TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

How Snowden's Email Provider Tried To Foil The FBI Using Tiny Font

212 pointsby bernardomover 11 years ago

17 comments

spikelsover 11 years ago
How can you not love this guy? Please donate to his defense fund:<p><a href="http://tinyurl.com/m65n4ko" rel="nofollow">http:&#x2F;&#x2F;tinyurl.com&#x2F;m65n4ko</a><p><a href="http://lavabit.com/" rel="nofollow">http:&#x2F;&#x2F;lavabit.com&#x2F;</a><p>Lavabit Legal Defense Fund 10387 Main Street, Suite 205 Fairfax, VA 22030 (703) 291-1999
评论 #6493783 未加载
评论 #6494228 未加载
评论 #6494198 未加载
DigitalSeaover 11 years ago
Wouldn&#x27;t the FBI have the technical capability to use optical character recognition to digitise the keys to actual text? Or maybe it&#x27;s too small to be legible to a high DPI scanner? I really admire Lavabit here, they&#x27;re not dealing with your average Joe, they&#x27;re dealing with the American Government and that costs money. Everyone has the chance to help potentially make history by supporting Lavabit and donate to its legal fund.<p>Many would have just given up the moment things escalated, but Ladar Levison never gave in and fought for the privacy of his users at the cost of his profitable business and life. The cards are stacked against him, but he didn&#x27;t let it get in the way of trying to fight the case and have it made publicly.<p>How many other companies have secretly complied with similar requests we don&#x27;t know about? United States of America, the land of the free, right?
评论 #6494240 未加载
byrootover 11 years ago
Not totally related:<p>It remind me of the case of &quot;Free&quot; a French ISP, they were forced like others ISP to send to the government the customer information related to IPs caught on P2P networks [0].<p>But the law did not specified how the data had to be sent, so to troll the government they sent everything by fax. And the volume was around multiple thousand queries a day.<p>[0] <a href="http://en.wikipedia.org/wiki/HADOPI_law" rel="nofollow">http:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;HADOPI_law</a>
评论 #6493822 未加载
pluies_publicover 11 years ago
Once again, if you want to support Lavabit, please donate to the defense fund either at <a href="http://lavabit.com/" rel="nofollow">http:&#x2F;&#x2F;lavabit.com&#x2F;</a> or <a href="https://rally.org/lavabit" rel="nofollow">https:&#x2F;&#x2F;rally.org&#x2F;lavabit</a>.
kabdibover 11 years ago
Other wonderful delivery methods:<p>- Baked into cuneiform<p>- Wax tablets. &quot;Oh, sorry, it got hot in my car and they&#x27;re a little runny...&quot;<p>- In the form of a crossword puzzle.<p>- Knitted into a scarf. &quot;Perl one, skip two...&quot;<p>Best to have hardware from which it is impossible to export a key.
评论 #6493868 未加载
评论 #6493908 未加载
评论 #6493943 未加载
anigbrowlover 11 years ago
<i>Wired Magazine details the ordeal</i><p>From the HN guidelines:<p>&#x27;Please submit the original source. If a blog post reports on something they found on another site, submit the latter.&#x27;
eliover 11 years ago
This was already discussed at length earlier today <a href="https://news.ycombinator.com/item?id=6487969" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=6487969</a>
评论 #6493705 未加载
Raphmediaover 11 years ago
Small moves like that makes me proud to be on the internet at this day and age of crisis. I hope I can tell my children or grand children that I actually cared and that I made a small difference, even if it&#x27;s only the smallest of all.<p>I hope it will stay the way it is. Probably not, seeing how the public is ignoring and&#x2F;or is not caring about the issue at all.
评论 #6493609 未加载
评论 #6494317 未加载
praptakover 11 years ago
See? Ridiculous key sizes do give additional protection (imagine scanning a 4MB key printout.) Eat that, Bruce Schneier!
eyearequeover 11 years ago
If my understanding is correct, the FBI could decrypt historical traffic if they had the keys. So, assuming the FBI&#x2F;NSA has a huge archive of Lavabit&#x27;s customer traffic (would not surprise me), couldn&#x27;t they decrypt it all now since they have the SSL keys?
评论 #6493649 未加载
sxpover 11 years ago
&gt;To make use of these keys, the FBI would have to manually input all 2,560 characters, and one incorrect keystroke in this laborious process would render the FBI collection system incapable of collecting decrypted data<p>That would take an intern less than an hour to digitize. Maybe three interns if you needed redundancy. This seems like a completely useless action on Levison&#x27;s part since it end up giving the FBI the information they wanted but will still piss them off.
评论 #6494098 未加载
评论 #6494165 未加载
MayankGoyalover 11 years ago
&gt;&gt;&quot;To make use of these keys, the FBI would have to manually input all 2,560 characters, and one incorrect keystroke in this laborious process would render the FBI collection system incapable of collecting decrypted data,&quot; prosecutors complained.<p>That&#x27;s pretty misleading - they make it sound like if they press the wrong key once it&#x27;ll destroy the FBI&#x27;s entire system.
mcphilipover 11 years ago
Off topic, but brings to mind another technique famously used by Goldman when they dumped over a billion pages to the 50 staffers in the Federal Crisis Inquiry Commission:<p><a href="http://money.msn.com/top-stocks/post.aspx?post=00000065-0000-0000-6ef7-1a0000000000" rel="nofollow">http:&#x2F;&#x2F;money.msn.com&#x2F;top-stocks&#x2F;post.aspx?post=00000065-0000...</a>
jgeraertover 11 years ago
Clever. We did something similar for a friend getting married. Instead of giving his present directly we created a text file encrypted with his public pgp key. We printed out the ascii-armored cryptotext and handed it over. He had lots of fun typing it back into his computer.
评论 #6494205 未加载
评论 #6494399 未加载
devxover 11 years ago
Upvoted because of the story, but I like NPR less and less these days. So far they&#x27;ve been mainly pro-government than pro-Snowden.
评论 #6494422 未加载
joe_computerover 11 years ago
I&#x27;m just happy the FBI doesn&#x27;t know how to run OCR. Hell they could have mechanical turked segments, like captcha farms.
stretchwithmeover 11 years ago
I think he should have encrypted the key using itself. That way he can give them the key. And they can decrypt it and send it back in time so they can decrypt it.