Re: [perpass] GHCQ Webcam Video Surveillance

Mark Atwood <me@mark.atwood.name> Fri, 28 February 2014 22:59 UTC

Return-Path: <fallenpegasus@gmail.com>
X-Original-To: perpass@ietfa.amsl.com
Delivered-To: perpass@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7BB4B1A01C9 for <perpass@ietfa.amsl.com>; Fri, 28 Feb 2014 14:59:24 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.278
X-Spam-Level:
X-Spam-Status: No, score=-1.278 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FM_FORGED_GMAIL=0.622, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TvMF6vW2inE8 for <perpass@ietfa.amsl.com>; Fri, 28 Feb 2014 14:59:22 -0800 (PST)
Received: from mail-vc0-x229.google.com (mail-vc0-x229.google.com [IPv6:2607:f8b0:400c:c03::229]) by ietfa.amsl.com (Postfix) with ESMTP id A70921A0156 for <perpass@ietf.org>; Fri, 28 Feb 2014 14:59:22 -0800 (PST)
Received: by mail-vc0-f169.google.com with SMTP id hq11so1448286vcb.28 for <perpass@ietf.org>; Fri, 28 Feb 2014 14:59:20 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:sender:in-reply-to:references:from:date:message-id :subject:to:cc:content-type; bh=ziGkfy3s0UYctXPHGvf/R4iRxjtLuK+lac50BD4XRN0=; b=0bEfA82Ni0bDKnmU/9ilbZiwwWLoy9eiApsw/JtJxxa5VZrgjhGvq2Iq70X3CD/5Ao Mng+8INWBDq57IA7dygw+/8Lkr+Ca2q1j/Pox4RW38rmwGfRBKJstVbEgpAGNXZ5tAH7 igochxChUxVFFeEPdxUWtpC0po7O5Fy6bLQKJKYDvoCDiFh+N0jySEXGMvBPSKJpkBKO OxUJf7QeM2zR3virUv3TQRQvhIbDE7ITB+f3zNFpCMSHjlN0RxOQCXPf1biSAV0F8AUC jeGFYZ3ju9a4FFxfeEKzxdUyLB6EPuAlE5Qy9foil3+esZG0VauuPSEESFixz8dzXYCW /qiw==
X-Received: by 10.220.147.16 with SMTP id j16mr4817702vcv.28.1393628360330; Fri, 28 Feb 2014 14:59:20 -0800 (PST)
MIME-Version: 1.0
Sender: fallenpegasus@gmail.com
Received: by 10.52.100.42 with HTTP; Fri, 28 Feb 2014 14:59:00 -0800 (PST)
In-Reply-To: <CAFggDF3-y7NwVYw4Kw_FK+zOQz6jHvgPx4LDu0wCuPr-Vv69Jg@mail.gmail.com>
References: <CAMRcRGQapsgWfgjXLYWDjZg4h6p6fOh7F8JSUHBoForVLqQwwA@mail.gmail.com> <CF5FE91B-6A91-4072-BBE6-62C268F33E19@isoc.org> <CAFggDF3O0vhFbPu=s2QV-8OSA5mgda-=9j9VVK67SdThn0fmqQ@mail.gmail.com> <5310AB78.1000601@inria.fr> <CAFggDF3-y7NwVYw4Kw_FK+zOQz6jHvgPx4LDu0wCuPr-Vv69Jg@mail.gmail.com>
From: Mark Atwood <me@mark.atwood.name>
Date: Fri, 28 Feb 2014 14:59:00 -0800
X-Google-Sender-Auth: Msp_pXKjG5DkMLXh7VWJb_C78Lg
Message-ID: <CANW5CYWTp6mXeD3hpMFWqcZK2JA3sEVVdGz683mVtb4KwH06ZQ@mail.gmail.com>
To: Jacob Appelbaum <jacob@appelbaum.net>
Content-Type: text/plain; charset="UTF-8"
Archived-At: http://mailarchive.ietf.org/arch/msg/perpass/HAtYep-UX5CPIZLEVWntY5v_bYI
Cc: perpass <perpass@ietf.org>, Mathieu Cunche <mathieu.cunche@inria.fr>
Subject: Re: [perpass] GHCQ Webcam Video Surveillance
X-BeenThere: perpass@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "The perpass list is for IETF discussion of pervasive monitoring. " <perpass.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/perpass>, <mailto:perpass-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/perpass/>
List-Post: <mailto:perpass@ietf.org>
List-Help: <mailto:perpass-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/perpass>, <mailto:perpass-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 28 Feb 2014 22:59:24 -0000

The N-way video chat system running at meet.jit.si uses DTLS and SRTP.
 And it's all open source using open standards, so you can run your
own bridge as well, if you don't want to use theirs.

For keeping the peeping tom spooks out, I don't trust Skype or Google
Hangouts or Apple Facetime at all now, and on the corporate VTC case,
I am deeply suspicious of Microsoft Lync and all the hardware VTC
(Cisco, Polycom, etc).


On Fri, Feb 28, 2014 at 7:34 AM, Jacob Appelbaum <jacob@appelbaum.net> wrote:
> On 2/28/14, Mathieu Cunche <mathieu.cunche@inria.fr> wrote:
>> Does anyone have an idea why Yahoo video chat and not another ?
>>
>
> I don't believe it is reasonable to conclude that they're (read:
> GCHQ/NSA) not doing other kinds of video chat. If I was a betting man,
> I'd bet there are other stories in the works for other blatantly
> insecure protocols (read: nearly all of them).
>
> All the best,
> Jacob
>
> _______________________________________________
> perpass mailing list
> perpass@ietf.org
> https://www.ietf.org/mailman/listinfo/perpass