[LINK] Brandis rushes to release telco metadata for civil proceedings

Christian Heinrich christian.heinrich at cmlh.id.au
Sun Dec 25 09:43:45 AEDT 2016


Frank,

On Fri, Dec 23, 2016 at 10:34 AM, Frank O'Connor
<francisoconnor3 at bigpond.com> wrote:
> What happens to which provider depends on their patronage, business model, server location(s) and the laws governing same. Lavabit
> was basically just an e-mail provider, and the keys remained consistent across sessions, so it was much more vulnerable than a
> service that spontaneously allocated new randomised keys as part of the socket connection process. Finally, Lavabit was
> geographically bound to one nation state (the US) and relied on the American Constitution for protection, whereas most VPN suppliers
> have 30 or 40 servers distributed around the world under different jurisdictions that can be used spontaneously and by choice (when
> initiating the connection) by the user.

I am not aware of a single VPN Provider who has incorporated a new
company in each country where the infrastructure is hosted and neither
is it an advantage due to
https://www.theguardian.com/technology/2014/apr/29/us-court-microsoft-personal-data-emails-irish-server

Then there are attacks against TOR, such as
https://blog.torproject.org/blog/did-fbi-pay-university-attack-tor-users
which is also funded by the US Government, how can they live with
themselves :)

On Fri, Dec 23, 2016 at 10:34 AM, Frank O'Connor
<francisoconnor3 at bigpond.com> wrote:
> The passphrase does not equate to the session keys, and the session keys determine
> what algorithm and variables will be applied when applying the socket’s encryption.

Once their passphrase is confirmed and associated time of when the VPN
was used then regardless of their destination then either the:
- Suspect will make the admission or;
- The evidence will be accepted by the magistrate due to the balance
of probabilities.

The technical implementation is irrelevant when
https://torrentfreak.com/vpn-anonymous-review-160220/ lists "VPN
PROVIDERS WITH SOME LOGS (MAX 7 DAYS)" (their capitalisation not
mine).


-- 
Regards,
Christian Heinrich

http://cmlh.id.au/contact




More information about the Link mailing list