowing to manage traffic and tap on data that passes through. What do you think about this possibility?

    1. Re:Cisco never gets criticized by 110010001000 · · Score: 1

      It is possible. But there is no need to do all that. Google, Microsoft, Apple, etc all HAPPILY handed over access to their databases. Emails, messages, sites visited, profiles, etc. It is too much trouble to mass tap traffic. Just go to the endpoint datastores and search through those. You cannot mass monitor all the traffic on the Internet. You can selectively monitor a subset of it, and ALL the endpoint datastores. People should be mad that Apple, Google, etc are happy to hand over all the data they collected on you. But those companies are making more and more money every quarter so obviously people don't care.

  18. A waste of time? by fustakrakich · · Score: 1

    Not if I'm being paid to make the argument, it isn't. Probably the best argument against encryption is that against the NSA/CIA it is snake oil, like defending yourself from a nuclear bomb with a .22

    --
    “He’s not deformed, he’s just drunk!”
    1. Re:A waste of time? by Opportunist · · Score: 2

      Typical argument from someone who doesn't understand what encryption is about and how it works. It's the same shit as "Oh, against a determined hacker you cannot fortify your system". Yes you can. But I digress.

      The mathematics behind cryptography tell us that, provided there are no side channels, unknown flaws in the algorithm or implementation errors, these keys are for the foreseeable future unbreakable. With perfect forward secrecy we even have the ability to ensure that even if they manage to break one communication key, no other communications are compromised. Even with all the computing power currently available on the planet breaking such an encryption would take thousands of years, and with a little more complexity we're at the level of "longer than the universe probably is going to exist".

      All this of course as long as the algorithm is solid and implementations are flawless. We have noticed that the latter is often not true, and even the former has been shown to not be the case all the time. Yes, it is possible that some TLAs do have certain information about such flaws. But as far as we know the current encryption systems are solid and safe.

      --
      We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
    2. Re:A waste of time? by fustakrakich · · Score: 0

      Your argument is based on faith.

      --
      “He’s not deformed, he’s just drunk!”
  19. Re: Translation - "unless Rogers could be certain. by Anonymous Coward · · Score: 0

    Microsoft, uefi, mobo chips, winX.

    At this point, if you buy a computer with doze ready
    to do first-time boot, but you plan to use another OS,
    perhaps you would be wise to never boot doze.

    Of course, even that may not matter, it could be
    just be uefi chipset combo is all that is needed now

  20. Common sense from a surprising direction by kheldan · · Score: 5, Interesting

    Someone like that is the last person I'd expect to bust out with a public statement like that, but at least on the surface it makes me feel a little better that not everyone in the government is as dumb as a doorknob.

    --
    Are YOU using the TOOL, or is the TOOL using YOU? Think about it!
    1. Re:Common sense from a surprising direction by Anonymous Coward · · Score: 0

      Misdirection, disinformation.

      Why would you believe this?

    2. Re:Common sense from a surprising direction by Anonymous Coward · · Score: 0

      2016:
      Not reading every word of a comment
      Specifically not reading boldface
      Completely missing the point

      What's it like to know a 3rd-grader has better reading comprehension than you do?

    3. Re:Common sense from a surprising direction by JustNiz · · Score: 1

      Yeah I feel the same way.
      I'd love to believe this guy just gets it, but It does very much make me wonder if something like they've just figured out how to get their quantum computer to do general case decryption has just happened though.
      At least he seems to be bonking the obviously clueless lawmakers over the head for whatever reason, so I'd say its a net win.

    4. Re:Common sense from a surprising direction by kheldan · · Score: 1

      but It does very much make me wonder if something like they've just figured out how to get their quantum computer to do general case decryption

      See, that's not as bad as braindead politicians ruining or banning encrytion, because at least it's a more level playing field, then; the Bad Guys' encryption would be just as vulnerable as any other encryption is, and it would still likely take some time to crack the encryption in any case, so they'd be less likely to be decrypting everything, as opposed to encryption being about as effective as taking the deadbolt off the front door of your house and using a strip of duct tape instead, which is what a 'backdoored' encryption method would be like.

      --
      Are YOU using the TOOL, or is the TOOL using YOU? Think about it!
    5. Re:Common sense from a surprising direction by JustNiz · · Score: 1

      Very much agreed.
      It just occurred to me that this is actually pretty analogous to the braindead "lets ban people from owning guns" idea.
      Both incorrectly presume that for some magical unexplained reason, bad guys will somehow suddenly choose to give up using the "bad thing", except in reality all thats happening is you're now stopping only already law-abiding people from defending themselves so the playing field gets even more unbalanced.

    6. Re:Common sense from a surprising direction by DNS-and-BIND · · Score: 0

      Maybe it's yourself who is closed-minded? As soon as you hear "NSA" you close your brain and start shouting "EVIL EVIL EVIL", right? How are you not aware that there may be different views, and people can have them? It's like not being aware that NRA members are good, solid taxpayers who don't actually want to murder people while laughing. Weird, eh?

      --
      Shutting down free speech with violence isn't fighting fascism. It IS fascism!
  21. Goes both ways by watermark · · Score: 1

    For the people advocating for backdoors/key-escrow/etc, I always wondered what they would say about their own communications. Would they themselves be willing to escrow the keys to their own communications? All of them, including top secret ones? If not, then why?

    1. Re:Goes both ways by Opportunist · · Score: 1

      But of course they would!

      At least as long as they're the ones doing the escrow.

      --
      We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
    2. Re:Goes both ways by PPH · · Score: 1

      I don't know about key escrow. But when it comes to back doors, those same people sure do seem to get their panties in a bunch when they find one in their own stuff.

      --
      Have gnu, will travel.
  22. Reasonable encryption balance, for e-mail? by Midnight+Thunder · · Score: 1

    Given e-mail is for the most part sent in the clear, thus equivalent to a postcard, what amount of encryption would make it letter post equivalent (indicating privacy, rather than sensitivity)? Does 256-bit sound reasonable (thinking low effort of encryption/decryption, but easily openable by an agency, using resources they already have using a court order, if it came to it)?

    --
    Jumpstart the tartan drive.
    1. Re:Reasonable encryption balance, for e-mail? by godrik · · Score: 1

      The problem with encrypting emails is "who performs the encryption/decryption?" If the gmail server performs the crypto, then it is pretty much useless. If the client performs the encryption/decryption, then you get two problems: key management, and loss of service. If the server does not have the full text, then you can not use server side server, indexing, .... which have become standard tools.

  23. Next Up by Anonymous Coward · · Score: 0

    "Former NSA director Mike Rogers, has been terminated with cause. The Agency understands he wishes to spend more time with his family. He was accused of being disgruntled, insufficiently supportive of the aims of the NSA, not following the party line, and having sex with truffles. Communist, French truffles (oo la la!)!! The NSA wishes him well in all his future endeavors."

    It hasn't happened yet and it may never happen. But if it does happen, you heard it here first!

  24. What happened? by Opportunist · · Score: 1

    Didn't we just yesterday have someone from some TLA ranting and raving about how we must accept not having encryption anymore? What happened? Found a critical flaw in all encryption schemes in the past 24 hours?

    --
    We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
  25. Flawed premise... by mark-t · · Score: 1

    Encryption is bad only if you presume that either the only, or at least the far most likely reason anyone might want something to be hidden from others is because they are doing or have done something wrong.

    Except that this is *FAR* from true. Insisting that people shouldn't try and hide things from people who might claim to mean well is equivalent suggesting that people really shouldn't have privacy at all, and it is nothing less than absurd to suggest that nobody should have any rights to any privacy, ever, unless you do things like outlaw clothing (which may hide a person's body from public view), for example. With a flawed premise, the entire argument for suggesting that strong encryption should be outlawed falls apart.

  26. Paranoia! by Anonymous Coward · · Score: 0

    Slashdotter paranoia is as bad as baby boomer paranoia (eg, the ones who want to make encryption worthless because terrah).

    We're talking about the agency that developed SELinux.

    Yeah, they might have some interest in keeping the secrets of American corporations out of the hands of the Chinese and others.

  27. NSA key breaking by MooseTick · · Score: 1

    I doubt there are any backdoors in RSA keys, but most https traffic uses 256-bit symmetric keys. Let's say the NSA or whoever has a bank of computers that can crack that key in a day. With today's CPUs, you could encrypt your traffic with 10,000 keys relatively quickly. Then they would have to decrypt each one at a time. Of course, exchanging those keys may be complicated. Maybe to accomplish that you need a 4096-bit key.

    The biggest problem with this theory is if they can crack a key, how long does it take? 0.001 second, 1 second, 1 day, 1 year, etc? A 10,000 key deep encryption would be fine if it takes a day to break but obviously not if the process can be completed in 2 seconds.

    I've really thought about starting a service that writes OTPs to a 2TB drive, sends them to customers, and they use that to connect back to offshore servers that act as a proxy for them. Then, unless someone tampered with the drives intransit all communications would be secure.

  28. What by Anonymous Coward · · Score: 0

    Who are you, and what have you done with the real head of the NSA?

  29. Re: Translation - "unless Rogers could be certain. by Anonymous Coward · · Score: 0

    I've been wondering for some time if there's something already hidden in my UEFI mobo waiting to be triggered by a Windows update that will permanently disable BIOS boot and make UEFI boot no longer recognize my own key.

    It's kind of disconcerting that an OS that's been UEFI booted can change UEFI settings as it is. I think that was the strangest thing I learned when I went to learn UEFI: one can only enable UEFI boot for an OS from another OS that's been UEFI booted. It's not good enough to simply load in my key and say "ok, here's the UEFI boot partition and the kernel image, go at it!"

  30. Five is right out. by Anonymous Coward · · Score: 0

    But NASAA? Who knows with those jokers.

  31. He also Made that Point on Cyber Hygiene by Koreantoast · · Score: 2

    Admiral Rogers also made that point too - that 80% of the government's cybersecurity problems would be solved if he could get military personnel to treat "cyber hygiene" the same way that they manage rifles, artillery and other kinetic weapons.

  32. Link to Full Webcast and Q&A Session by Koreantoast · · Score: 1

    For those interested, here is a link to the video for the full presentation which was made at the Atlantic Council on Thursday.

  33. Doublespeak by Anonymous Coward · · Score: 0

    Don't argue about encryption people, what a waste of time. We already got backdoors in everything.

  34. spying is a gray area, let's be pretty clear by Anonymous Coward · · Score: 0

    Mike Rogers and other NSA employees definitely get it, we're approaching a cryptography apocolypse. Also, state mandated backdoors that everyone knows about are exactly what they don't want. The NSA wants to slip the backdoors in without the public knowing about it. In their defense, that is their job. It is kind of the point of being a security agency. The mandatory EXPORT ciphers of the 1990s that weakened everyone and caused heartbleed is the kind of thing they don't want, it hurts our governments and corporations. Whereas slipping sniffers during shipment into the USB cables intended for foreign adversaries is.

  35. NSA and legality by Anonymous Coward · · Score: 0

    In reality, NSA *does* care about legality. Part of what came out with Snowden's stuff is that the folks at NSA were already saying "hey, we're overcollecting, how do we not do that".. and not just because they want to reduce the volume.

    NSA also makes a distinction between "collecting" and "looking". If I build a receiver that scoops up all RF transmissions in a block of spectrum and records them, that's pretty different from tuning into specific signals either in real time, or in the recorded data.

  36. Be...cause... by Greyfox · · Score: 2

    Is it because privacy and security are only threats to tyrants? The fact that even raising the issue isn't political suicide for any politician or civil servant who dares suggest it is, frankly, embarrassing.

    --

    I'm trying to teach myself to set people on fire with my mind... Is it hot in here?

  37. Back doors to themselves by seoras · · Score: 1

    Taking into context a certain presidential candidate's use of private email server to do government work which will not be an exceptional case but a common past and future problem for national security does the government want a back door to itself?
    Since the root problem here is human individuals, bad guys, good guys, public, etc how to you prevent your own gun being turned on you.
    I suspect that's part of the issue from Rogers stand point.

    Of course he may not have got the memo about "2+2=5" and the other one reminding him that "The heresy of heresies is common sense"
    He could just be looking for a good Retirement Package in time for the Ski season.

  38. mmhmm by Anonymous Coward · · Score: 0

    https://twitter.com/normative/status/618860879765970944

  39. They don't need to break encryption by Anonymous Coward · · Score: 0

    Actually it's simpler; the NSA has all that it needs with weak endpoints and metadata - they don't need to backdoor encryption*. Which gets to the NSA dual mandate, their job is to enforce/enable/encourage strong encryption for the rest of the US to use. Additionally they know better than any that trying to weaken encryption is a fools errand (never mind their stupid attempt at a backdoor in the .

    Look at it this way; from metadata collection they know who to care about. For those, they usually know how to get into the end points (message originator and receiver - i.e. computer, phone etc). As to what's being said? As far as they're concerned it seems it doesn't matter; just send in the drones.

    It's actually a grim assessment, but at least it is refreshing that somebody in the government is willing to point out that trying to weaken encryption is idiocy.

    * It's possible that they have the keys to quantum encryption so don't care - notable in light of their surprise announcement last year to gear up for it. But presently nobody believes they've solved that problem.

  40. security vs privacy by Anonymous Coward · · Score: 0

    "neither security nor privacy should be the imperative that drives everything else."

    Don't believe it. Security and Privacy are opposite.

    If powers of authority really wanted to protect your security, then privacy would be the natural course.

    Allowing anyone to invade your privacy is an offence against you, your property and those you love.

    Removing privacy is the removal of security.

    Don't be foolish. Having someone watch you 100% of the time and invade your private property is dangerous and will lead to your loss of goods, dignity, free thought and all private intercourse.

    Do these people think you are stupid? You are not stupid. So stand up and call out the names of those who repeat lies and propaganda.

    "Mike Rogers... you are a liar and do not serve to protect the country or its people."