Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

Monday, July 13, 2020

Swartz and the Free Internet



Until today I had not heard of the name Aaron Swartz. A dive down one twitter rabbit-hole led me to this documentary and I was quite amazed to learn about this child prodigy, this teenager who was one of the founders of Reddit, an architect of Creative Commons, the slayer of draconian legislations that restricted internet freedom, and conscientious young man who was driven to kill himself by MIT and the Obama administration. 

As if all these were not achievements enough for a lifetime, Swartz also gets the credit to enabling the discovery of a test that leads to the early detection of pancreatic cancer!

A friend who studied at MIT thought there was nothing new or shocking about MITs role in making a scapegoat out of Swartz. "It is difficult to admire MIT if you're a thinking person", he said, "Most of the research there is centred on war weapons and the best way to kill". So it may not be surprising that the Obama government wanted to make an example of a man whose principal crime was to get past the JSTOR paywall and download years of public-funded research papers.

Until last year I would have thought such a move went against the very grain of USAs self-proclaimed   position as a 'land of the free'. The aggressive rise of China, the Covid-19 pandemic, Galwan, and the nine-dash-line leads me to a more hardline position against authoritarian regimes who are trying to turn this freedom into some kind of liability.

If internet freedom and free access of research from US universities only leads to a one-way flow of information and technology, it may not be a bad idea to temper the zeal of youngsters, who, for all their deep knowledge, are unable to see the big picture of global geo-politics.


Wednesday, August 09, 2017

USB Vulnerability




Ever so often, whenever I pick up a USB memory stick, a certain train of thought crosses my mind.
"Here is a miracle device", I remind myself, "which one of the 6 billion+ across the world, one that has made data-transfer and battery charging so amazingly simple, and yet, contains within it the power to destroy nuclear plants, water and power supply grids and to unleash starvation, misery and death across the world!"

A few years ago, the Economist highlighted positive features of the 'thumb-drive' in an article very aptly titled. "In Praise of the Humble USB". While reading this piece, I was delighted to know that a computer architect of Indian origin,  Ajay Bhatt, had a key role to play in creating this amazing interface, which his parent company, Intel, decided to make 'the cheap USB plug and socket an open standard, available to manufacturers everywhere free of all royalty charges and licensing fees'. This one move destroyed the Firewire standard that had been patronised by Apple, and made USB a de facto standard across the world.

The ease with which the USB drive could be used also made it a handy tool in the hands of spies, spooks and saboteurs. The most famous example of this is the Stuxnet virus which CIA and Mossad used to destroy a thousand centrifuges in Iran. Ever since I heard of this cyber-attack, I have been awed by the sheer scale of destruction that can be unleashed through the USB drives. It also led me to the mistaken belief that the Iranian nuclear program had been irreparably damaged because of Stuxnet.

A recent documentary by Alex Gibney - "Zero Days" - suggests that in the real world, things are not what they seem. In their eagerness and impatience to destroy the Iranian nuclear centrifuges, Mossad apparently changed the codes created by their CIA/NSA collaborators, and released a version that was a lot less subtle, and left behind an electronic trail that was being used against the USA. It seems Iran has now built up one of the largest cyber-armies in the world, one that was behind two major warning attacks: one on the largest oil company in the world, SaudiAramco, destroyed every line of code on 30,000 computers, and then a surge attack on banks in the USA that crippled commercial operations.

As a friend recently pointed out, our biggest vulnerability is that new technology is being built on old systems that were not intended to be on a network. So, by default, we have gaping holes in just about all the things that now run our lives - utility supplies, banking & finance.

Even the ubiquitous USB works on FAT-32 system which has since evolved into exFAT and NTFS. However, the base continues to be FAT32, and as long as this is the case, our systems will continue to be inefficient - and utterly vulnerable.

---------------------------------------------
LINKS & REFERENCES

Stuxnet - Alex Gibney's Zero Days - https://youtu.be/AcgUGujn_nY
* FAT32, exFAT and NTFShttp://www.pcworld.com/article/3109559/hardware/why-your-usb-drives-file-format-matters-fat32-vs-exfat-vs-ntfs.html

Thursday, September 15, 2016

Don on Blockchain



Digital currency, Blockchain, Bitcoin...for quite some time now, these terms have been floating around in my mind like dragonflies on a sunny afternoon. I've always wanted to learn more about them but have never got hold of anything that I could relate to - until today.

This TED video by Don Tapscot has finally presented the topic in a way I could finally understand,at least to some extent. One example that struck me in particular was that of Analie Domingo, a Filipino housekeeper living in Toronto. It seems she is now able to send money to her ageing mother in Manila, on a Blockchain app called "Abra". It costs her a  fraction of time and money she used to spend on Western Union money transfers.

I did not know that the biggest flow of funds from the developed world to the developing world is remittances. At USD 600 billion per year, it is a far greater flow of funds than corporate investment or foreign aid. According to Don, it is also the biggest global rip-off by companies like Western Union.

If Blockchain is the wonder technology that can make international money transfers more efficient, if it can help artists earn a fair price for their creations and help maintain digital privacy of netizens, the next obvious question is - How can we change from byestanders to participants in this perfect storm coming our way?


------------------------------------------------------------
LINKS / REFERENCES

* Transcript - https://www.ted.com/talks/don_tapscott_how_the_blockchain_is_changing_money_and_business/transcript?language=en

* ABRA - transfering money freely and securely! - https://www.goabra.com/

* Imogen Heap - the first (?) Grammy awarded artist to sell her songs on Blockchain http://imogenheap.com/home.php?

* Vitalik Buterin - the founder of Etherium Bitcoin for Digital Contracts - https://en.wikipedia.org/wiki/Vitalik_Buterin

* Bitcoin Magazine - http://www.bitcoinmagazine.com/