Its coming from the company that is making alternative OS for cellphones, the kind that could use existing, already in market cellphones, to expand their userbase giving ways for people to install it on them (if Sailfish runs in Wayland, anyway), without having to wait for other companies to bundle sailfish with their phones or to them to be available in all markets (the announced ones so far were targeted for China or India, i think)
They don't need to monitor "the internet", few local points have good portion of all communications, if the private companies that handle that traffic do a lot more with it than just plain storing, then those 3-letter agencies can do it, and better . And they don't need to have people to watch all over it, pattern matching could do both online and offline searches to pick "interesting" traffic, and then focus on people (is not that there are'nt examples that they are actually doing it)
Probably they don't monitor/store "noise" (i.e. images, video and other binary formats that adds most of the traffic, and probably they don't focus in encrypted communications like https or vpns unless something calls their attention), but they surely have the resources to monitor all the rest.
What if people start getting spam asking about fake big sums of money they received in private transactions/payments? Your mail is becoming a vulnerability not because the software that you uses to read it, but the "automatic" action that will take the new readers of your mail, like social engineering targetting the 2nd row of spectators.
Free as in beer or free as in freedom? If is hidden what they do with you is then probably you are the product. But if is done in an open, clear, and verifiable way, you may have some ground to base your trust on it or not.
Since the start of internet is pretty common to see in logs hosts that do ip scanning. Having in the open one that shows to the public the kind of information that gets most of them since the beginning just put into the light how vulnerable are the guys without a clue. The good guys that have a clue had a firewall since the start, and the bad guys with a clue had that database compiled from long ago.
So, its responsibility of the people that have devices on public ip addresses to block/filter/password them, and maybe to the cluelest government that is pushing a cyberwar since last decade to warn, educate, and assist on fixing their citizens on not be so trivially vulnerable. And, of course, thank, not punish, the people behind Shodan for this warning.
What if Canonical or Red Hat Inc, or even a package maintainer is forced to include a patched package by the FBI/government without disclosing it? In those companies probably won't go so far, not enough people in those ecosystems are tied with NDAs to avoid leaking in a way or another that it happened pretty soon.
What about the kernel or drivers, specially the dark parts like binary blobs or closed drivers? Some are just dissapearing (nvidia is releasing some of the drivers with open source, and the nouveau ones are good alternatives) and others must pass some good inspection. And if i suggest that Linus himself could be forced by law to let some nasty things in probably will get into hot water.
And of couse, there is the point of collaborating with poisoned code to commonly used open source programs, that if well goes thru some scrutiny, some could get in, there are enough not intentional vulnerabilities that pass to let some door opened for intentional vulnerabilities.
So, not because is open source, FSF approved operating system, can't have any of those things. But odds are far lower and will be more complex to happen than if is done by an american corporation in a closed source operating system.
The main difference is that they won't be doing it in plain view as Android is pretty much open source (would be trojan if anyone can see the code?), they would have the code hidden and with licenses that forbids you to know what they really do (the perfect environment to plant an entire army of trojan horses).
Is not not understanding, is forcing the users to accept what is most profitable for the company. By now the users are doing the digital equivalent of giving MS a whip and asking to get beaten with it, should not complain if that happens, or even get badly injured because of it.
Sometimes you can break the limit without breaking the law using side approachs, like Alcubierre drive or Thiotimoline. You just need a extrange matter, compound, metamaterial or whatever, with strange but not law breaking properties, and twist your definition of goal (i.e. reaching certain place instead of going ftl all the way there)
How that is fundamentally different from making a new encryption method? Or even being hired to install an existing encryption system in some company servers? If you make an encryption system that feds can't break, then you risk going to jail?
What makes the difference between an oppresive regime and one that is not regarding surveillance is respect. And is becoming too evident that the government don't have any for the "common" citizens.
Thats the problem with Bitcoins... they can't control, manipulate, or hoard it. If you want that mass public use a virtual currency (ok, i mean other than dollars) it only be pushed to the general public when they found one that they can manipulate.
The kind of traffic it generated could practically disconnect entire countries from internet, and is still open to whatever with the right resources to use it, What kind of measures can be taken to prevent it? To have as DNS mirrors several with really big bandwidth?
"Although MySQL is still widely used — Db-engines.com ranks it as the third most popular RDBMS after Oracle and Microsoft SQL Server, compared to MariaDB coming in at #35 — "
They should had read their methodology before citing them wrong. It is not what is more used (as mysql is basically the default db used by most popular web apps, should be more in the order of popularity of php than in the oracle, like it or not) but what have more active discussion around in certain circles. Even if you think that that measurement "matters" they are talking about "most popular RDBMS" and in the list of RDBMS (not general DBs) MariaDB is #17 (and as mostly transparent replacement of mysql, probably should be in reality between the top 10)
You can't prove that nothing existed the previous second and all was created in this one in the shape/way it is now, including your memory, just because putting "something almighty is trying to fool you" into the hypotesis enables a lot of dirty tricks (like planting fossils and put there the amount right of C14). All you have is a lot of data that makes very consistant the idea of reality that we have. But putting that hypotesis into the game means that you couldn't prove or disprove anything,
Depending on how they were selected, that eventuality could solve the skill crisis. Several other planes full of bankers, politicians and lobbyist to fix the economy crisis could work in the same way.
You should not be able to patent simple molecules produced by common plants, ideas (specially common sense ones), sounds, colors, rectangular shapes, or even genes... but they do, and probably things far simpler that i said here. Of course, maybe you won't be able to patent a number, but once you bought enough politicians you probably will.
No matter if you use gmail or your own server, smtp with remote servers usually goes in plain text. What you must do, gmail or not, is encrypt the mail itself (i.e. with pgp)
Its coming from the company that is making alternative OS for cellphones, the kind that could use existing, already in market cellphones, to expand their userbase giving ways for people to install it on them (if Sailfish runs in Wayland, anyway), without having to wait for other companies to bundle sailfish with their phones or to them to be available in all markets (the announced ones so far were targeted for China or India, i think)
They don't need to monitor "the internet", few local points have good portion of all communications, if the private companies that handle that traffic do a lot more with it than just plain storing, then those 3-letter agencies can do it, and better . And they don't need to have people to watch all over it, pattern matching could do both online and offline searches to pick "interesting" traffic, and then focus on people (is not that there are'nt examples that they are actually doing it)
Probably they don't monitor/store "noise" (i.e. images, video and other binary formats that adds most of the traffic, and probably they don't focus in encrypted communications like https or vpns unless something calls their attention), but they surely have the resources to monitor all the rest.
What if people start getting spam asking about fake big sums of money they received in private transactions/payments? Your mail is becoming a vulnerability not because the software that you uses to read it, but the "automatic" action that will take the new readers of your mail, like social engineering targetting the 2nd row of spectators.
They think we won't notice the elephant (and the donkey) in the room.
Free as in beer or free as in freedom? If is hidden what they do with you is then probably you are the product. But if is done in an open, clear, and verifiable way, you may have some ground to base your trust on it or not.
Since the start of internet is pretty common to see in logs hosts that do ip scanning. Having in the open one that shows to the public the kind of information that gets most of them since the beginning just put into the light how vulnerable are the guys without a clue. The good guys that have a clue had a firewall since the start, and the bad guys with a clue had that database compiled from long ago.
So, its responsibility of the people that have devices on public ip addresses to block/filter/password them, and maybe to the cluelest government that is pushing a cyberwar since last decade to warn, educate, and assist on fixing their citizens on not be so trivially vulnerable. And, of course, thank, not punish, the people behind Shodan for this warning.
What if Canonical or Red Hat Inc, or even a package maintainer is forced to include a patched package by the FBI/government without disclosing it? In those companies probably won't go so far, not enough people in those ecosystems are tied with NDAs to avoid leaking in a way or another that it happened pretty soon.
What about the kernel or drivers, specially the dark parts like binary blobs or closed drivers? Some are just dissapearing (nvidia is releasing some of the drivers with open source, and the nouveau ones are good alternatives) and others must pass some good inspection. And if i suggest that Linus himself could be forced by law to let some nasty things in probably will get into hot water.
And of couse, there is the point of collaborating with poisoned code to commonly used open source programs, that if well goes thru some scrutiny, some could get in, there are enough not intentional vulnerabilities that pass to let some door opened for intentional vulnerabilities.
So, not because is open source, FSF approved operating system, can't have any of those things. But odds are far lower and will be more complex to happen than if is done by an american corporation in a closed source operating system.
This chart will go bananas if we try to add that dark lightnings into the equation.
The main difference is that they won't be doing it in plain view as Android is pretty much open source (would be trojan if anyone can see the code?), they would have the code hidden and with licenses that forbids you to know what they really do (the perfect environment to plant an entire army of trojan horses).
Sometimes with just LXC (or Docker for a friendlier interface) you have more than enough.
So the cure of cancer (heck, could be even flu) is to kill the patient? Since Pyrrhus i didn't hear an excuse like this.
Representative for who? Just Lesters?
Is not not understanding, is forcing the users to accept what is most profitable for the company. By now the users are doing the digital equivalent of giving MS a whip and asking to get beaten with it, should not complain if that happens, or even get badly injured because of it.
Sometimes you can break the limit without breaking the law using side approachs, like Alcubierre drive or Thiotimoline. You just need a extrange matter, compound, metamaterial or whatever, with strange but not law breaking properties, and twist your definition of goal (i.e. reaching certain place instead of going ftl all the way there)
How that is fundamentally different from making a new encryption method? Or even being hired to install an existing encryption system in some company servers? If you make an encryption system that feds can't break, then you risk going to jail?
And you didn't warned them about 9/11, Fukushima, the tsunami and Justin Bieber?
Ok, not very original
What makes the difference between an oppresive regime and one that is not regarding surveillance is respect. And is becoming too evident that the government don't have any for the "common" citizens.
Thats the problem with Bitcoins... they can't control, manipulate, or hoard it. If you want that mass public use a virtual currency (ok, i mean other than dollars) it only be pushed to the general public when they found one that they can manipulate.
The kind of traffic it generated could practically disconnect entire countries from internet, and is still open to whatever with the right resources to use it, What kind of measures can be taken to prevent it? To have as DNS mirrors several with really big bandwidth?
"Although MySQL is still widely used — Db-engines.com ranks it as the third most popular RDBMS after Oracle and Microsoft SQL Server, compared to MariaDB coming in at #35 — "
They should had read their methodology before citing them wrong. It is not what is more used (as mysql is basically the default db used by most popular web apps, should be more in the order of popularity of php than in the oracle, like it or not) but what have more active discussion around in certain circles. Even if you think that that measurement "matters" they are talking about "most popular RDBMS" and in the list of RDBMS (not general DBs) MariaDB is #17 (and as mostly transparent replacement of mysql, probably should be in reality between the top 10)
You can't prove that nothing existed the previous second and all was created in this one in the shape/way it is now, including your memory, just because putting "something almighty is trying to fool you" into the hypotesis enables a lot of dirty tricks (like planting fossils and put there the amount right of C14). All you have is a lot of data that makes very consistant the idea of reality that we have. But putting that hypotesis into the game means that you couldn't prove or disprove anything,
Depending on how they were selected, that eventuality could solve the skill crisis. Several other planes full of bankers, politicians and lobbyist to fix the economy crisis could work in the same way.
You should not be able to patent simple molecules produced by common plants, ideas (specially common sense ones), sounds, colors, rectangular shapes, or even genes... but they do, and probably things far simpler that i said here. Of course, maybe you won't be able to patent a number, but once you bought enough politicians you probably will.
Mail encrypting should be a top priority to world population. "Those communications are being intercepted by criminal government agencies,' we say.
No matter if you use gmail or your own server, smtp with remote servers usually goes in plain text. What you must do, gmail or not, is encrypt the mail itself (i.e. with pgp)