11 August 2014

More hackers


Denver Nicks has a Time article about hackers changing things (as if we wanted them to):
"They’re going to keep coming after us,” Ladar Levison, the creator of an ultra-secure email service, once said to be used by Edward Snowden, unveiled his next project at Defcon, a major hacker conference: he and others like him want to change the very nature of email forever. The creator of the Lavabit encrypted email provider was forced in August of 2013 to give investigators access to an account reportedly used by Snowden, the National Security Agency leaker, after a tug-of-war with Federal authorities. But rather than compromise the privacy of his other four-hundred-thousand-plus email users, Levison says, he shut the entire project down. A similar encrypted email provider, Silent Circle, took heed and shuttered its own service to pre-empt any Federal authorities that might come demanding information from it as well.
Out of those ashes, Levison and others launched the Dark Mail project, which is developing Dime, a set of new email protocols its creators hope will revolutionize the way the world communicates online. “If I sound a little bit upset, it’s because I am,” told a packed ballroom at Defcon, a top hacker conference held annually in Las Vegas, Nevada.
“I’m not upset that I got railroaded and I had to shut down my business,” said Levison. “I’m upset because we need a mil-spec cryptographic mail system for the entire planet just to be able to talk to our friends and family without any kind of fear of government surveillance.”
Levison devoted much of his talk to arguing there’s a need for a secure emailing system in a world where government entities like the NSA have broad legal authority— and even broader technical capabilities— to conduct surveillance en masse, both in the US and abroad. “With the type of metadata collection that’s going on today, we have guilt by association,” he said. “Imagine being put on a no-fly list because you happen to sit next to a criminal at a convention like this.”
Jon Callas, chief technology officer of Silent Circle and a co-founder of the Dark Mail project, told Time that “the biggest problem we have today with email is that it was designed in the early 1970s, and it was not designed for the problems we have today. Even the standard email encryption that we have today protects the content but not the metadata.” Metadata— information like the identity of the sender or the time and date a message was sent— has been a key target of NSA surveillance. “Ironically, we have been protecting the stuff that they’re not collecting,” Callas said.
Dime uses multiple layers of cryptography (think Russian nesting dolls) to protect an email’s content and metadata from beginning to end as an email is passed through the Internet from a sender to a recipient or recipients. The idea is to create an email system in which no service provider has all the information about a message, so there is no entity (like Lavabit, for example) for Federal authorities to come down on.
“Each doll is labeled only with the stuff that is needed,” Callas told Time. “So if you’re on Google, you get a doll that says ‘This doll came from Yahoo.’ Then you hand it to the next layer and they open it up and say, ‘This is for Alice.’ Then, when Alice opens it up, Alice gets the whole message. But all along the way, my system only knows that it’s supposed to go to Google, not that it’s for Alice… It separates stuff up so that you don’t end up in a situation where anybody along the path knows everything,” Callas said.
Dime’s creators hope that enough people will begin using the service on their own that a major email service provider, like Google, Yahoo, or Microsoft— all of whom are already exploring ways to better encrypt users’ messages— adopts it and it snowballs from there. Ultimately, what the Dark Mail project is aiming for is nothing less than a complete transformation of the way email works on planet Earth. “It all has to be rebuilt,” Callas said.
Rico says it's simpler not to care who reads your email, or don't send stuff you don't want people to read (that's what the USPS is for)...

No comments:

 

Casino Deposit Bonus