Meta tags:
description= Traffic analysis, anonymous and covert communications, and other magic.;
Headings (most frequently used words):
the, of, 2016, are, 2017, what, so, on, group, and, in, july, distributed, ledgers, interesting, about, to, politics, technical, blogroll, privacy, enhancing, technologies, good, for, economic, 21, may, february, conspicuous, chatter, is, them, thoughts, oft, target, hotpets, 17, simpler, secure, messaging, pets17, plausible, deniability, within, groups, will, always, be, small, submitting, leader, asynchrony, conclusion, nhs, wannacrypt, ransomware, outbreak, cia, hack, leak, teaches, us, bankruptcy, current, cyber, doctrines, pets, realistically, attacking, tor, with, website, fingerprinting, strategic, nation, state, attacks, proof, work, cryptocurrencies, poverty, crypto, empire, against, narrowing, cryptography, reading, himr, data, mining, research, problem, book, social, construction, trust, cryptographic, systems, categories, archives, cambridge, security, blog, symposium, selected, papers, anonymity, technorati, anonymous, communications, wordpress, com, 27, september, 2018, why, first, place, decentralized, transactions, hard, lack, model, blockchains, provide, both, answers, enable, decentralization, challenges, ahead, you, off, 20, 13, march, 30, april,
Text of the page (most frequently used words):
the (526), and (271), that (183), for (94), this (91), not (81), are (70), with (53), can (52), have (50), key (47), security (46), they (46), their (37), one (35), #systems (35), all (34), such (34), privacy (33), may (33), from (33), how (29), public (29), those (29), #secure (28), was (28), also (28), bob (27), but (27), there (27), other (26), any (26), what (26), data (26), about (25), would (24), alice (23), when (23), has (22), group (21), traffic (21), cryptography (21), will (21), very (21), used (19), time (19), however (19), been (18), cryptographic (18), which (18), message (18), make (18), adversary (18), engineering (17), could (17), work (17), most (17), number (17), against (17), system (17), cipher (17), them (16), even (16), need (16), using (16), large (16), being (16), distributed (16), trust (15), model (15), research (15), use (15), software (15), more (15), you (14), were (14), without (14), only (14), provide (14), cyber (14), good (14), blockchains (14), 2016 (13), protocols (13), ensure (13), keys (13), some (13), services (13), than (13), comment (12), fact (12), cannot (12), well (12), into (12), then (12), its (12), why (12), out (12), years (12), mining (12), attacks (12), chat (12), users (12), gpa (12), decentralized (12), now (11), july (11), policy (11), much (11), proof (11), authorities (11), problems (11), many (11), protocol (11), infrastructure (11), traditional (11), messages (11), problem (11), through (11), tor (11), technical (11), windows (11), leader (11), plausible (11), deniability (11), communications (10), 2008 (10), 2017 (10), technology (10), leave (10), filed (10), posted (10), george (10), danezis (10), rely (10), should (10), people (10), channel (10), service (10), does (10), both (10), thus (10), better (10), just (10), political (10), fingerprinting (10), adversaries (10), like (9), website (9), technologies (9), uncategorized (9), analysis (9), part (9), small (9), trusted (9), example (9), state (9), secret (9), case (9), needs (9), eve (9), over (9), gchq (9), first (9), techniques (9), interesting (9), attack (9), devices (9), platforms (9), get (8), 2011 (8), 2014 (8), world (8), complex (8), result (8), access (8), web (8), internet (8), party (8), current (8), incentives (8), protect (8), simply (8), instead (8), particular (8), terms (8), new (8), knowledge (8), scale (8), open (8), surveillance (8), control (8), nhs (8), ledgers (8), community (7), mathematical (7), real (7), national (7), social (7), ciphers (7), set (7), yet (7), parties (7), private (7), another (7), own (7), important (7), because (7), cost (7), take (7), read (7), see (7), off (7), while (7), crypto (7), network (7), start (7), malware (7), irc (7), design (6), sign (6), already (6), anonymity (6), september (6), february (6), march (6), 2009 (6), 2010 (6), 2015 (6), question (6), correct (6), say (6), did (6), within (6), scheme (6), often (6), digital (6), your (6), certificates (6), know (6), two (6), today (6), nsa (6), under (6), down (6), government (6), able (6), setting (6), including (6), clear (6), information (6), onion (6), routing (6), project (6), point (6), seems (6), article (6), basis (6), economic (6), after (6), detect (6), peer (6), noise (6), since (6), money (6), providing (6), line (6), user (6), transaction (6), content (5), conspicuous (5), chatter (5), enhancing (5), 2007 (5), october (5), april (5), these (5), somehow (5), personal (5), assumptions (5), assumption (5), furthermore (5), properties (5), signatures (5), once (5), related (5), ways (5), enough (5), infrastructures (5), necessary (5), way (5), lack (5), practical (5), whether (5), lot (5), difficult (5), different (5), presented (5), reasons (5), side (5), states (5), organizations (5), major (5), build (5), writing (5), reading (5), course (5), little (5), actually (5), post (5), author (5), nation (5), hard (5), require (5), consensus (5), who (5), conclusion (5), learning (5), training (5), paper (5), either (5), where (5), single (5), hack (5), tools (5), exist (5), microsoft (5), rather (5), ordering (5), whatsapp (5), links (5), subject (5), based (5), wordpress (4), com (4), manage (4), log (4), blog (4), november (4), december (4), tags (4), itself (4), certificate (4), therefore (4), primitives (4), namely (4), shannon (4), base (4), certain (4), combined (4), provides (4), encrypted (4), interestingly (4), larger (4), between (4), means (4), identity (4), entities (4), 2000 (4), pki (4), having (4), long (4), ensures (4), provided (4), diffie (4), hellman (4), issue (4), ensuring (4), anyone (4), share (4), far (4), shared (4), mathematicians (4), factors (4), des (4), conversation (4), known (4), seen (4), becomes (4), around (4), perfect (4), solve (4), matter (4), short (4), high (4), signal (4), had (4), comes (4), computer (4), context (4), simple (4), university (4), rest (4), finally (4), bad (4), past (4), nodes (4), actual (4), trying (4), record (4), working (4), think (4), specific (4), targeted (4), others (4), useful (4), industries (4), effect (4), indeed (4), bitcoin (4), our (4), researchers (4), modern (4), turns (4), consider (4), likely (4), server (4), multiple (4), ucl (4), cia (4), systemic (4), ransomware (4), always (4), heath (4), authors (4), alternative (4), pay (4), medical (4), right (4), business (4), total (4), become (4), groups (4), messaging (4), authenticators (4), something (4), protects (4), sent (4), thing (4), developers (4), subset (4), revenue (4), apps (4), app (4), particularly (4), site (3), required (3), account (3), anonymous (3), cambridge (3), january (3), june (3), august (3), magic (3), previous (3), deep (3), questions (3), extremely (3), schemes (3), insecure (3), led (3), proofs (3), bit (3), building (3), recognized (3), proves (3), unlike (3), computing (3), sites (3), following (3), third (3), implemented (3), browsers (3), authority (3), signature (3), wants (3), given (3), guarantees (3), recently (3), natural (3), cases (3), presumably (3), similarly (3), updates (3), securely (3), early (3), keep (3), confidentiality (3), simpler (3), sharing (3), encrypt (3), significant (3), interest (3), academic (3), rsa (3), relies (3), possible (3), decode (3), wide (3), uses (3), channels (3), results (3), clever (3), lost (3), complexity (3), solution (3), limited (3), largest (3), came (3), until (3), before (3), concerns (3), main (3), assumed (3), nations (3), events (3), kerckhoffs (3), property (3), hope (3), aspects (3), hold (3), observed (3), online (3), snowden (3), entry (3), documents (3), published (3), informative (3), secondly (3), evidence (3), document (3), operate (3), per (3), space (3), presents (3), despite (3), himr (3), released (3), politics (3), mass (3), form (3), broadly (3), ever (3), foreign (3), attract (3), london (3), talk (3), elsewhere (3), electricity (3), strategic (3), strategy (3), akin (3), unless (3), manner (3), sophisticated (3), never (3), machine (3), robust (3), noisy (3), pages (3), pets (3), next (3), tao (3), accuracy (3), attacker (3), page (3), obvious (3), stream (3), increases (3), back (3), looking (3), usually (3), challenges (3), proliferation (3), resulting (3), smart (3), teaches (3), development (3), future (3), besides (3), poor (3), incl (3), alternatives (3), critical (3), common (3), maintenance (3), turn (3), upgrading (3), unlikely (3), last (3), outdated (3), disaster (3), expect (3), heart (3), operating (3), top (3), outbreak (3), look (3), assume (3), full (3), honest (3), delete (3), survive (3), failure (3), asynchrony (3), pbft (3), order (3), participants (3), captured (3), convinced (3), transcripts (3), multi (3), though (3), fully (3), indirect (3), models (3), observations (3), implication (3), same (3), realistic (3), projects (3), zero (3), providers (3), chainspace (3), monopolistic (3), databases (3), selling (3), monetization (3), byzantine (3), interacts (3), decentralize (3), power (3), name (2), email (2), write (2), loading (2), comments (2), view (2), subscribed (2), subscribe (2), selected (2), symposium (2), 2012 (2), 2013 (2), 2018 (2), reduced (2), corporate (2), depends (2), hardness (2), fair (2), mechanisms (2), process (2), observation (2), deployed (2), school (2), provable (2), proposes (2), basic (2), argued (2), shows (2), weakness (2), components (2), level (2), abstraction (2), include (2), described (2), perform (2), found (2), weaknesses (2), ssl (2), tls (2), encryption (2), identified (2), link (2), tcb (2), certification (2), department (2), believe (2), stolen (2), behind (2), establish (2), talks (2), secrecy (2), operation (2), verified (2), each (2), relying (2), proposed (2), book (2), register (2), practice (2), address (2), charge (2), verify (2), else (2), maintaining (2), safely (2), trivial (2), nature (2), sure (2), she (2), arbitrary (2), decrypt (2), theory (2), discipline (2), hardy (2), twentieth (2), pure (2), application (2), became (2), innovation (2), history (2), cryptology (2), funding (2), theoretic (2), 1976 (2), knowing (2), corresponding (2), 1977 (2), rivest (2), publication (2), launched (2), wanted (2), works (2), widespread (2), fear (2), subtle (2), intelligence (2), agencies (2), commercial (2), authentication (2), keeping (2), wraps (2), standard (2), institute (2), standards (2), monopoly (2), 1949 (2), underlying (2), positive (2), pad (2), must (2), random (2), minimizing (2), generating (2), harder (2), expected (2), smaller (2), united (2), kept (2), export (2), equipment (2), roles (2), enemies (2), evaluated (2), assurance (2), computers (2), decoding (2), performed (2), colonial (2), centuries (2), leading (2), military (2), argues (2), recover (2), physical (2), logical (2), operations (2), hardware (2), exchanged (2), allow (2), method (2), 1883 (2), reliance (2), principle (2), fall (2), sends (2), extract (2), harper (2), richard (2), overview (2), wonder (2), waiting (2), misleading (2), engaged (2), streams (2), circuits (2), capabilities (2), organization (2), big (2), edge (2), threat (2), list (2), examples (2), makes (2), core (2), science (2), classified (2), guide (2), boing (2), although (2), forward (2), original (2), linked (2), programs (2), find (2), written (2), partly (2), blame (2), among (2), lead (2), speaking (2), live (2), help (2), recent (2), nice (2), position (2), selective (2), present (2), empire (2), strictly (2), subsidies (2), benefit (2), cryptocurrencies (2), potential (2), joe (2), his (2), pools (2), might (2), currency (2), contingent (2), type (2), free (2), above (2), quite (2), market (2), eventually (2), preventing (2), gave (2), consumes (2), vast (2), worth (2), meta (2), roadblocks (2), issues (2), game (2), mature (2), illustrates (2), second (2), still (2), low (2), pretty (2), self (2), evident (2), train (2), conditions (2), year (2), date (2), days (2), call (2), implement (2), end (2), resources (2), loads (2), true (2), split (2), classifier (2), learn (2), deal (2), creates (2), load (2), dangerous (2), joint (2), scalable (2), threats (2), realistically (2), attacking (2), agency (2), seem (2), things (2), leak (2), bankruptcy (2), doctrines (2), avoid (2), failures (2), called (2), industry (2), making (2), procurement (2), processes (2), vendors (2), cutting (2), offense (2), doctrine (2), leads (2), weapons (2), bugs (2), vulnerabilities (2), purposes (2), leaked (2), options (2), place (2), leverages (2), wild (2), terrible (2), patches (2), come (2), decision (2), taken (2), lob (2), costs (2), contracts (2), built (2), lessons (2), device (2), health (2), answer (2), applications (2), compatible (2), running (2), asked (2), lets (2), wannacrypt (2), decisions (2), strange (2), situation (2), imagine (2), couple (2), great (2), want (2), discuss (2), offer (2), stop (2), session (2), goes (2), upon (2), advocate (2), facebook (2), crash (2), replace (2), cut (2), exists (2), central (2), arbitrarily (2), imposed (2), members (2), conversations (2), least (2), size (2), meaningless (2), too (2), anyway (2), follow (2), contain (2), discussed (2), protection (2), expert (2), conspiracy (2), received (2), honestly (2), said (2), technically (2), symmetric (2), argue (2), strong (2), brief (2), designers (2), features (2), relevant (2), capability (2), partial (2), paul (2), relays (2), subsets (2), etc (2), global (2), passive (2), committed (2), achieve (2), thoughts (2), hotpets (2), ask (2), involve (2), deeply (2), generation (2), home (2), truly (2), adoption (2), light (2), mean (2), reason (2), spent (2), silos (2), monopolies (2), foundation (2), humane (2), redecentralize (2), blockchain (2), themselves (2), undermining (2), whims (2), sustainable (2), tokens (2), fees (2), deployment (2), decentralization (2), instagram (2), run (2), develop (2), incumbents (2), collection (2), google (2), established (2), capitalism (2), deeper (2), field (2), dominate (2), interactions (2), explain (2), catch (2), struggle (2), usable (2), economics (2), amazon (2), initially (2), happened (2), static (2), transactions (2), best (2), possibly (2), curiosity (2), prevent (2), covert (2), started, collapse, bar, subscriptions, reader, report, join, subscribers, technorati, papers, blogroll, archives, categories, entries, dagstuhl, correctness, applies, epistemological, ironic, addition, brittle, crisis, cryptologic, circles, rigorous, accompany, misnomer, blocks, proved, merely, reduction, effectively, reduces, arguments, details, logic, provably, pfitzmann, waidner, 1992, variety, famous, socket, layer, composition, guaranteed, vaudenay, 2002, https, deferring, identities, places, support, rogue, turkey, dutch, diginotar, hacked, fox, fake, issued, sensitive, cas, check, ellison, schneier, communicate, relationship, valid, trusts, confused, trustworthy, browser, compromised, belong, mafia, tried, augment, issuing, legitimate, architecture, knows, vendor, embed, associate, publish, phone, associating, verisign, attest, corresponds, association, signed, eliminate, totally, receive, confidential, term, associated, convinces, beginning, century, quickly, deciding, factor, directed, study, underpinning, snow, 1967, trusting, versus, difficulty, factoring, integers, hundreds, digits, layers, algorithms, handful, elegant, whitfield, martin, directions, show, preserve, ron, adi, shamir, leonard, adleman, further, allowed, equivalent, 1978, understand, tweaked, undisclosed, created, suspicion, flaw, introduced, decryption, easy, cryptographers, advent, telecommunications, nongovernment, simplest, remote, mechanism, requires, option, approved, ibm, standardized, 1979, nist, arrangement, claude, define, impossible, seminal, mixed, solved, absolutely, advantage, exposure, avoiding, bias, perfectly, finding, thirty, followed, pragmatic, approach, cryptological, advances, war, regulations, respectively, worldwide, employers, customers, supercomputers, additionally, eavesdropping, speak, truth, concern, relatively, compared, encoding, hand, electromechanical, machines, usability, speed, errors, choosing, person, someone, cleverer, sometimes, supply, ideology, nineteenth, 1950s, clearly, contradict, powers, broken, opponents, relied, restrictions, careful, inspection, note, removed, compromise, shorter, subsequently, easier, transport, memorizing, cryptographie, militaire, auguste, stated, principles, considered, minimization, diplomatic, hands, competitors, send, communication, passphrase, poem, scramble, invert, scrambling, unscramble, preserving, kahn, 1996, contribution, introduction, york, press, http, doi, org, 1017, cbo9781139828567, 003, books, society, construction, leaks, thirdly, revelations, obscure, non, slides, saved, powerpoint, timing, correlating, recorded, stored, increasing, granularity, smoking, gun, casually, anonymize, wall, ingredients, needed, trace, extra, ordinary, incompetence, refined, underestimate, overall, resembles, struggling, value, constrains, below, limitations, storage, vertex, event, serious, 5000, probably, processing, allocated, botnets, presume, clearest, explanations, along, salient, quick, perusal, sad, pitch, guess, meant, act, intended, audience, bristol, composed, half, heilbronn, sept, insightful, straight, formulation, broad, assertions, centric, selecting, racial, gendered, classed, interests, geopolitical, priorities, elites, commissioned, latter, explanation, length, inspiring, return, colonialism, distinction, sweeps, carpet, legitimacy, forms, ignores, electronic, revealed, edward, towards, select, populations, rare, joys, ability, interpret, try, pleasure, gürses, reflect, insights, highlight, thesis, puts, artefacts, preconceptions, abstract, argument, unhelpful, conclusions, interpretations, contradictions, counter, advocacy, poverty, narrowing, doubtful, instrument, industrial, modest, regulate, favourable, regime, finance, greece, provisions, tourism, conceivable, choose, silver, bullet, centralization, hinted, concentration, farms, china, deals, choice, determine, considering, purpose, currencies, worrisome, seeks, increase, deniable, subsidy, mine, forces, majority, miners, move, immovable, investments, centres, gear, reach, regulatory, jurisdiction, centralizing, tendencies, institutions, jurisdictional, diversity, anti, regulators, antithetical, currently, attending, supported, gathering, favourite, lecture, fantastic, evolution, specialized, custom, located, jurisdictions, cheap, subsidised, dispelled, myth, amounts, energy, apparently, coal, plant, devised, literature, selfish, beyond, concluded, traces, bonneau, nextleap, corfu, twofold, stopper, took, maturity, usage, glad, explicit, sets, synthesize, detecting, splits, done, maybe, expensive, collect, continuously, fresh, trade, demonstrates, old, ish, tackled, increased, defenses, splitting, bundle, quiet, negative, overlap, gap, overcome, rate, generic, apply, incoming, outgoing, improve, tab, continuous, aka, confuse, superimposed, volume, radically, drops, solutions, subtract, succeed, version, levels, reported, laboratory, considers, anonymized, task, recognize, accessed, protections, evaluation, restricted, stylized, client, accesses, landing, restrictive, accessing, summary, wang, ian, goldberg, latest, addressing, stake, jamie, hayes, presenting, technique, cyberwar, wikileaks, spying, developing, hacking, genuine, catalog, exploits, widely, commodity, android, iphone, tvs, appropriate, background, lesson, direction, trove, change, wishing, badness, devoted, goverment, taking, advice, seriously, summarize, contribute, informatics, liability, constructive, mitigate, risks, inevitably, civilian, managed, went, tool, codenamed, warning, stockpiling, criminals, commented, entitled, feels, unfortunately, fulfilled, prophesy, outcome, contributes, insecurity, eternalblue, hoarded, weapon, hackers, leakers, prevents, paying, bug, deliberate, highest, decided, receiving, aware, absolute, jeremy, hunt, tying, costing, millions, upgradeable, combination, entrench, requirements, reap, benefits, expending, quality, tragic, illustrious, career, friend, noob, extensively, happen, tackle, implanted, kill, prof, kevin, immature, unsophisticated, naive, versions, management, specialist, imaging, payroll, ray, scanners, monitors, embedded, leveraging, rampage, hospitals, medjack, foremost, expects, locked, stay, safe, maintained, technological, absurdity, transpose, skyscrapers, cities, evacuated, teenagers, rocks, blackmail, owners, precious, glass, fragility, parallel, inherent, micro, geo, surprised, massive, outbreaks, blamed, squarely, ends, doubt, responsibility, personally, immoral, deploy, deny, seek, crime, relates, prime, minister, dealing, detailed, strangely, sophistication, prerequisite, matters, news, outlets, caricature, researcher, clock, valiant, defenders, humanity, beat, virus, break, narrative, similar, disasters, heroic, figures, headline, newspapers, lean, consistent, liveness, timeout, synchronous, elect, rotate, unavailable, optimal, sizes, killing, designs, infinity, ditch, checking, lines, demise, skype, unnecessarily, challenge, happens, dies, graceful, exit, handover, member, assuming, degrees, node, dead, paxos, election, ditches, assumes, detector, special, participant, role, accept, prevented, doing, clients, causal, canonical, mediating, ximin, luo, points, complexities, arise, implicit, equal, anything, relating, popular, xmpp, servers, mediate, submitting, optimize, optimizations, reduce, constant, compromized, parameters, logn, operational, deleting, reception, partners, trouble, weak, checked, dishonest, bypass, tricks, performing, legal, court, barrier, transcript, courts, authenticity, backed, witness, modified, forensics, sufficient, matching, discussion, facilitates, facility, elusive, meaningful, narrow, decides, convince, eclectic, moving, thinking, buys, tamper, secrets, defense, ineffective, otr, nutshell, prove, cryptographically, achieved, publishing, codes, forged, authenticatior, relaxed, leaderlessness, unnecessary, scalability, difference, controversial, questioned, agreements, contributory, minnesota, customary, engaging, topic, beer, simplified, relaxing, natalie, eskinazi, mike, perry, pets17, conclude, super, care, chose, unsure, types, modelling, continue, slow, trickle, discover, observe, few, local, unclear, implies, prior, websites, connection, match, 2005, aspect, compromising, capturing, function, views, observing, hidden, gives, idea, carrying, structure, mirrors, ubiquitous, trivially, isp, employer, exchange, capture, capacity, concerned, exact, guarded, fragile, saying, visible, available, concept, sin, inception, haunting, dismisses, unrealistic, attempts, performance, anonymizing, instantiated, hint, sight, opens, door, sorts, importantly, theoretical, confusion, watched, provocative, presentation, put, here, loosely, targeting, syverson, oft, target, final, going, away, academia, assured, coming, ventures, phd, students, colleagues, feel, passionate, teaching, traditionally, progressive, outlook, adventures, successful, stronger, scholar, welcome, fields, threshold, computation, censorship, circumvention, intrinsically, together, engineered, incentivized, adapting, ideas, ledger, unblocked, advanced, disclosure, credentials, fielded, traction, ads, optimization, stand, chance, day, aligned, goals, scaling, competitive, economy, contract, monetary
Text of the page (random words):
r foreign policy after all states have been using modest subsidies to attract control and regulate industries london provides a favourable regime for finance and greece has good provisions to attract tourism thus it is conceivable that a nation may choose to attract and then benefit from such a control over proof of work cryptocurrencies what is certain is that proof of work is far from being the silver bullet against centralization and potential state control posted by george danezis filed in uncategorized leave a comment the poverty of crypto and empire against a narrowing of the politics of cryptography 7 april 2016 one of the rare joys of being a live author is the ability to interpret your own works as well as to help others when they try to do so in that context it was as ever a pleasure to read gürses et al recent article on crypto and empire the contradictions of counter surveillance advocacy and reflect on the insights it provides it is also nice to be in a position to highlight that a number of thesis it puts forward are in fact artefacts of preconceptions and selective reading of events while this is useful to abstract and present a clear argument it is unhelpful when it results in misleading conclusions and interpretations broadly speaking the article argues that the distinction between mass surveillance and targeted surveillance sweeps under the carpet questions of political legitimacy of current forms of targeted surveillance it also ignores the fact that mass electronic surveillance as revealed by edward snowden was in fact targeted towards select populations for specific political reasons i think this is insightful although i like this straight forward formulation better than the one from the original article which makes broad assertions linked with a specific us centric view of identity politics are the mass surveillance programs selecting on a racial gendered classed and colonial basis per se or simply on the basis of the national and economic interests of the nations that implemented them current geopolitical priorities and the needs of political elites that commissioned them i find the latter explanation simpler although i have written in some length about how control of technology among certain nations could lead to a new form of cyber colonialism so i may be partly to blame for inspiring this to which i will return read the rest of this entry posted by george danezis filed in uncategorized leave a comment a technical reading of the himr data mining research problem book 3 february 2016 boing boing just released a classified gchq document that was meant to act as the sept 2011 guide to open research problems in data mining the intended audience heilbronn institute for mathematical research himr is part of the university of bristol and composed of mathematicians working for half their time on classified problems with gchq first off a quick perusal of the actual publication record of the himr makes a sad reading for gchq it seems that very little research on data mining was actually performed post 2011 2014 despite this pitch i guess this is what you get trying to make pure mathematicians solve core computer science problems however the document presents one of the clearest explanations of gchq s operations and their scale at the time as well as a very interesting list of open problems along with salient examples overall reading this document very much resembles reading the needs of any other organization with big data struggling to process it to get any value the constrains under which they operate see below and in particular the limitations to o n log n storage per vertex and o 1 per edge event is a serious threat but of course this is only for un selected traffic so the 5000 or so tor nodes probably would have a little more space and processing allocated to them and so would known botnets i presume secondly there is clear evidence that timing information is both recognized as being key to correlating events and streams and it is being recorded and stored at an increasing granularity there is no smoking gun as of 2011 to say they casually de anonymize tor circuits but the writing is on the wall for the onion routing system gchq at 2011 had all ingredients needed to trace tor circuits it would take extra ordinary incompetence to not have refined their traffic analysis techniques in the past 5 years the tor project should do well to not underestimate gchq s capabilities to this point thirdly one should wonder why we have been waiting for 3 years until such clear documents are finally being published from the snowden revelations if those had been the first published instead of the obscure misleading and very non informative slides it would have saved a lot of time and may even have engaged the public a bit more than bad powerpoint read the rest of this entry posted by george danezis filed in anonymity policy traffic analysis uncategorized tags analysis gchq leaks snowden leave a comment the social construction of trust in cryptographic systems 3 february 2016 this is an extract from my contribution to harper richard introduction and overview trust computing and society ed richard h r harper 1 st ed new york cambridge university press 2014 pp 3 14 cambridge books online web 03 february 2016 http dx doi org 10 1017 cbo9781139828567 003 cryptography has been used for centuries to secure military diplomatic and commercial communications that may fall into the hands of enemies and competitors kahn 1996 traditional cryptography concerns itself with a simple problem alice wants to send a message to bob over some communication channel that may be observed by eve but without eve being able to read the content of the message to do this alice and bob share a short key say a passphrase or a poem alice then uses this key to scramble or encrypt the message using a cipher and sends the message to bob bob is able to use the shared key to invert the scrambling or decrypt and recover the message the hope is that eve without the knowledge of the key will not be able to unscramble the message thus preserving its confidentiality it is important to note that in this traditional setting we have not removed the need for a secure channel the shared key needs to be exchanged securely because its compromise would allow eve to read messages yet the hope is that the key is much shorter than the messages subsequently exchanged and thus easier to transport securely once by memorizing it or by better physical security what about the cipher should the method by which the key and the message are combined not be kept secret in la cryptographie militaire in 1883 auguste kerckhoffs stated a number of principles including that only the key should be considered secret not the cipher method itself kerckhoffs 1883 both the reliance on a small key and the fact that other aspects of the system are public is an application of the minimization principle we have already seen in secure system engineering it is by minimizing what has to be trusted for the security policy to hold that one can build and verify secure systems in the context of traditional cryptography in principle this is just a short key kerckhoffs argues that only the key not the secrecy of the cipher is in the trusted computing base but a key property of the cipher is relied on eve must not be able to use an encrypted message and knowledge of the cipher to recover the message without access to the secret key this is very different from previous security assumptions or components of the tcb it is not about the physical restrictions on eve and it is not about the logical operations of the computer software and hardware that could be verified by careful inspection it comes down to an assumption that eve cannot solve a somehow difficult mathematical problem thus how can you trust a cipher how can you trust that the adversary cannot solve a mathematical problem to speak the truth this was not a major concern until relatively recently compared with the long history of cryptography before computers encoding and decoding had to be performed by hand or using electromechanical machines concerns such as usability speed cost of the equipment and lack of decoding errors were the main concerns in choosing a cipher when it comes to security it was assumed that if a clever person proposes a cipher then it would take someone much cleverer than them to decode it it was even sometimes assumed that ciphers were of such complexity that there was no way to decode messages without the key the assumption that other nations may not have a supply of clever people may have to do with a colonial ideology of nineteenth and early twentieth centuries events leading to the 1950s clearly contradict this ciphers used by major military powers were often broken by their opponents in 1949 claude shannon set out to define what a perfect cipher would be he wanted it to be impossible to solve the mathematical problem underlying the cipher shannon 1949 the results of this seminal work are mixed on the positive side there is a perfect cipher that no matter how clever an adversary is cannot be solved the one time pad on the down side the key of the cipher is as long as the message must be absolutely random and can only be used once therefore the advantage of short keys in terms of minimizing their exposure is lost and the cost of generating keys is high avoiding bias in generating random keys is harder than expected furthermore shannon proves that any cipher with smaller keys cannot be perfectly secure because the one time pad is not practical in many cases how can one trust a cipher with short keys knowing that its security depends on the complexity of finding a solution for about thirty years the united states and the uk followed a very pragmatic approach to this they kept the cryptological advances of world war ii under wraps they limited the export of cryptographic equipment and know how through export regulations and their signal intelligence agencies the nsa and gchq respectively became the largest worldwide employers of mathematicians and the largest customers of supercomputers additionally in their roles in eavesdropping on their enemies communications they evaluated the security of the systems used to protect government communications the assurance in cryptography came at the cost of being the largest organizations that know about cryptography in the world the problem with this arrangement is that it relies on a monopoly of knowledge around cryptology yet as we have seen with the advent of commercial telecommunications cryptography becomes important for nongovernment uses even the simplest secure remote authentication mechanism requires some cryptography if it is to be used over insecure channels therefore keeping cryptography under wraps is not an option in 1977 the nsa approved the ibm design for a public cipher the data encryption standard des for public use it was standardized in 1979 by the us national institute for standards and technology nist the publication of des launched a wide interest in cryptography in the public academic community many people wanted to understand how it works and why it is secure yet the fact that the nsa tweaked its design for undisclosed reasons created widespread suspicion in the cipher the fear was that a subtle flaw was introduced to make decryption easy for intelligence agencies it is fair to say that many academic cryptographers did not trust des another important innovation in 1976 was presented by whitfield diffie and martin hellman in their work new directions in cryptography diffie hellman 1976 they show that it is possible to preserve the confidentiality of a conversation over a public channel without sharing a secret key this is today known as public key cryptography because it relies on alice knowing a public key for bob shared with anyone in the world and using it to encrypt a message bob has the corresponding private part of the key and is the only one that can decode messages used with the public key in 1977 ron rivest adi shamir and leonard adleman proposed a further system the rsa that also allowed for the equivalent of digital signatures rivest et al 1978 what is different in terms of trusting public key cryptography versus traditional ciphers both the diffie hellman system and the rsa system base their security on number theoretic problems for example rsa relies on the difficulty of factoring integers with two very large factors hundreds of digits unlike traditional ciphers such as des that rely on many layers of complex problems public key algorithms base their security on a handful of elegant number theoretic problems number theory a discipline that g h hardy argued at the beginning of the twentieth century was very pure in terms of its lack of any practical application hardy snow 1967 quickly became the deciding factor on whether one can trust the most significant innovation in the history of cryptology as a result a lot of interest and funding directed academic mathematicians to study whether the mathematical problems underpinning public key cryptography were in fact difficult and how difficult the problems were interestingly public key cryptography does not eliminate the need to totally trust the keys unlike traditional cryptography there is no need for bob to share a secret key with alice to receive confidential communications instead bob needs to keep the private key secret and not share it with anyone else maintaining the confidentiality of private keys is simpler than sharing secret keys safely but it is far from trivial given their long term nature what needs to be shared is bob s public key furthermore alice need to be sure she is using the public key associated with the bob s private key if eve convinces alice to use an arbitrary public key to encrypt a message to bob then eve could decrypt all messages the need to securely associate public keys with entities has been recognized early on diffie and hellman proposed to publish a book a bit like the phone register associating public keys with people in practice a public key infrastructure is used to do this trusted authorities like verisign issue digital certificates to attest that a particular key corresponds to a particular internet address these authorities are in charge of ensuring that the identity the keys and their association are correct the digital certificates are signed using the signature key of the authorities that anyone can verify the use of certificate authorities is not a natural architecture in many cases if alice and bob know each other they can presumably use another way to ensure alice knows the correct public key for bob similarly if a software vendor wants to sign updates for their own software they can presumably embed the correct public key into it instead of relying on public key authorities to link their own key with their own identity the use of public key infrastruct...
|