Tag Archive for: broken

A Broken Piece of Internet Backbone Might Finally Get Fixed


This spring, services from heavy hitters like Google and Facebook seemed glitchy or inaccessible for people worldwide for more than an hour. But it wasn’t a hack, or even a glitch at any one organization. It was the latest mishap to stem from design weaknesses in the “Border Gateway Protocol,” the internet’s foundational, universal routing system. Now, after years of slow progress implementing improvements and safeguards, a coalition of internet infrastructure partners is finally turning a corner in its fight to make BGP more secure.

Today the group known as Mutually Agreed Norms for Routing Security is announcing a task force specifically dedicated to helping “content delivery networks” and other cloud services adopt the filters and cryptographic checks needed to harden BGP. In some ways the step is incremental, given that MANRS has already formed task forces for network operators and what are known as “internet exchange points,” the physical hardware infrastructure where internet service providers and CDNs hand off data to each others’ networks. But that process coming to the cloud represents tangible progress that has been elusive up until now.

“With nearly 600 total participants in MANRS so far, we believe the enthusiasm and hard work of the CDN and cloud providers will encourage other network operators around the globe to improve routing security for us all,” says Aftab Siddiqui, the MANRS project lead and a senior manager of internet technology at the Internet Society.

BGP is often likened to a GPS navigation service for the internet, enabling infrastructure players to swiftly and automatically determine routes for sending and receiving data across the complex digital topography. And like your favorite GPS mapping tool, BGP has quirks and flaws that don’t usually cause problems, but can occasionally land you in major bridge traffic. This happens when entities like internet service providers “advertise a bad route,” sending data on a haphazard, ill-advised journey across the internet and often into oblivion. That’s when web services start to seem like they’re down. And the risks from this…

Source…

The broken record: Why Barr’s call against end-to-end encryption is nuts

The US, UK, and Australia want Facebook to hold off on end-to-end encrypting Messenger until they have a way to inject themselves into the conversation.

Enlarge / The US, UK, and Australia want Facebook to hold off on end-to-end encrypting Messenger until they have a way to inject themselves into the conversation. (credit: picture alliance / Getty Images)

Here we go again.

US Attorney General William Barr is leading a charge to press Facebook and other Internet services to terminate end-to-end encryption efforts—this time in the name of fighting child pornography. Barr, acting Secretary of Homeland Security Kevin McAleenan, Australian Home Affairs Minister Peter Dutton, and United Kingdom Secretary of State Priti Patel yesterday asked Facebook CEO Mark Zuckerberg to hold off on plans to implement end-to-end encryption across all Facebook Messenger services “without including a means for lawful access to the content of communications to protect our citizens.”

The open letter comes months after Barr said in a speech that “warrant-proof” cryptography is “extinguishing the ability of law enforcement to obtain evidence essential to detecting and investigating crimes” and allowing “criminals to operate with impunity, hiding their activities under an impenetrable cloak of secrecy.” The new message echoes a joint communiqué issued by the US, UK, Australia, Canada and New Zealand (the “Five Eyes”) from July, which stated:

Read 15 remaining paragraphs | Comments

Biz & IT – Ars Technica

Cybersecurity: One in five schools says students have broken into computer systems

Find everything you need to know in this phishing guide. Read More The findings come from a cybersecurity audit of more than 430 schools across the UK carried out by the National Cyber Security Centre …
computer security – read more

‘The Chinese have already broken into my stuff’: Cyber espionage concerns Army acquisition three-star – ArmyTimes.com

‘The Chinese have already broken into my stuff’: Cyber espionage concerns Army acquisition three-star  ArmyTimes.com

Cyber security remains an issue for Army acquisition, and the solution may mean investing in resources to take some defense contractors completely “off the net …

“china espionage” – read more