Thinking of using encryption software to foil the NSA's eavesdropping programs? Well, according to the latest leak from whistleblower Edward Snowden, that may be a waste of time. As the Guardian reports, the leak shows both the NSA and its British counterpart, the GCHQ, have "successfully cracked much of the online encryption relied upon by hundreds of millions of people to protect the privacy of their personal data, online transactions and emails."
The Guardian article goes into a lot of highly depressing detail, but it also provides a handy Cliff's Notes version of today's revelations. Among them:
- A 10-year NSA program against encryption technologies made a breakthrough in 2010 which made "vast amounts" of data collected through internet cable taps newly "exploitable".
- The NSA spends $250m a year on a program which, among other goals, works with technology companies to "covertly influence" their product designs.
- The secrecy of their capabilities against encryption is closely guarded, with analysts warned: "Do not ask about or speculate on sources or methods."
- The NSA describes strong decryption programs as the "price of admission for the US to maintain unrestricted access to and use of cyberspace".
- A GCHQ team has been working to develop ways into encrypted traffic on the "big four" service providers, named as Hotmail, Google, Yahoo and Facebook.
Elaborating on the second point, the Guardian says the NSA "makes modifications to commercial encryption software and devices 'to make them exploitable', and . . . 'obtains cryptographic details of commercial cryptographic information security systems through industry relationships'." The vulnerabilities resulting from those modifications "would be known to the NSA, but to no one else, including ordinary customers," the paper adds.
It's not clear which encryption systems are affected. However, it seems to follow that, if backdoors exist in commercial encryption software, they may be exploitable by parties other than government intelligence agencies. And that may bad news even for folks who feel they have nothing to hide from the NSA.
Well, I guess it's no wonder Blanda was laughing so hard.
|1. Hdfisise - $600||2. Ryszard - $503||3. punkUser - $502|
|4. the - $306||5. SomeOtherGeek - $300||6. Ryu Connor - $250|
|7. doubtful500 - $200||8. Anonymous Gerbil - $150||9. webkido13 - $135|
|10. cygnus1 - $126|
|GOG's Steam-y Galaxy storefront enters open beta||7|
|GeForce GTX 970, 980 now bundled with new Witcher, Batman games||14|
|So how would you replace Windows Media Center?||35|
|Apple releases specifications for third-party Watch bands||6|
|Here's what we made of those leaked AMD slides||11|
|Leaked roadmap charts desktop course for Broadwell, Skylake into 2016||27|
|The curtain falls on Windows Media Center||87|
|The PC Gaming Show provides a dedicated soapbox at E3||11|
|DX12 demo will make you squint to see what's better||51|