Home / Internet / Podsetnik:Šta je Snowden ispričao i šta smo zaboravili

Podsetnik:Šta je Snowden ispričao i šta smo zaboravili

Skoro da se većina security tekstova kod nas na blogu odnosi na hakerske aktivnosti i zaštitu od istih, vreme je da se podsetimo da osim ove „ekipe“ internetom ordinira i siva eminencija. Vlade, razne „bezbednosne“ i „anti-terorističke“ institucije, koje se kriju iza imena koja vraćaju veru u ljudski rod, a čije su misije daleko od plemenitih. Pre skoro 4 godine desio se najturbulentniji period koji poznajemo u istoriji interneta, a glavni akter je bio upravo jedan običan radnik jedne od takvih plemenite organizacije – Edward Snowden. Dokumenta koja je obelodanio promenila su percepciju svih nas koji koristimo internet, ali koliko vidim ( po društvenim mrežama ) na kratko ili ni toliko. Elem, da ovaj tekst ne zazvuči previše kritički prema čitaocima, a i da ne ispadne da sam ja paranoična persona, najbolje je da uradimo reviziju zaključaka koji su se izvukli iz objavljenih dokumenata. Ko o čemu, ja o mreži, tako da će ovo i biti prva tačka.

NSA Snowden

Mreža

                    Ovde neću da pričam o društvenim mrežama već isključivo o mrežnoj opremi i provajderima, kao i njihovom spregom sa NSA ( National Security Agency – ako neko ne zna ). Eksplozija Huawei-a u TELCO segmentu je bila zabrinjavajuća. Počele su optužbe od strane američkih glasnogovornika kako se ovi ruteri planski isporučuju sa backdoor-ovima koji omogućavaju Kineskoj vladi da špijuniraju saobraćaj koji ide preko ovih uređaja. Ruteri, switch-evi, bazne stanice, serveri… Koliko sam shvatio, Huawei nije uložio neke preterane napore da ovo demantuje, već je krajem 2013. jednostavno napustio američko tržište. Posle povlačenja iz USA, jedan od direktora Huawei-a je imao izjavu u kojoj je rekao da im ide super i bez ovog tržišta kao i da im je profit 36 miliona dolara. Ovaj potez je doneo 2 dobre stvari Amerikancima: prednost „proslavljenim“ domaćim vendorima i zgrožavanje javnosti prema opremi ovog vendora, što dalje znači i eliminaciju konkurencije. Ja lično mislim da je u ovome bilo ili da još uvek ima istine, ali da je akcija inicirana iz Vašingtona sa posebnim namerama, a ne u interesu opšteg dobra.

Pre 2-3 godine Telekom Srbija je svoju IP infrastrukturu prebacio na Huawei mrežnu opremu, a i deo mobilne mreže radi pod ovom opremom. Pa eto vam teme za razmišljanje

Snowden je u dokumentina objavio da je radio za NSA ali da se vodio na platnom spisku DELL-a. Dakle, Dell ima ortakluk sa NSA. Serveri Dell? Neka hvala.  Spominje takođe i da je CISCO tesno sarađivao sa NSA. Dakle, Huawei je kritikovan zbog „moguće“ špijunaže, ali Cisco pošto radi u interesu NSA nikada nije pomenut? Pa, vrlo logično. Bolje je da NSA ima pristup svim mogućim podacima, nego da Kinezi mogu da uzmu share od 20-30%? Ne dolazi u obzir. Bivči direktor NSA Alexander je imao samo jedan cilj – a to je potpuni pristup svim informacionim tokovma po svetu, kako internetu tako i telefoniji. Zato je kampanja Huawei nastala. Zato je kampanja Huawei plasirana. Zato je Huawei potisnut. Sa druge strane, ni sam Cisco ne krivim previše što je pristao. Za njih je sve to biznis. zašto bi oni odbili saradnju sa sopstvenom vladom i izgubili ko za koliko milijardi dolara? Verujem da su kod njih lova kao i lični interesi pojedinaca ( NSA-ovci u redovima CISCO-a) presudili. Još jedna tema kada smo kod CISCO-a. Znamo da je Cisco lider u mrežnim proizvodima. Znamo da su u dosta stvari bili prvi. Zašto njihova ASA nikada nije postala slavna u NextGen Firewall segmentu ? Ja ne verujem da nisu imali načina da i u ovom segmentu budu apsolutni lideri, već verovatno nisu našli adekvatan način da proizvod bude adekvatan i korisnicima i NSA. Možda je ovaj moj komentar previše konspirativan. Možda…

Zanimljivost: Koliko ima ozbiljnijih proizvođača firewall-a a da nisu iz USA?

Tačan odgovor – 4!

CheckPoint – Izrael

Sophos – UK

Stormshield – Francuska

Cyberoam – India ( u vlasništvu Sophos-a)

Provajderi

 AT&T je najveći poslodavac bivšim agentima NSA, CIA, BIA itd…

Verizon je među prvima pristupio programu PRISM – koji služi za prikupljanje svih komunikacionih podataka. Dakle, dobrovoljno je dozvolio špijunažu sopstvenih korisnika. A oni su još to i plaćali.

Upstream provideri ( T1 provideri) su ipak malo suptilnije pristali na ovu igru. Saobraćaj je presretan direktno na optici, mirroring-om. Da, čak i na onom podvodnom optičkom kablu između USA i Evrope.

Ovo govori da su sve karike u lancu deo globalnog plana. Svi koji su iznad nas – običnih korisnika.

Društvene mreže/Mail

Svi veliki igrači koji pružaju usluge navedene u podnaslovu su oberučke prihvatile da predaju (ne prodaju) podatke NSA. Časni izuzeci su Yahoo i Twitter. Yahoo je poklekao pod naredbom izmišljenog suda pod nazivom FISA. E, tek uloga ovog entiteta je tragikomična i o njoj neću pisati, a ako nekog zanima nek’ izgugla. Twitter je uspeo da održi nezavisnost, ali sama struktura sajta je takva da je relativno lako profilisati svakog korisnika, a automatizacija je prosta ako se uzme u obzir njihov API, koji koriste i neki hakerski alati ( maltego npr).  Google? Bez problema. Facebook? Takođe.

Za Facebook je dobar jedan primer za koji sam se sit ismejao. Naime, naš drug Mark je bez problema prihvatio da Facebook dozvoli NSA da skuplja podatke korisnika, a otprilike u isto vreme je u kupio 4 kuće koje se nalaze oko njegove, kako bi sebi obezbedio veću privatnost. Cena privatnosti očigledno nije ista za sve.

Software

I ovde ima par komičnih scena ali prednjači Microsoft. Najave za Outlook 2013 su bile pompezne. Najveća sigurnost ikada, umetničko delo od enkripcije, privatnost, bezbednost, ma san snova. I onda pošalju taj isti Outlook NSA-u na tumačenje i shvate da ni blizu nije korisno imati toliko sigurnosti.Napravljen je kompromis da su korisnici dobili najsigurniji Outlook ikada, a NSA – sitnicu. Rupu kroz koju mogu da pročitaju po neki mail. U stvari svaki mail. Hm…

Pa onda One Drive ( u to vreme SkyDrive). To je dato instant NSA-u.  Sve u svemu, Microsoft je saradnik broj 1 NSA-a.

Skromno drugo mesto pripadalo je Skype-u, koji je sada u vlasništvu Microsofta. Čudno zar ne?

Ako neko ima nešto hostovano na Azure-u, želim mu svu sreću ovog sveta. Možda se desi da server padne, pa vas umesto monitoringa kontaktiraju iz NSA, da vam kažu da je server u problemu, jer ipak, oni rade u korist svih nas? Mada, možda i ne, jer nismo Američki državljani.

Telefonija

NSA je upala u  interne sisteme kompanije Gemalto. Ova holandska kompanija je jedan od vodećih svetskih proizvođača svih vrsta kartica, pa između ostalog i SIM kartica. Sa podacima koje su imali mogli su neometano da loguju saobraćaj sa tih kartica. Ova informacija je posebno zanimljiva jer je imala direktne veze i sa nama, jer je NSA testirala svoju tehnologiju nad korisnicima tadašnjeg Mobtela. Podaci  koje su logovali obuhvataju osim pozivaoca i pozivanog, vremena trajanja razgovora i podatke o lokaciji (BSID) kada je razgovor vođen.

Organizacija 

Osim USA, najbitniji saveznik je bio Engleska. Njihov GCHQ je bio brat blizanac NSA po aktivnostima, i komplementaran sistem. Australija, Novi zeland i Kanada su takođe spadale u najbliže saradnike NSA, ali njihovu ulogu Snowden nije preterano akcentirao. Ova družina sebe je nazivala “ Pet Očiju“.

Zaključak

Ovo je sve ukratko opis bez ikakvih političkih pitanja i činjenica koje se spominju u Snowdenovim iskazima, jer realno u politiku se niti razumem niti me interesuje. Pogotovo ne globalna. Takođe, stavovi koji su navedeni su moji lični, dakle ne bloga Umrežen. Ukoliko bude (a cenim da će biti) komentara tipa: „Ja ne radim ništa na internetu što bi bilo zanimljivo bilo kome“ ili „Jeste. baš će mene da prate“ možete nam poslati vaše usere i password-e da eto mi u slobodno vreme koristimo vaše mail naloge 🙂 Kraju šala, nema nikakve namere da izazovem paranoju ili strah, već je ovo samo podsetnik šta se dešava po internetu, da znate da neko negde tamo može u 3 klika da dođe do gomile podataka o svakome od nas.

About Dejan

Zaljubljenik u sve što ima veze sa mrežama, komunikacijama i bezbednošću na mreži. - 9+ godina iskustva u IT-u ( ISP, Enterprise) - Trenutno radim u mladoj perspektivnoj firmi koja nudi kompletna rešenja krajnjim korisnicima - Veliki broj kurseva iz raznih oblasti ( Routing&switching, Security,MDM, Cloud, F-Secure, CEH) - "Svi smo se našli pred problemom koji nam je neko drugi rešio. Pitanje je samo koliko brzo naiđeš na nekog ko je voljan da ti pomogne." - Ponosni otac 2 dečaka

42 comments

  1. That is very fascinating, You are an overly skilled blogger. I have joined your feed and look forward to in quest of extra of your great post. Also, I’ve shared your website in my social networks!

  2. Hello.This post was extremely remarkable, especially since I was searching for thoughts on this matter last Monday.

  3. Fitspresso is a brand-new natural weight loss aid designed to work on the root cause of excess and unexplained weight gain. The supplement uses an advanced blend of vitamins, minerals, and antioxidants to support healthy weight loss by targeting the fat cells’ circadian rhythm

  4. Thanks for the sensible critique. Me & my neighbor were just preparing to do some research on this. We got a grab a book from our local library but I think I learned more clear from this post. I am very glad to see such fantastic information being shared freely out there.

  5. Thanks for the sensible critique. Me and my neighbor were just preparing to do a little research on this. We got a grab a book from our local library but I think I learned more clear from this post. I am very glad to see such excellent information being shared freely out there.

  6. I really like your writing style, excellent info, appreciate it for putting up :D. „He wrapped himself in quotations- as a beggar would enfold himself in the purple of Emperors.“ by Rudyard Kipling.

  7. Thank you for another excellent post. Where else could anyone get that kind of info in such an ideal way of writing? I have a presentation subsequent week, and I am on the search for such information.

  8. I read this article fully concerning the resemblance of most
    up-to-date and earlier technologies, it’s amazing article.

  9. Pretty! This was a really wonderful post. Thank you for your provided information.

  10. What i don’t realize is in reality how you’re no longer really much more neatly-liked than you may be now. You’re very intelligent. You recognize therefore considerably when it comes to this matter, made me for my part believe it from a lot of numerous angles. Its like men and women don’t seem to be fascinated unless it is something to do with Lady gaga! Your personal stuffs nice. All the time deal with it up!

  11. I have been browsing online greater than three hours nowadays, yet I by no means discovered any attention-grabbing article like yours. It’s beautiful value sufficient for me. Personally, if all site owners and bloggers made excellent content as you did, the net will probably be much more useful than ever before.

  12. I discovered your blog site on google and check a few of your early posts. Continue to keep up the very good operate. I just additional up your RSS feed to my MSN News Reader. Seeking forward to reading more from you later on!…

  13. Does your website have a contact page? I’m having a tough time locating it but, I’d like to send you an email. I’ve got some ideas for your blog you might be interested in hearing. Either way, great site and I look forward to seeing it develop over time.

  14. Good ?V I should certainly pronounce, impressed with your web site. I had no trouble navigating through all tabs and related info ended up being truly simple to do to access. I recently found what I hoped for before you know it at all. Quite unusual. Is likely to appreciate it for those who add forums or anything, site theme . a tones way for your customer to communicate. Excellent task..

  15. Thanks a bunch for sharing this with all of us you actually know what you are talking about! Bookmarked. Kindly also visit my site =). We could have a link exchange agreement between us!

  16. Wow that was odd. I just wrote an very long comment but after I clicked submit my comment didn’t show up. Grrrr… well I’m not writing all that over again. Anyways, just wanted to say fantastic blog!

  17. This really answered my problem, thank you!

  18. I respect your piece of work, regards for all the informative blog posts.

  19. You have brought up a very excellent points, regards for the post.

  20. I got what you intend,saved to favorites, very decent site.

  21. I’ve read some good stuff here. Definitely worth bookmarking for revisiting. I wonder how much effort you put to make such a great informative website.

  22. Wonderful website. Plenty of useful info here. I?¦m sending it to several friends ans additionally sharing in delicious. And naturally, thanks for your sweat!

  23. I’d have to verify with you here. Which is not one thing I normally do! I enjoy reading a submit that can make people think. Additionally, thanks for allowing me to comment!

  24. Great – I should certainly pronounce, impressed with your site. I had no trouble navigating through all the tabs as well as related info ended up being truly easy to do to access. I recently found what I hoped for before you know it at all. Reasonably unusual. Is likely to appreciate it for those who add forums or anything, web site theme . a tones way for your client to communicate. Nice task.

  25. I dugg some of you post as I cogitated they were invaluable extremely helpful

  26. I¦ll immediately grab your rss feed as I can not find your email subscription link or e-newsletter service. Do you’ve any? Kindly permit me recognise so that I could subscribe. Thanks.

  27. Hey there! Do you know if they make any plugins to help with Search Engine Optimization?
    I’m trying to get my site to rank for some targeted keywords but I’m not seeing
    very good results. If you know of any please share. Thank
    you! I saw similar blog here: blogexpander.com

  28. Howdy! Do you know if they make any plugins to assist with Search Engine Optimization? I’m trying to get my blog to rank for some targeted
    keywords but I’m not seeing very good gains. If you know
    of any please share. Kudos! I saw similar text here: Escape rooms list

  29. Wow, wonderful weblog structure! How long have you been running a blog for?
    you made blogging glance easy. The overall glance of your web site is wonderful,
    as smartly as the content! You can read similar here prev next and
    that was wrote by Lizbeth64.

  30. Wow, superb blog structure! How long have you been running
    a blog for? you make running a blog look easy.
    The full glance of your web site is great, let alone the content material!
    You can see similar here prev next and those was wrote by Woodrow09.

  31. Wow, wonderful weblog structure! How long have you ever been running a blog for?
    you made blogging glance easy. The total glance
    of your web site is fantastic, let alone the content material!
    I read similar here prev next and that was wrote by Jayson63.

  32. Wow, marvelous weblog layout! How lengthy have you ever been blogging
    for? you made blogging glance easy. The full look of your site is wonderful,
    as smartly as the content material! You can read similar here prev next and those was wrote by
    Steven88.

  33. Wow, marvelous weblog structure! How long have you ever been running a blog for?
    you made running a blog look easy. The entire look of your website is magnificent, as
    well as the content material! You can see similar here najlepszy sklep

  34. Wow, wonderful blog structure! How lengthy
    have you ever been running a blog for? you make running a blog
    glance easy. The entire look of your website is wonderful, let alone the content!
    You can see similar here sklep online

  35. Howdy! Do you know if they make any plugins to assist with SEO?
    I’m trying to get my site to rank for some targeted keywords but
    I’m not seeing very good results. If you know of any please share.
    Thanks! I saw similar text here: Link Building

  36. Howdy! Do you know if they make any plugins to help with SEO?
    I’m trying to get my blog to rank for some targeted keywords but I’m
    not seeing very good results. If you know of any
    please share. Many thanks! You can read similar text here:
    Scrapebox List

  37. Hey there! Do you know if they make any plugins to help with Search Engine Optimization? I’m trying to get my blog to
    rank for some targeted keywords but I’m not seeing very
    good success. If you know of any please share. Appreciate it!
    You can read similar article here: Sklep internetowy

  38. Hello to all, the contents present at this website are truly amazing for people knowledge, well, keep up the
    good work fellows. I saw similar here: E-commerce

  39. Very nice post. I just stumbled upon your blog and wished to say that I’ve
    really enjoyed surfing around your blog posts.
    In any case I will be subscribing to your feed and I hope you write again very soon! I saw similar here: sklep internetowy and also here: e-commerce

  40. Wow, incredible weblog layout! How lengthy have you ever been blogging
    for? you made blogging look easy. The entire glance of your site is magnificent, as neatly as the content material!
    You can see similar: sklep internetowy and here najlepszy sklep

  41. Sta im vredi da mene spijuniraju. Kakve vajde imaju od toga. Nisam ni gore a nisam ni dole. Plivam sredinom. Ne talasam.
    Takvih kao ja je 9 desetina. Oni sto su u toj jednoj desetini ,komunikacija preko interneta ne zanima. Oni komunikacije obavljaju preko kurira, usmeno.

Leave a Reply

Your email address will not be published. Required fields are marked *

*

Scroll To Top