On Fri, Aug 20, 2010 at 10:48:10AM +0200, Steven Glogger wrote:
> stony,
> >We probably all followed the discussion in Germany about the
> >"Bundestrojaner" and how it failed.
> >
> >And of course, a trojan spying on citizens is a major impact in
> >privacy, which is not acceptable.
> yes, sounds again like a aprils joke.

... but but in CSI they do that all the time. OK in CSI even the google
street view is live and people belive it.
 
> >However I don't think, that it's possible to create such a trojan
> >and use it, because of the following facts:
> >
> >- It's not very easy to put a trojan in a system of a prudent
> >user, who updates regularly and doesn't open every mail or
> >document received.
> hmm.. there are MANY customers, which are virus infected. I see in
> our network (including ex-Bluewin) a large number of potential
> customers which will gladly accept to install this trojan (even if
> they don't notice).

Yep, see below.
 
> >- Virusscanners will soon know the trojan
> >- The swiss government doesn't have enough power to force
> >antivirus software creators to ignore the trojan.
> hmm... if you can force them to ignore the trojan, will a real
> trojan/malware writer be able to use this signature/architecture to
> circumvent any protection?

Most probably yes, since the bundestrojaner should be considered  malware
as well.
 
> >- Not all criminals use Windows ;-)
> fortunately. but windows rate is still high.
> 

I guess organized crime will figure this out quickly and switch to secure
alternatives. So in the end only the dumb will get monitored. So all this
effort will be worthless in short time. It is similar to the live capture
of traffic. Smart people will use encryption and so the captured data well
end up being mostly unusable noise.

> >
> >Still I'm happy, that we SwiNOGers are not the only ones worrying
> >and/or fighting this project. Even if this project doesn't work,
> >it will burn lots of money while trying to do so.
> yes, our money... ,-(
> that leads me to the questions: now the trojan is installed, WHO the
> hell analyzes everything? this is going to be a huge amount of data
> which needs to be stored (where? will it be secure and protected?),
> analyzed (who will do this?) and brought into court (which judge
> will understand??).
> 

CSI? DBA? Analyzing data, doesn't that happen automatically when you push
a button?

> i assume: this project will fail.
> too risky, to bad for the politicians reputation, causes too much
> troubled waters.
> it will cost too much money, and resources are not available.
> 

I'm not so sure. It seems that privacy is no longer en vogue and that many
people think we need more security because the world is so evil.
The only way to stop this is to make a big fuss about it so that no
politican wants to touch this toppic anymore.

> in my opition this is just kind of marketing blurp from the
> politicians. dont forget: elections are close...
> 

Yeah and thanks to SP and SVP we're now in constant election fights. So
expect more stupid ideas to bubble up.

-- 
:wq Claudio

The two most common things in the universe are hydrogen and stupidity.
                -- Harlan Ellison


_______________________________________________
swinog mailing list
swinog@lists.swinog.ch
http://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog

Antwort per Email an