'Vimba nesvomhu. Encryption ishamwari yako. Ndozvaunokwanisa kuramba wakachengeteka kunyange pamberi peNSA.' Mufananidzo: Beck Diefenbach/Reuters
Iye zvino zvatine ruzivo rwakakwana nezvekuti sei NSA nzeve dziri pa Indaneti, kusanganisira zvinoburitswa nhasi yeNSA yekunetesa nemaune kwekriptographic system, tinogona pakupedzisira kutanga kufunga nzira yekuzvidzivirira.
Kwemavhiki maviri apfuura, ndanga ndichishanda neGuardian paNSA nyaya, uye ndakaverenga mazana ezvinyorwa-zvakavanzika zveNSA zvakapihwa nemuridzo Edward Snowden. Ini ndanga ndisiri chikamu chenyaya yanhasi - yanga ichiitwa zvakanaka ndisati ndauya - asi zvese zvandakaverenga zvinotsigira zviri kutaurwa neGuardian.
Panguva ino, ndinonzwa kuti ndinogona kupa zano rekuti ndirambe ndakachengeteka pane mhandu yakadai.
Iyo yekutanga nzira iyo NSA inoteerera nayo painternet kutaurirana iri mumambure. Ndiko uko kugona kwavo kwakanakisa. Ivo vakadyara muzvirongwa zvakakura kuti vaunganidze otomatiki uye kuongorora network traffic. Chese chinoda kuti varwise makomputa ega ega anodhura uye ane njodzi kwavari, uye vanozoita zvinhu izvozvo nekungwarira uye zvishoma.
Kusvetuka its chakavanzika zvibvumirano nemakambani enharembozha - ese eUS neUK, uye mamwe akawanda "vanodyidzana" pasi rose - NSA inowana mukana kune matrunk ekutaurirana anofambisa traffic yeinternet. Mumamiriro ezvinhu apo iyo isina iyo mhando yehushamwari yekuwana, inoita nepainogona napo kutarisa pachivande nzira dzekutaurirana: kubaya tambo dzepasi pegungwa, kubata satellite kutaurirana, zvichingodaro.
Ndiyo nhamba yakakura yedata, uye NSA ine zvakafanana kugona kukuru kukurumidza kusefa mukati mese, uchitsvaga inonakidza traffic. "Inonakidza" inogona kutsanangurwa nenzira dzakawanda: nekwakabva, kwainoenda, zviri mukati, vanhu vanobatanidzwa, zvichingodaro. Idzi data rinoiswa muhurongwa hwakakura hweNSA hwekuongorora ramangwana.
NSA inounganidza zvakawanda Metadata nezve internet traffic: ndiani ari kutaura naani, rini, yakawanda sei, uye nenzira ipi yekutaurirana. Metadata iri nyore kuchengeta nekuongorora pane zvirimo. Inogona kuva yakanyanyisa kumunhu kumunhu, uye inokosha zvikuru kungwara.
Iyo Systems Intelligence Directorate ndiyo inoona nezvekuunganidzwa kwedata, uye zviwanikwa zvainopa kune izvi zvinoshamisa. Ndakaverenga mamiriro emushumo mushure memushumo wezvirongwa izvi, kukurukura kugona, ruzivo rwekuita, kukwidziridzwa kwakarongwa, zvichingodaro. Dambudziko rega rega - kudzoreredza masaini emagetsi kubva mufayibha, kuenderana nehova dzeterabyte sezvadzinofamba, kusefa zvinhu zvinonakidza - ine boka rayo rakazvipira kurigadzirisa. Kusvika kwayo kune pasi rose.
Iyo NSA zvakare kurwisa network zvishandiso zvakananga: routers, switch, firewalls, etc. Zvizhinji zvezvigadziri izvi zvine ongororo zvigone yakatovakwa mukati; hunyengeri ndehwekuvabatidza pasina chakavanzika. Iyi inzira ine zvibereko zvakanyanya yekurwisa; ma routers anogadziridzwa zvishoma kazhinji, haawanzo kuve nechengetedzo software yakaiswa paari, uye inowanzo furatirwa sekusagadzikana.
NSA inopawo zviwanikwa zvakawanda kurwisa macomputer ekupedzisira. Iyi mhando yezvinhu inoitwa neTAO yayo - Tailored Access Operations โ boka. TAO ine menyu yezvibodzwa yainokwanisa kurwisa komputa yako - ingave uchimhanyisa Windows, Mac OS, Linux, iOS, kana chimwewo chinhu - uye akasiyana matipi ekuti aenderere mberi pakombuta yako. Anti-virusi software yako haivaone, uye unenge uchinetseka kuvawana kunyangwe iwe uchiziva kwekutarisa. Aya maturusi ehacker akagadzirwa nevanokuvadza vane bhajeti risingaperi. Chandakabvisa pakuverenga magwaro eSnowden ndechekuti kana NSA ichida kupinda pakombuta yako, yapinda.
Iyo NSA inobata nechero data yakavharidzirwa yainosangana nayo zvakanyanya nekupidigura iyo yepasi cryptography pane kushandisa yakavanzika masvomhu. Kutanga, kune yakawanda yakaipa cryptography kunze uko. Kana ikawana chinongedzo cheinternet chakachengetedzwa neMS-CHAP, semuenzaniso, zviri nyore kupaza nekudzoreredza kiyi. Inoshandisa zvisina kusarudzwa mapassword evashandisi, ichishandisa zvakafanana kurwiswa kweduramazwi hackers vanoshandisa munyika isina kunyorwa.
Sezvazvaive zvazarurwa nhasi, NSA inoshandawo nevatengesi vezvigadzirwa zvekuchengetedza kuti ive nechokwadi chekuti zvigadzirwa zvekunyorera zvekutengesa zvakaputswa nenzira dzakavandika iyo inongoziva nezvayo. Tinoziva kuti izvi zvakaitika kare: CryptoAG uye Lotus Notes ndiyo mienzaniso yeruzhinji, uye kune humbowo hwemusuwo wekuseri mukati Windows. Vanhu vashomanana vakandiudza dzimwe nyaya dzichangobva kuitika pamusoro pezvakaitika kwavari, uye ndinoronga kunyora pamusoro pazvo munguva pfupi. Chaizvoizvo, NSA inokumbira makambani kuti achinje zvigadzirwa zvawo nenzira dzisingaonekwe: kuita kuti jenareta yenhamba isina kujairika isaite zvisina tsarukano, ichidonhedza kiyi neimwe nzira, ichiwedzera chiratidziro kuruzhinji-kiyi yekutsinhana protocol, zvichingodaro. Kana musuwo wekuseri ukaonekwa, unotsanangurwa kure sechikanganiso. Uye sezvatinoziva ikozvino, NSA yakanakidzwa nekubudirira kukuru kubva kuchirongwa ichi.
TAO zvakare hacks mumakomputa kuti idzore makiyi enguva refu. Saka kana iwe uchimhanyisa VPN inoshandisa chakavanzika chakagovaniswa kuchengetedza data rako uye NSA inofunga kuti ine hanya, inogona kuedza kuba icho chakavanzika. Rudzi urwu rwechinhu chinongoitwa zvichipesana nepamusoro-kukosha zvinangwa.
Iwe unotaurirana sei zvakachengeteka kune mhandu yakadai? Snowden akadaro mune Q & A yepamhepo nguva pfupi mushure mekunge aita gwaro rake rekutanga pachena: "Kunyora kunoshanda. Kunyatsoshandiswa kwakasimba crypto masisitimu ndechimwe chezvinhu zvishoma zvaunogona kuvimba nazvo."
I tenda kuti ichi ichokwadi, pasinei nezvakazarurwa zvanhasi uye mazano anofadza e "groundbreaking cryptanalytic kugona" yakagadzirwa naJames Clapper, mutungamiriri wenyika intelligence mune imwe gwaro repamusoro-rakavanzika. Izvo zvinokwanisa zvinosanganisira kuderedza nemaune cryptography.
Mutsara wekutevera waSnowden wakakosha zvakaenzana: "Nehurombo, kuchengetedzeka kwemagumo hakuna kusimba zvakanyanya zvekuti NSA inogona kuwana nzira dzekuitenderedza."
Endpoint zvinoreva software yauri kushandisa, komputa yauri kuishandisa, uye network yemuno yauri kuishandisa. Kana NSA ichikwanisa kugadzirisa encryption algorithm kana kudonhedza Trojan pakombuta yako, cryptography yese nyika haina basa zvachose. Kana iwe uchida kuramba wakachengeteka uchipikisana neNSA, unofanirwa kuita zvaunogona kuti uone kuti encryption inogona kushanda isina kukanganiswa.
Nezvose izvi mupfungwa, ndine zvidimbu zvishanu zvezano:
1) Viga mune network. Ita masevhisi akavanzika. Shandisa Tor kuti usazivikanwe. Ehe, iyo NSA yakanangana nevashandisi veTor, asi ibasa kwavari. Izvo zvishoma zviri pachena iwe, iwe wakachengeteka iwe.
2) Encrypt your communications. Shandisa TLS. Shandisa IPsec. Zvakare, nepo chiri chokwadi kuti NSA zvinonangwa encrypted zvinongedzo - uye inogona kunge iine maitiro akajeka achipokana nemaprotocol - iwe wakachengetedzwa zvirinani pane kana iwe uchitaurirana zvakajeka.
3) Fungidzira kuti nepo komputa yako ichigona kukanganisika, zvinotora basa uye njodzi kune chikamu cheNSA - saka pamwe hazvisizvo.. Kana iwe uine chimwe chinhu chakakosha, shandisa gap remhepo. Kubva pandakatanga kushanda nemagwaro eSnowden, ndakatenga komputa itsva ine haana yakabatana neinternet. Kana ini ndichida kuendesa faira, ndinonyora faira pakombuta yakachengeteka uye ndofamba nayo kuenda kune yangu internet komputa, ndichishandisa USB tsvimbo. Kuti decrypt chimwe chinhu, ndinodzosera maitiro. Izvi zvinogona kunge zvisiri bulletproof, asi zvakanaka.
4) Iva nekunyumwira kwekutengesa encryption software, kunyanya kubva kune makuru vatengesi. Kufungidzira kwangu ndekwekuti zvigadzirwa zvakawanda zvekuvharidzira kubva kumakambani makuru eUS ane NSA-inoshamwaridzika magonhi ekumashure, uye mazhinji ekunze angangoitawo. Izvo zvine hungwaru kufunga kuti zvigadzirwa zvekunze zvakare zvine kunze-yakaiswa backdoors. Yakavharwa-sosi software iri nyore kuti NSA idzokere kumashure pane yakavhurika-sosi software. Masisitimu anovimba nezvakavanzika zve master ari panjodzi kuNSA, kuburikidza chero zviri pamutemo kana kuti zvimwe zvakavanzika zvinoreva.
5) Edza kushandisa public-domain encryption iyo inofanirwa kuenderana nemamwe mashandisirwo. Semuyenzaniso, zvakaomera NSA kubackdoor TLS pane BitLocker, nekuti chero mutengesi TLS inofanirwa kuenderana nechero mumwe mutengesi weTLS, nepo BitLocker ichingofanira kuenderana pachayo, ichipa NSA rusununguko rwakawanda rwekuita shanduko. Uye nekuti BitLocker ndeyemuridzi, kashoma kuti shanduko idzi dziwanikwe. Sarudze symmetric cryptography pane yeruzhinji-kiyi cryptography. Sarudzo dzakajairwa discrete-log-based masisitimu pane elliptic-curve masisitimu; vekupedzisira vane zvisingaperi zvinofurirwa neNSA pavanokwanisa.
Kubva pandakatanga kushanda nemagwaro aSnowden, ndanga ndichishandisa GPG, Silent denderedzwa, Miswe, OTH, TrueCrypt, BleachBit, uye zvimwe zvinhu zvishoma zvandisiri kuzonyora nezvazvo. Pane isina kunyorwa encryption chimiro mune yangu Password Wakachengeteka purogiramu kubva pamutsetse wemirairo); Ndanga ndichishandisa izvozvo zvakare.
Ini ndinonzwisisa kuti zvizhinji zveizvi hazvigoneke kune akajairwa internet mushandisi. Kunyangwe ini handishandise ese maturusi aya pane zvese zvandiri kushanda pazviri. Uye ini ndichiri kunyanya paWindows, zvinosiririsa. Linux yaizova yakachengeteka.
Iyo NSA yakashandura machira einternet kuita chikuva chakakura chekutarisa, asi hazvisi zvemashiripiti. Vanoganhurirwa nemamiriro ezvehupfumi akafanana nesu tose, uye dziviriro yedu yakanakisa ndeyekuita kuti kuongorora kudhure sezvinobvira.
Vimba nesvomhu. Encryption ishamwari yako. Ishandise nemazvo, uye ita nepaunogona napo kuve nechokwadi kuti hapana chinogona kuikanganisa. Ndozvaunokwanisa kuramba wakachengeteka kunyangwe wakatarisana neNSA.
ZNetwork inopihwa mari chete kuburikidza nerupo rwevaverengi vayo.
dhoneta