Mick

Author's posts

an historical perspective

El Reg commentards can get worked up about a whole range of topics. That is one of the reasons I so enjoy reading it. Back in May 2009, El Reg posted an article about the then Home Secretary’s decision to place the right wing US Radio commentator, Michael Savage, on a persona non grata list …

Continue reading

Permanent link to this article: https://baldric.net/2013/12/10/an-historical-perspective/

ssl cipher check

My recent explorations of how to strengthen the ssl/tls certificates I use on both trivia and my mail service have given me cause to look for tools to help me test my configuration. The Calomel firefox plugin and sslabs site are very useful for checking HTTPS configurations, but they are fairly specifically aimed at that …

Continue reading

Permanent link to this article: https://baldric.net/2013/12/10/ssl-cipher-check/

no more akismet

In common with (probably) all wordpress based blogs, trivia has the aksimet plugin in place. Akismet is shipped by default in the base wordpress installation and new users are encouraged to sign up for an API key. On first configuring the blog’s plugins, users are greeted with the following commentary about akismet: Used by millions, …

Continue reading

Permanent link to this article: https://baldric.net/2013/12/08/no-more-akismet/

where are you now?

image of map in germany

The ongoing revelations from Snowden continued recently with reporting in the Washington Post about the NSA’s program to track mobile ‘phone location data. Reporting here and elsewhere suggests that the NSA is gathering nearly 5 billion records a day on the whereabouts of cellphones around the world. That reporting, and its obvious implications, reminded me …

Continue reading

Permanent link to this article: https://baldric.net/2013/12/08/where-are-you-now/

TLS ciphers in postfix and dovecot

A recent exchange amongst ALUG email list members about list etiquette resulted in a flurry of postings on a variety of related topics. I posted a flippant comment about top posting, but did so (deliberately) from my Galaxy tab using Samsung’s default email client which actually forces top posting. Steve responded suggesting that I look …

Continue reading

Permanent link to this article: https://baldric.net/2013/12/07/tls-ciphers-in-postfix-and-dovecot/

boycott amazon

This time last year I wrote to Jeff Bezos telling him that I was no longer prepared to support a multinational which so arranged its tax affairs that it paid little or no UK corporation tax on turnover estimated (last year) at some £3.3 billion. This year, Margaret Hodge, chair of the UK Parliamentary Public …

Continue reading

Permanent link to this article: https://baldric.net/2013/12/03/boycott-amazon/

data is imaginary. this burrito is real

XKCD cartoon

As usual, Randall Munroe over at xkcd has his own take on the NSA/GCHQ snooping reportage. My thanks as always.

Permanent link to this article: https://baldric.net/2013/12/03/data-is-imaginary-this-burrito-is-real/

counterpoint the surrealism of the underlying metaphor

Last week, El Reg posted an amusing take on the apparent invasion of the NSA by Management Consultants. Nothing new there then. From personal experience I can confirm that UK Government has been completely overrun with the buggers for years.

Permanent link to this article: https://baldric.net/2013/12/02/counterpoint-the-surrealism-of-the-underlying-metaphor/

necessary and proportionate

image of website

Yesterday I received an email from the Open Rights Group asking me to sign an on-line petition set up in collaboration with nearly 300 other organisations. The email said: In 2013, we learned digital surveillance by governments across the world knows no bounds. Their national intelligence and investigative agencies capture our phone calls, track our …

Continue reading

Permanent link to this article: https://baldric.net/2013/11/27/necessary-and-proportionate/

more ninjastiks

In July I noted that a company calling itself Ninjastik had popped up selling what looked to be essentially the Tor Browser Bundle on an 8 Gig stick for $56.95 or a 16 Gig stick for $69.95. As I expected, we have now seen one or two more companies attempting to sell products which leverage …

Continue reading

Permanent link to this article: https://baldric.net/2013/11/26/more-ninjastiks/

I’m sure that is not what they meant

Yesterday’s Guardian contained a quarter page advertisement from “hibu” (the company formerly known as Yell, and before that, Yellow Pages). The advertisement showed a picture of a bright red and green fish swimming against a tide of uniformly blue fish. The headline was “Get spotted on all kinds of digital devices”. The ad finished with …

Continue reading

Permanent link to this article: https://baldric.net/2013/10/25/im-sure-that-is-not-what-they-meant/

Oliver Stone on PRISM

I am a big fan of Oliver Stone movies. Outside the pages of the Guardian and its sister paper the Observer, the level of comment in the UK on NSA/GCHQ surveillance capability remains bizarrely muted. In the US they are at least having a conversation. Whether that conversation results in any sensible decisions, and then …

Continue reading

Permanent link to this article: https://baldric.net/2013/10/25/oliver-stone-on-prism/

wd caviar green load cycle count

Back in January of this year I upgraded my desktop’s hard drive to a 2 TB WD Caviar Green. Not the world’s fastest drive, but quiet, power efficient, and, so I thought, good value for money. I subsequently used two of the same disks in a new build RAID 1 server (which I must get …

Continue reading

Permanent link to this article: https://baldric.net/2013/10/12/wd-caviar-green-load-cycle-count/

Snowden paranoia

A recent exchange on the tor-talk mailing list about conspiracy theories elicited this gem from “Ted Smith” (obviously a Bob Heinlein fan). “One of the more Gibsonesque theories I’ve heard is that Snowden is a CIA operative working to destabilize the NSA’s surveillance system on behalf of the CIA and other elite that feel too …

Continue reading

Permanent link to this article: https://baldric.net/2013/10/09/snowden-paranoia/

running out of money

The failure of the US Government to agree a budget with Congress is having some interesting effects. NIST appears to be completely shut down: (Click images for full size). The NSA says “Due to the Government Shutdown, this site is not being updated.” (Though one assumes that they are still being funded….) Whilst the Whitehouse …

Continue reading

Permanent link to this article: https://baldric.net/2013/10/09/running-out-of-money/

that’s completely ludicrous

Glenn Greenwald on Newsnight. The full episode of Newsnight’s report including Greenwald’s interview and comment from Sir David Omand (ex Director GCHQ) can be seen here on BBC’s iplayer. Gordon Corera, the BBC’s Security respondent reports here on the Newsnight episode. As an aside, I was amused by Ross Anderson’s claim that many academics had …

Continue reading

Permanent link to this article: https://baldric.net/2013/10/05/thats-completely-ludicrous/

the guardian on tor

My last post noted that the Guardian had posted a series of articles on the Tor network and Snowden’s latest revelations about how the NSA has been attacking that network. All those posts are worth reading, but my favourite is the one by Bruce Schneier explaining how the NSA has attacked Tor users through browser …

Continue reading

Permanent link to this article: https://baldric.net/2013/10/05/the-guardian-on-tor/

good news for tor

The past couple of days have seen a flurry of news stories about Tor. Some of the news has hit the mainstream media, some of it hasn’t. Yet. A couple of day ago, a rather plaintive post to the tor-talk mailing list read: “looking for a way to contact silk road.Site shut down.money at stake.” …

Continue reading

Permanent link to this article: https://baldric.net/2013/10/05/good-news-for-tor/

another good reason to avoid the kindle

My thanks as always to xkcd (P.S. Take a look at xkcd 533 and read the comment in the “mouseover” title popup. Then try not to laugh.)

Permanent link to this article: https://baldric.net/2013/10/02/another-good-reason-to-avoid-the-kindle/

get your own nsa email account

Some enterprising chap, possibly called “Chris Fisher” if the whois record is correct, has registered the domain name nsa.org. He now appears to be selling email accounts on that domain. The accounts are quite pricey too at $142.00 considering that he is only giving 2 Gig of store. Mind you, his FAQ is quite honest. …

Continue reading

Permanent link to this article: https://baldric.net/2013/09/25/get-your-own-nsa-email-account/

just for rob

Shortly after the launch of the new iPhone 5S, my old friend Rob emailed me trying to goad me into writing a post about it. After all, it was made by one of my least favourite companies and it contained a supposedly funky bit of kit in the shape of its fingerprint scanner. Rob pointed …

Continue reading

Permanent link to this article: https://baldric.net/2013/09/23/just-for-rob/

that’s another password I have to change

Michael Horowitz has posted an interesting article over at Computer world. In it he points out that, by default, most android devices (tablets and ‘phones) routinely ‘phone home to Google to back up Wi-Fi passwords along with other assorted settings. Google sells this option as a convenience to help you regain settings after you upgrade …

Continue reading

Permanent link to this article: https://baldric.net/2013/09/20/thats-another-password-i-have-to-change/

RSA says don’t use RSA

A report in wired today says that RSA Security [*] have released an advisory to developer customers noting that the Dual Elliptic Curve Deterministic Random Bit Generation (or Dual EC DRBG) algorithm (the one which is subject to speculation about NSA interference) is the default in one of its toolkits and strongly advised them to …

Continue reading

Permanent link to this article: https://baldric.net/2013/09/20/rsa-says-dont-use-rsa/

Naughton’s ten tips

Back in July I commented on one of John Naughton’s “networker” columns in the Observer. Last Sunday, Naughton wrote another nice article titled “10 ways to keep your personal data safe from online snoopers”. Naughton begins the article by recalling that Tim Berners-Lee called the technology he devised a “web” of interrelated documents. He notes …

Continue reading

Permanent link to this article: https://baldric.net/2013/09/17/naughtons-ten-tips/