<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Technobabble &#8211; Caveat Lector</title>
	<atom:link href="https://dhyoung.net/category/technobabble/feed/" rel="self" type="application/rss+xml" />
	<link>https://dhyoung.net</link>
	<description>Scribo, ergo sum. Words and works of DH Young, scribbler at large.</description>
	<lastBuildDate>Mon, 05 Sep 2016 15:21:07 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.4.2</generator>
	<item>
		<title>Internet down</title>
		<link>https://dhyoung.net/2016/09/05/internet-down/</link>
					<comments>https://dhyoung.net/2016/09/05/internet-down/#comments</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Mon, 05 Sep 2016 13:10:52 +0000</pubDate>
				<category><![CDATA[Jerks]]></category>
		<category><![CDATA[Technobabble]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=3763</guid>

					<description><![CDATA[AT&#38;T may be the most irritating company ever. They think our account is past due because we&#8217;re not paying the setup fee we were told&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2016/09/05/internet-down/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Internet%20down&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Internet%20down').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Internet%20down', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><p>AT&amp;T may be the most irritating company ever. They think our account is past due because we&#8217;re not paying the setup fee we were told didn&#8217;t exist&#8230;and guys kept showing up at the door even though we had said we would self-install &amp; they wouldn&#8217;t be allowed to touch our devices/network anyway&#8230;they&#8217;ve apologized &amp; said they&#8217;d fix it three times so far. And now they&#8217;ve cut off service.</p>
<p>This happened once before, in New Orleans. I&#8217;d tell you the story, but I think I&#8217;ll work it into fiction&#8230;we&#8217;ll see how it goes this time. Meanwhile, their office appears to be closed.</p>
<p>Can&#8217;t transcribe this morning&#8217;s fiction unless I carry my laptop elsewhere (my app lets me use WiFi but depends on JavaScript files that reside in the intertoobz).</p>
<p>So, not much done yet. Will keep working over here, and will hope to have better news tomorrow.</p>
<p><strong>ADDENDUM</strong></p>
<p>(The above was posted from my phone. This part wasn&#8217;t.)</p>
<p>See, here&#8217;s the thing. It was annoying that I couldn&#8217;t access the internet via my laptop&#8211;and, due to a recent &#8220;update&#8221; to iOS, I couldn&#8217;t tether the laptop to my phone either. Unless I jailbroke the phone, in which case the Uber app would complain&#8230;</p>
<p>I poked around. I noticed that DNS, the system that resolves hostnames like &#8220;cnn.com&#8221; to IP addresses like 157.166.226.25, was still working just fine via my &#8220;suspended&#8221; DSL line&#8211;it was part of the way AT&amp;T chose to forward all web traffic to their page that tells me I need to call a number they don&#8217;t answer on holidays. Most traffic was blocked, but DNS worked fine. Hmm.</p>
<p>Well, okay. DNS traffic uses port 53. What does that mean? Not a lot, really. It&#8217;s just a convention. Like, a web server listens on ports 80 (normal http) and 443 (https). If you connect to a web server from your computer, your computer generates a random-looking port number for each request, so it can tell (when the server answers) which data is part of which image or bit of text or whatever. Sound arbitrary and easily messed with? Yep. You&#8217;re right.</p>
<p>So I keep a couple of servers out there in cloudland. I told one of them (via my phone) to listen on port 53, just as if it were a DNS server, which it ain&#8217;t. Then I told my laptop to listen on a custom port (I chose 9080 for no particular reason) and forward all traffic from there to port 53 on my server out on the internet. Then I told my web browser to use localhost:9080 as what&#8217;s called a socks proxy.</p>
<p>Voilà. I&#8217;m online! From my laptop. Though I appear, to websites I visit, to be browsing from within someone else&#8217;s data center. No skin off my nose, except that it can be tracked back to me. (So I also use Tor, but that&#8217;s a separate post&#8230;except that it&#8217;s actually in <a href="https://dhyoung.net/books-by-david-haywood-young/take-back-your-privacy/"><strong>a book I wrote</strong></a>.)</p>
<p>Yes, I can do more with this&#8230;but I don&#8217;t necessarily want all my household&#8217;s video streaming to go out via this tunnel&#8211;I actually pay for traffic to and from the server I&#8217;m using. Upshot: AT&amp;T is annoying, but handled for now. I told them I&#8217;d bill by the hour to deal with &#8217;em, too, just for fun. We&#8217;ll see how it goes.</p>
<p>Back on track, sort of. Down most of a writing day, though.</p>
<p>Have fun out there!</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2016/09/05/internet-down/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Internet%20down&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Internet%20down').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Internet%20down', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2016/09/05/internet-down/feed/</wfw:commentRss>
			<slash:comments>4</slash:comments>
		
		
			</item>
		<item>
		<title>Death to Twitter!</title>
		<link>https://dhyoung.net/2016/02/08/death-to-twitter/</link>
					<comments>https://dhyoung.net/2016/02/08/death-to-twitter/#respond</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Mon, 08 Feb 2016 16:59:55 +0000</pubDate>
				<category><![CDATA[Humor]]></category>
		<category><![CDATA[Jerks]]></category>
		<category><![CDATA[Personal]]></category>
		<category><![CDATA[Random Rants]]></category>
		<category><![CDATA[Technobabble]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=3457</guid>

					<description><![CDATA[Well, maybe. Thing is, I like fooling around with Twitter. Once upon a time I had about 47K &#8220;followers&#8221; (mostly other writers), and it was&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2016/02/08/death-to-twitter/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Death%20to%20Twitter%21&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Death%20to%20Twitter%21').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Death%20to%20Twitter%21', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><p>Well, maybe.</p>
<p>Thing is, I like fooling around with Twitter. Once upon a time I had about 47K &#8220;followers&#8221; (mostly other writers), and it was fun to play with them online. But I eventually decided I was spending far too much time on that game. I tried to justify it as a business-related thing (you know, &#8220;building an audience&#8221;?) but that was just BS. I had lots of fun conversations, and I did that instead of working. Something had to give. So I canceled my account.</p>
<p>Then I created a new account, much later. It looks just like the old account, since nobody grabbed my username in the interim. Only it has &lt;100 &#8220;followers&#8221; and I haven&#8217;t tried to increase that number. I&#8217;ve been using Twitter mostly for joking around with people, and getting news, and so forth.</p>
<p>The problem? Well, it&#8217;s not just Twitter, actually. Lots of sites are claiming recently that they <em>need</em> to harass me because of &#8220;suspicious activity&#8221;&#8211;they&#8217;ll go on and say it might be a virus problem or whatever, but in reality it&#8217;s a semi-blacklist of Tor exit relays and VPN endpoints. How do I know? Well, because I use both of those, a lot. The number of them that I can use without issues seems to be decreasing.</p>
<p>See, users of Tor and VPNs seem to share IP addresses (stuff that looks like &#8220;192.168.1.10&#8221;). So in principle it could be that various malicious actors are using these tools to hide their identities&#8211;though there are weaknesses to this approach, and if you care? I <a href="http://getbook.at/tbyp" target="_blank"><strong>wrote a book</strong></a> about it&#8211;and, since I&#8217;m using the same apparent IP addresses, it therefore makes my activity seem &#8220;suspicious.&#8221; So it&#8217;s all sweetness and light, and I should be grateful for this added protection.</p>
<p>But I don&#8217;t think that&#8217;s what&#8217;s going on at all, because these &#8220;suspicious activity detected&#8221; so-called warnings have become much, much more common of late. And if I get hassled because of a particular VPN&#8217;s IP address, and I jump through whatever hoops are required to either view content or log in to a site? And I then use the <em>same</em> IP address for, say, my next login attempt? An hour later? I get hassled again. I see only two plausible reasons for this: 1) Whoever&#8217;s developing this technology doesn&#8217;t understand that, if I &#8220;verified&#8221; my login via some other method, it stands to reason that I might not need to be hassled for using that same IP address in the future, or 2) it&#8217;s a deliberate attempt to make using IP-cloaking tools more burdensome.</p>
<p>Somebody or other could do a bit of research and try to quantify this stuff. In fact, I could do it&#8230;or put some effort into it. But the thing is, I don&#8217;t want to. I just did all sorts of research for that book. I don&#8217;t want to do any more right now. Other projects, you know?</p>
<p>Instead, I&#8217;ll just refrain from speculating as to why this is going on&#8230;barely mentioning that advertisers and governments both have a horrible tendency to gather potentially useful data on individuals (and it gets put to <em>surprising</em> uses), and tools like Tor or a VPN may impede that sort of thing under some circumstances&#8230;and probably just kill off my Twitter account. Again. I sent &#8217;em an email, and it&#8217;s possible they&#8217;ll quit hassling me. But I doubt it.</p>
<p>Was this worth a blog post? I don&#8217;t know. Maybe. Readers of that book might find it interesting. It&#8217;s the sort of thing that can seem paranoid to those who&#8230;heh&#8230;haven&#8217;t read my book, which not only explains what&#8217;s going on in situations like this but has hundreds of links to back up my (otherwise?) ridiculous claims. Though you could get much the same information elsewhere. After all, that&#8217;s what I did.</p>
<p>Am I telling you to go read my book? Sort of, I guess. Mostly I&#8217;m posting this because my private list of sites I won&#8217;t go to anymore without taking <a href="https://ixquick.com/proxy/eng/help.html" target="_blank"><strong>additional measures</strong></a>&#8211;such as viewing those sites&#8217; content via a search engine&#8217;s IP address, after I access that search engine via a VPN or Tor or both&#8211;keeps growing. I wish people would stop buying the &#8220;this is to protect your website from spammers and evildoers&#8221; sales pitch. Maybe this post will reach at least <em>one</em> person, and change <em>one</em> site&#8217;s policy, and help keep at least <em>one</em> little corner of the internet a bit more free?</p>
<p>Just hoping, is all. It&#8217;s what I do.</p>
<p>Have fun out there!</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2016/02/08/death-to-twitter/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Death%20to%20Twitter%21&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Death%20to%20Twitter%21').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Death%20to%20Twitter%21', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2016/02/08/death-to-twitter/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>What if science is a scam?</title>
		<link>https://dhyoung.net/2014/03/21/what-if-science-is-a-scam/</link>
					<comments>https://dhyoung.net/2014/03/21/what-if-science-is-a-scam/#respond</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Fri, 21 Mar 2014 19:53:35 +0000</pubDate>
				<category><![CDATA[Random Rants]]></category>
		<category><![CDATA[Technobabble]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=2738</guid>

					<description><![CDATA[Well, okay, also what if it&#8217;s not? But also, what if it&#8217;s more complicated than that, and we end up with a continuum between scam&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2014/03/21/what-if-science-is-a-scam/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=What%20if%20science%20is%20a%20scam%3F&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('What%20if%20science%20is%20a%20scam%3F').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'What%20if%20science%20is%20a%20scam%3F', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><p>Well, okay, <em>also</em> what if it&#8217;s not? But <em>also</em>, what if it&#8217;s more complicated than that, and we end up with a continuum between scam and non-scam? What if, because of the way humans work, it&#8217;s nearly impossible to tell? What do we do about that? Do we even have a meaningful choice here? Maybe. Maybe not.</p>
<h2>I grew up wanting to be a physicist.</h2>
<p>I&#8217;d read a lot of science fiction, see, and I figured it&#8217;d be cool to learn a ton of brain-busting math and figure out a loophole in natural laws that enabled faster-than-light travel. Because why wouldn&#8217;t I want to do that?</p>
<p>Then I went to college and met scientists. It turned out a lot of their day was spent in political maneuvering&#8211;popularity contests, in other words. I wasn&#8217;t too discouraged. After all, I was young and smart and strong (wasn&#8217;t I? or if not, why not? could I fix that?), so I could get past that somehow.</p>
<p>It got a little bit worse when I read a book by <a href="https://en.wikipedia.org/wiki/Thomas_Kuhn" target="_blank"><strong>Thomas Kuhn</strong></a>, who popularized the term &#8220;paradigm shift,&#8221; which in that book referred to how scientific knowledge tends to progress here in the real world. Unfortunately, it amounted to a couple of things that I found discouraging: (1) With competing paradigms, neither can be understood in the context of the other. Which is likely part of the reason people seem so often to talk past each other rather than communicate. Unfortunately this means that, given two competing paradigms, assuming sincerely-held beliefs&#8230;few people will convert from one to the other based on logical arguments alone <em>even though all participants may be being entirely reasonable</em>. Therefore, (2) sadly, scientific advances have generally become accepted through attrition: the old guard dies off and the new kids grow up. Were the new kids even right? Maybe! Maybe not! Nothing about the process is inherently more meaningful than any other popularity contest. Oh, and I guess there&#8217;s (3): People who disagree with us are not necessarily as stupid as they might appear. Hmm.</p>
<p>What about the real world, though? Don&#8217;t better theories produce better predictions, and doesn&#8217;t technology keep getting better as a result? Well, yeah. Mostly, with caveats. But when we look at competing theories and try to design something that actually works, we&#8217;re not really <em>doing</em> traditional science. <strong>We&#8217;re doing engineering.</strong> I could expand on that, &#8217;cause I think most of the advances people credit to advances in science are actually advances in engineering. I might even claim that engineers typically lead the way, with scientists most usefully employed in trying to figure out why the engineers&#8217; discoveries actually work. But that&#8217;s another post entirely.</p>
<p>Anyway. My ambition withstood all that. I could do it! I could become a scientist and change the world! I just needed better math-fu!</p>
<h2>But math has no content</h2>
<p>Then I started thinking about implications of something I&#8217;d originally read in a book by Heinlein. This was the notion that <a href="http://en.wikipedia.org/wiki/Philosophy_of_mathematics#Formalism" target="_blank"><strong>math has no content</strong></a>. In other words (in case you don&#8217;t want to read that Wikipedia article), it&#8217;s just something we made up. Which is clearly true&#8230;the painful implication, though, is that math exists in a sort of logical universe of its own. We set up the rules of this universe however we wish, and then we (well, a few of us) try to figure out clever but non-obvious &#8220;truths&#8221; <em>about that universe</em>.</p>
<p>Why is this &#8220;painful&#8221;? Because we always have to fudge things when we apply these logical mathematical rules to the real universe. Generally this process&#8230;has strictly limited utility. We can model some very simple systems, and predict how they&#8217;ll behave. But if we want these systems to work in the real world, or IOW to behave as our theories say they should, we tend to have to find or build special shelters that minimize &#8220;outside&#8221; influences. Or start talking about &#8220;entropy&#8221; as a stand-in for &#8220;all that other stuff that&#8217;s going on.&#8221;</p>
<p>Let&#8217;s start with an obnoxiously simple scenario. Take two numbers. Heck, call &#8217;em &#8220;1&#8221; and &#8220;2&#8221; and let&#8217;s assume they work exactly the way we all expect them to. So, two is greater than one, right? Er&#8230;what if I want to sit down in a chair, though? And I have two chairs available? Two might be greater than one, if they&#8217;re perhaps in different places and I might want to sit in either. Or two might be less than one, if they&#8217;re crowded too closely. And one of the chairs might be greater than the other, because it&#8217;s lighter or more comfortable or greener or&#8230;</p>
<p>Ridiculous, I know. I just took &#8220;greater than&#8221; and pretended it meant &#8220;better than&#8221; and then made it dependent on context. And pretended &#8220;one&#8221; also meant &#8220;one chair.&#8221; But this is exactly what happens all over the place when you think numbers are somehow objectively real and try to apply them to things that (probably) <em>are</em> real. You end up having to make excuses for them. Ick.</p>
<p>So I grudgingly decided <strong>it was probably impossible to <em>prove</em> anything at all about the real world using math</strong>. All I could do was model it, and see to what extent reality matched my expectations. I was wavering in my convictions, but decided to press on. <em>Somebody</em> would figure out cool stuff. Probably <em>lots</em> of people would! <em>Why not me?</em></p>
<p>The hits kept coming, though.</p>
<h2>Math isn&#8217;t as cool as we think it is</h2>
<p>I&#8217;ll get to more extreme examples, but&#8230;let&#8217;s look at something apparently very simple. Consider the Moon, the Earth, and the Sun. Given their initial mass, known initial positions, and known initial velocities&#8211;and assuming there is <em>nothing else</em> but gravitation affecting any of the three&#8211;where will they all be in the future? Guess what? <strong>There&#8217;s no general mathematical solution to this problem</strong>. Sound far-fetched? It&#8217;s known as the <a href="https://en.wikipedia.org/wiki/Three-body_problem" target="_blank"><strong>three-body problem</strong></a>, though, and it&#8217;s a real limitation. Gets worse when there are more factors involved, too. Yes, I know you can go look up stuff about planetary orbits. Guess what? The predictions you find are based on approximations, not derived from first principles. Which means that, even with a very simple situation like this, theory can only take you so far. Then you have to start fudging.</p>
<p>Hmm.</p>
<p>Then there&#8217;s <a href="https://en.wikipedia.org/wiki/Chaos_theory" target="_blank"><strong>chaos theory</strong></a>&#8230;which is essentially the notion that you can take a very simple system, composed entirely of completely understood bits &amp; pieces, and&#8230;fail to make useful predictions. Even though they&#8217;re in principle &#8220;deterministic&#8221; (thus predictable) it turns out that at some point the systems begin behaving in a way that is simply not predictable&#8211;even in theory. It&#8217;s too dependent on initial conditions, meaning&#8230;pretty much anything at all can turn out to make a difference. <strong>This is also known popularly as &#8220;the butterfly effect,&#8221;</strong> and it&#8217;s kind of a big deal when you want to make predictions, based on math, about the real world.</p>
<h2>Then there&#8217;s the scientific method</h2>
<p>Okay, <a href="https://en.wikipedia.org/wiki/Scientific_method" target="_blank"><strong>this one</strong></a> seems pretty straightforward. No brain-stretching involved. In a nutshell, science is about making predictions and testing them against the real world.</p>
<p>Which means, of course, that if you&#8217;re either (a) not making predictions, or (b) not validating those predictions vs. real-world events, you&#8217;re&#8230;<em>not doing science</em>. At all. Which doesn&#8217;t mean you&#8217;re a bad person. But it does mean that &#8220;scientist&#8221; is a strange label for people to use when talking about you.</p>
<h2>Oh, and about modeling</h2>
<p>Another <a href="http://en.wikipedia.org/wiki/Model_(profession)" target="_blank"><strong>career choice</strong></a>? For some, perhaps. Probably not for me, though. Curse my luck!</p>
<p>Moving on. At first I&#8217;d figured &#8220;natural laws&#8221; were what science was about, and we knew some of &#8217;em, and we just needed to find more. Then I realized that what we generally thought of as &#8220;laws&#8221; were in fact approximations. Always and forever, amen.</p>
<p>So, okay. I could deal with that. Science is about building models and testing them. Building the model has to do with coming up with a notion that is, or may be, compatible with known past events&#8211;and testing it against unknown future events.</p>
<p>The process of building a model compatible with past events is sometimes known as <a href="https://en.wikipedia.org/wiki/Curve_fitting" target="_blank"><strong>curve-fitting</strong></a> (and in some contexts this term is pejorative). Unfortunately, even <em>perfect</em> curve-fitting offers no guarantee whatsoever that the model has predictive value. That&#8217;s what testing, aka &#8220;experimentation,&#8221; is all about.</p>
<h2>Science is what? Testing.</h2>
<p>Wow. To do what I wanted to do as a theoretical physicist, I&#8217;d have to learn all sorts of crazy math skillz, come up with a notion that might or might not be valuable if tested, get people to listen to me, divert other people&#8217;s resources to testing my notion(s)&#8230;and then, even if I were ultimately successful? And I actually convinced people of that too? Then I wouldn&#8217;t have discovered a law of nature, or proven anything. I would simply have come up with a way to make predictions in some area where previous predictions either hadn&#8217;t been attempted or had been unsuccessful. Or perhaps they&#8217;d been a shade <em>less</em> successful.</p>
<p>I&#8217;m not saying that isn&#8217;t noble work. But I am saying it had less appeal for me in my late teens than the idealized (somewhat obscure pun fully intended) notions of science I had had when I was younger.</p>
<h2>But&#8230;what&#8217;s science <em>not?</em></h2>
<p>Lots of things!</p>
<p>Astronomy, for instance, isn&#8217;t a science at all by any definition<em> I&#8217;d</em> consider reasonable. It&#8217;s a field of study, sure. Interesting stuff! But where are the experiments? How do competing explanations, both compatible with observed data, get tested? Answer: they don&#8217;t, really. Except by luck, if we get to see some new phenomenon that helps to resolve the question. So why is one notion more popular than another? I dunno. It&#8217;s kind of like wondering why one person won an election and another one didn&#8217;t. There are lots of competing theories out there, but guess how many tend to be taught in schools? Hmm.</p>
<p>Speaking of that stuff, what about psychology/psychiatry? To the extent it&#8217;s about making predictions, it&#8217;s a science. When it&#8217;s about curve-fitting, though, it&#8217;s just not. When it&#8217;s about untestable theories, it&#8217;s <em>really</em> not. When applied to individuals, as it so frequently is, it tends to be essentially noise. Another book got me all mad about this one&#8230;<a href="http://en.wikipedia.org/wiki/Thomas_Szasz" target="_blank"><strong>Thomas Szasz</strong></a> was a smart feller.</p>
<h2>Where&#8217;s the scam, though? You promised a scam!</h2>
<p>Also, lots of things.</p>
<p>Let&#8217;s look at weather forecasts. There&#8217;s clearly stuff to study there! And wouldn&#8217;t it be neat to <a href="http://discovermagazine.com/2013/september/08-tornado-tech" target="_blank"><strong>create a tornado</strong></a> on demand? Okay, that link is slightly lame and ends with a silly quote, but still! Cool!</p>
<p>Thing is? Weather&#8217;s complicated. Very. It&#8217;s one of the classical examples people point to when they start talking about chaos theory and complexity. So&#8230;what does that mean? It means that <em>accurate predictions are probably impossible in principle</em> (if we eliminate luck as a factor, anyway).</p>
<p>This is very far from saying there&#8217;s nothing to study, or nothing to learn. But it does mean we should be very, very careful about believing anyone who claims to know what will happen next week. Or tomorrow, even.</p>
<p>Generally weather models are engineered to fit past data&#8230;at least an attempt is (often, and I&#8217;d like to think always) made to do so. This process necessarily involves simplifying both the data input and output. Given the chaotic/unpredictable nature of the underlying system, how useful is the output likely to be? What sort of predictive value will it have? In, you know, theory?</p>
<p>So &#8220;climate scientists&#8221; take this a step further and talk not only about accurate forecasts they can&#8217;t produce, but about how those forecasts change in relation to some specific change in the input. To which I have to say: wow. <strong>That&#8217;s really nifty. You can predict an average temperature 100 years out even when you&#8217;re clueless about next month.</strong></p>
<p>It gets worse when testable stuff like &#8220;global warming&#8221; goes away in favor of undefined &#8220;climate change,&#8221; &#8217;cause another thing about useful science is that a hypothesis is defective unless it&#8217;s <a href="https://en.wikipedia.org/wiki/Falsifiability" target="_blank"><strong>falsifiable</strong></a>. Meaning: if it can&#8217;t be disproven, it&#8217;s not about science. Because&#8230;how can it be tested? So &#8220;climate change&#8221; needs specific numbers, or it&#8217;s just noise.</p>
<p>I have a theory. It&#8217;s this: <strong>anybody who actually understands what a complex system is, and who is involved in publicly predicting climate changes today, is in it for some reason unrelated to scientific discovery</strong>. Because honest people who &#8220;get it&#8221; will choose some other line of work. Which, if I am correct, means that the entire field is very likely chock-full of people who either (1) don&#8217;t understand the basic problems they&#8217;re dealing with, or (2) are willing to lie about them.</p>
<p>Unfortunately, <strong>my theory isn&#8217;t easily testable</strong>. Damn. So in all honesty I have to content myself with saying that it seems plausible but I can&#8217;t prove it. Therefore you should feel entirely free to discount it. Oh well.</p>
<p>Weirdly, this will be seen by some as a political position on my part. Here&#8217;s what I have to propose: <strong>can we quit thinking computer models have validity because of the <em>credentials</em> of their creators, and instead measure the accuracy of their <em>predictions?</em></strong> &#8216;Cause that&#8217;s actual science, there.</p>
<p>Meanwhile I have a friend who got his Ph.D. via a dissertation that, among other logical issues, used math that assumed the human body was a perfect sphere. This apparently was no problem for him at any point. So does he enjoy my company because my body has in the past closely matched his theory? Possibly. It&#8217;s an interesting notion&#8230;maybe I should follow him around and see who else he hangs out with. For science.</p>
<p>Meanwhile? Have fun out there!</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2014/03/21/what-if-science-is-a-scam/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=What%20if%20science%20is%20a%20scam%3F&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('What%20if%20science%20is%20a%20scam%3F').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'What%20if%20science%20is%20a%20scam%3F', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2014/03/21/what-if-science-is-a-scam/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>On VPN providers and &#8220;encryption&#8221;</title>
		<link>https://dhyoung.net/2014/02/20/on-vpn-providers-and-encryption/</link>
					<comments>https://dhyoung.net/2014/02/20/on-vpn-providers-and-encryption/#respond</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Thu, 20 Feb 2014 20:02:21 +0000</pubDate>
				<category><![CDATA[Jerks]]></category>
		<category><![CDATA[Random Rants]]></category>
		<category><![CDATA[Technobabble]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=2672</guid>

					<description><![CDATA[Wow. I didn&#8217;t really want to post anything else related to online security so soon after getting into it the other day, but&#8230;sheesh. I looked&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2014/02/20/on-vpn-providers-and-encryption/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=On%20VPN%20providers%20and%20%22encryption%22&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('On%20VPN%20providers%20and%20%22encryption%22').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'On%20VPN%20providers%20and%20%22encryption%22', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><p>Wow.</p>
<p>I didn&#8217;t really want to post anything else related to online security so soon after <a title="Online privacy rant number 328.473, or so" href="https://dhyoung.net/2014/02/13/online-privacy-rant-number-328-473-or-so/"><strong>getting into it</strong></a> the other day, but&#8230;sheesh. I looked into the services a couple of VPN providers actually&#8211;you know&#8211;provide.</p>
<p><strong>TLDR: Many VPN providers do not actually offer what I would call strong encryption. At all.</strong> Though this doesn&#8217;t mean they won&#8217;t throw buzzwords at you.</p>
<p>I checked out <a href="http://torguard.net" target="_blank"><strong>TorGuard.net</strong></a> to start with (turns out that &#8220;Tor&#8221; in the name is short for &#8220;torrent&#8221; btw). Turns out they offer a choice of protocols: OpenVPN, <a href="https://en.wikipedia.org/wiki/Point-to-Point_Tunneling_Protocol#Security" target="_blank"><strong>PPTP</strong></a>, and L2TP. The PPTP link goes to a Wikipedia article about its &#8220;security&#8221;&#8230;which is <a href="http://www.h-online.com/security/features/A-death-blow-for-PPTP-1716768.html" target="_blank"><strong>minimal</strong> </a>at best. Though&#8230;spoiler&#8230;as actually implemented by VPN providers, the PPTP option may be your best protection against casual traffic decryption. Weird but true. It would at least require some computing resources, whereas the others just don&#8217;t.</p>
<p>The L2TP method requires what&#8217;s called a pre-shared key, which can mean very strong encryption&#8211;unfortunately, the key used with TorGuard is &#8220;torguard&#8221; and is the same for all users. OpenVPN can use client certificates or a pre-shared key, or even both&#8230;but TorGuard&#8217;s implementation uses the same certificate for everybody, and it&#8217;s freely downloadable by anyone at all <a href="https://torguard.net/knowledgebase.php?action=displayarticle&amp;id=99" target="_blank"><strong>from their website</strong></a>. They&#8217;ll throw buzzwords about the encryption they do, but if the key is known, none of that necessarily matters.</p>
<p>What does this mean? It&#8217;s really just this simple: if anyone at all (ISP, wifi hotspot operator, NSA, MPAA, whoever) records your VPN session (from the beginning), you should assume they can decrypt the whole thing at their leisure. This <em>doesn&#8217;t</em> necessarily mean they can get everything. But how do you know?</p>
<p><strong>Note:</strong> if someone comes in late and records sometime after your session has started, they&#8217;re probably out of luck with decrypting your traffic&#8211;for the moment. <a href="http://www.forbes.com/sites/andygreenberg/2013/06/20/leaked-nsa-doc-says-it-can-collect-and-keep-your-encrypted-data-as-long-as-it-takes-to-crack-it/" target="_blank"><strong>Some people</strong></a> store this stuff forever, just in case a way to break a cipher comes along later on. Regardless&#8230;the next time you connect, if they&#8217;re still logging&#8230;well. A confession: <strong>OpenVPN, if properly configured, can (probably) defeat this</strong>. Is it properly configured? Not by default, and not without effort. Can PPTP sessions be secured, at all? No. How about anything relying on a pre-shared key? Not if the key is known. Oh well.</p>
<p>I took a quick look around. <a href="https://www.overplay.net/" target="_blank"><strong>Overplay.net</strong></a> seems to offer a cool service, but it has precisely the same limitations. In addition, if you want to configure a connection with a router using the freely available <a href="http://www.dd-wrt.com" target="_blank"><strong>dd-wrt</strong></a> firmware? They&#8217;ll give you an easy application you can download to set it up for you! The catch: each time your router reboots, it goes to overplay.net and downloads the code. Which means&#8230;well, in addition to the fact that your ISP (or other &#8220;attacker&#8221;) can possibly decrypt your VPN traffic if they want to? They can <em>also</em> run arbitrary code on your router. Or an attacker who pretends to be overplay.net can do so. Which means, in principle, that they can access your private (home?) network too.</p>
<p>Does this mean no VPN is worth the bother? Not quite, and for two reasons:</p>
<ol>
<li>They obscure your IP address from the websites and other internet resources to which you connect. This is still far from an anonymity guarantee (I recommend browsing to <a href="http://torproject.org" target="_blank"><strong>torproject.org</strong></a> and reading <em>their</em> recommendations), but it&#8217;s something.</li>
<li>They also help you to get past ordinary filters and logging software. This can be very convenient. Not everybody is going to be out to get you, after all, and this is (currently) non-trivial snooping I&#8217;m talking about. But did you click on <a href="http://www.forbes.com/sites/andygreenberg/2013/06/20/leaked-nsa-doc-says-it-can-collect-and-keep-your-encrypted-data-as-long-as-it-takes-to-crack-it/" target="_blank"><strong>that earlier link</strong></a>? Seems the NSA thinks that if your traffic is encrypted that means they can store it until they can decrypt it. No warrant or active investigation needed. No matter how long that takes. So&#8230;hmm.</li>
<li>(Who&#8217;s counting, anyway?) Not all VPN providers are quite so deliberately misleading. Or at least I hope they&#8217;re not. But if they&#8217;re not generating a certificate just for you, or a pre-shared key that&#8217;s clearly associated with you only? All the caveats in this article apply. That&#8217;s not all they&#8217;d have to do to protect you, but&#8230;at least they&#8217;re <em>trying</em>. You know?</li>
</ol>
<p>I looked around a bit more, and checked out <a href="https://secure.cryptohippie.com/" target="_blank"><strong>Cryptohippie</strong></a>&#8216;s site because I like a lot of what Paul Rosenberg writes. They actually (appear to&#8230;how would I audit this?) go to more effort than most to protect you&#8230;but do they actually offer either unique client-side certificates or unique per-user pre-shared keys? I couldn&#8217;t tell from the documentation. I&#8217;d think it would be a selling point. So&#8230;if they do, well, Cryptohippie will cost you a few hundred a year. If they <em>don&#8217;t</em>, the benefit of their complex system (which generally <strong>protects you against their own ability to know what sort of browsing you&#8217;re doing,</strong> which I do think is very cool of them, but again&#8230;audit?) is meaningless vs. snooping by an ISP. Or hotspot operator. Or, you know, anybody with access to your internet traffic before it reaches their VPN.</p>
<p>You know what? <strong>Personally I won&#8217;t trust any VPN service until it <em>does</em> allow an audit, or some other form of verifiable transparency.</strong> I want to see <em>all</em> config files, and have some assurance that they&#8217;re real. Otherwise? This stuff is all based on trust. Do you know these people personally, and fully trust their competence? Me neither.</p>
<p>So, well, there you are. If you want to browse the internet at all, I strongly recommend using one browser (possibly configured to use Tor) for all the sites to which you log in, and another (ideally the Tor Browser Bundle) for everything else. I see nothing wrong with adding a VPN to the mix&#8211;but I&#8217;d use both the VPN <em>and</em> Tor.</p>
<p>Did you want streaming video or audio? Well, I guess a VPN may be better than nothing. But possibly&#8230;not much better. Bear it in mind, okay? Also bear in mind that I&#8217;m currently trying really hard not to post a bunch of stuff about &#8220;secure&#8221; browsing with an iPhone vs. doing the same via Android. Also, I should probably get back to writing fiction.</p>
<p>And have fun out there! {8&#8242;&gt;</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2014/02/20/on-vpn-providers-and-encryption/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=On%20VPN%20providers%20and%20%22encryption%22&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('On%20VPN%20providers%20and%20%22encryption%22').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'On%20VPN%20providers%20and%20%22encryption%22', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2014/02/20/on-vpn-providers-and-encryption/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Online privacy rant number 328.473, or so</title>
		<link>https://dhyoung.net/2014/02/13/online-privacy-rant-number-328-473-or-so/</link>
					<comments>https://dhyoung.net/2014/02/13/online-privacy-rant-number-328-473-or-so/#comments</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Thu, 13 Feb 2014 22:23:19 +0000</pubDate>
				<category><![CDATA[Random Rants]]></category>
		<category><![CDATA[Technobabble]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=2650</guid>

					<description><![CDATA[So here I am, innocently writing a novel. Well, two novels plus a minor rewrite of a third. An issue arises: in addition to various&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2014/02/13/online-privacy-rant-number-328-473-or-so/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Online%20privacy%20rant%20number%20328.473%2C%20or%20so&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Online%20privacy%20rant%20number%20328.473%2C%20or%20so').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Online%20privacy%20rant%20number%20328.473%2C%20or%20so', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><p>So here I am, innocently writing a novel. Well, two novels plus a minor rewrite of a third. An issue arises: in addition to various supernatural shenanigans, this trilogy (at least?) also deals with government-agency shenanigans and issues relating to online privacy. This means…research. Figured I’d share some stuff with you guys.</p>
<p>Note: I could have included lots of links in this here post. However&#8230;I chose not to. First, I&#8217;m busy, and dictating it, and I&#8217;d have to add the links afterward due to software limitations. Second, you can Google (though I prefer StartPage) this stuff for yourself if you actually care, and that ought to be more convincing than stuff I cherry-pick. Third, I&#8217;m kinda lazy. It is what it is.</p>
<h2>To Begin</h2>
<p>There are a lot of snake-oil salesmen operating out there just lately. For example, you can Google “Onion Pi” (I’m not going to help their page rankings with a direct link here) and find quotes like “Browse anonymously anywhere you go with the Onion Pi Tor proxy&#8221; floating around. This is horse-puckey. Using this software (without understanding it fully and modifying your online behavior accordingly) is actually considerably worse than useless as far as protecting your privacy/anonymity goes. More on that in a bit.</p>
<p>Next, you can Google something like “BitTorrent Sync: The NSA-Resistant File Sharing Service You Might Have Missed&#8221; and find pages that sort of go with that headline. The catch? If anything, this sort of thing makes the NSA&#8217;s job easier in many use cases.</p>
<p>Want more? You can find VPN services like TorGuard (frankly I don’t understand the name) that purport to offer you a different sort of anonymity–the kind you get by paying someone else to fail to log your online traffic, and to protect their non-records from other interested parties. As far as I know they&#8217;re totally legit–but using them strongly implies that you trust them to keep your secrets (if any). So&#8230;do you trust them? Are you <em>sure</em> you know whom they&#8217;re working for?</p>
<h2>Here&#8217;s Where I Get to Debunk Some Stuff</h2>
<p>Okay,<strong> let&#8217;s start with the Onion Pi</strong>. What it will do (if it is configured correctly and if it works) is hide your IP address from the websites you browse to. (Oh, and it&#8217;ll also hide lots of stuff from your ISP, but not the fact that you&#8217;re using Tor, or how much data you&#8217;re up/downloading, or when you were doing any of it. And even this assumes there are no DNS leak issues, and no inconveniently revealing code on any of the sites you use, knowingly or otherwise.)</p>
<p>Unfortunately, this <strong>does very little to aid anonymity</strong>. I’ve spoken before about browser fingerprinting, and people tend not to believe me. Truth, though?<strong> You can go to <a href="https://panopticlick.eff.org" target="_blank">this site</a> and see just how much information your browser is currently giving to websites</strong>. Chances are good that you’re (at least potentially) uniquely identified. If you are logging into any sites whatsoever with information that can be tracked back to you? That&#8217;s likely to be logged, and combined with your browser fingerprint in a database. Therefore, <strong>there is almost certainly somebody out there selling information about your browsing habits</strong>. Chances are good, not that it matters for most advertisers, that they can identify you by name. Oh, and they likely have a mailing address. So what good did hiding that IP address do? There are ways around this–but routing traffic over Tor will do very little to help. It&#8217;s a useful piece of an overall strategy, but <strong>all claims of “anonymity” from this simple measure are bogus</strong>.</p>
<p>Actually it&#8217;s worse than that. The NSA (among, I strongly suspect, many other groups/agencies) specifically targets users of Tor software. Since Tor cannot automatically provide end-to-end encryption, and anyone at all can set up a Tor “exit node” (which you <em>must</em> use in order to use Tor at all), <strong>spying on the Internet traffic of Tor users is actually much easier</strong> to do than spying on traffic of people who didn&#8217;t buy claims of “anonymity” and are simply browsing the Internet normally.</p>
<p>Next? <strong>BitTorrent Sync</strong>. Again, this is a nice idea. But…the way this works, see, is that users&#8217; computers share information between themselves. In order to do this,<strong> they must publicize their IP addresses and other information</strong>. There are some neat ideas built on top of this, like “SyncNet,” but as soon as you start using a network like this for anything other than sharing truly private and/or restricted information, <strong>you begin to publicize exactly which information you have chosen to download or view</strong>.</p>
<p>Okay. Now we come to a VPN, such as (as mentioned earlier) TorGuard. A VPN will hide your IP address. It will also encrypt all traffic between your computer or network and your VPN provider&#8217;s servers. If you believe your VPN provider about its no-logs policies, you can believe it will obscure your identity more effectively than a device such as the Onion Pi can manage (although with the same caveats about actual anonymity and fingerprinting).</p>
<h2>Now I’ll Point out the Obvious</h2>
<p>Decentralization is good, for reliable dissemination of online information. <strong>Having a single point of failure for anything, given the capabilities of our current technology, is pretty silly of us</strong>. Any attempts at gaining online anonymity and privacy that are based on trusting a company or government agency are…well, again they&#8217;re just silly.</p>
<p>Ideally? <strong>We would all start using something like BitTorrent for most internet traffic, only running it over a network something like Tor</strong>. Unfortunately, these technologies have a history of not playing well together. It&#8217;s not a technical issue, except for Torrent-freaks’ insatiable desire for bandwidth and the limited bandwidth currently available for users of Tor, given that all Tor nodes are currently free for all users–so there aren&#8217;t that many of them. As far as I can tell, <strong>it&#8217;s either a sense of competition or an example of the Not-Invented-Here phenomenon in the open-source software world</strong>.</p>
<p>Along with this w<strong>e need web browsers that give out less of our private information</strong>. I believe they&#8217;re on the way. I believe current browsers are widely recognized to need improvement here. Should be fun to see what happens.</p>
<h2>Here&#8217;s Where I Dive into Other Issues</h2>
<p>Okay, you know that thing where you log into your bank&#8217;s website and something turns all green or otherwise reassures you that your connection is “secure”? More horse-puckey. Truth: your connection is encrypted. But who has the key to decrypt it? Enter a browser plug-in like “Perspectives,” which will actually give you some information about your encrypted session. <strong>Turns out ISPs, and some other companies, and hackers, will sometimes sit in between your computer and the Web server you think it&#8217;s talking to</strong>. Oh, and the NSA does this too. This is called a “Man in the Middle” attack, and they&#8217;re fairly common. Some are even carried out with what purport to be good intentions. So…we need systems to deal with this sort of problem as well.</p>
<p>I’m going to throw some stuff about Bitcoin in here too. <strong>Bitcoin, by design, is absolutely not “anonymous.”</strong> In fact, no Bitcoin transactions can occur in secret at all. That’s how it <em>works</em>. Worse yet? There aren&#8217;t that many Bitcoins, and–again by design–there never will be all that many. So <strong>if you’re buying or selling things with a value of a fractional Bitcoin, you’re not even using the Bitcoin protocol</strong>. Instead, you&#8217;re trusting an exchange provider of some sort with your money. And probably believing that something magical about Bitcoins protects you. This has already started work out badly for some people.</p>
<p>Are online virtual currencies a good idea? Yes, for privacy and anonymity. <strong>Bitcoin doesn&#8217;t really have what it takes to work for us in the long run</strong>, but people are jumping on the bandwagon because they don’t understand its limitations. I guess, even if they do understand, it&#8217;s still fine as long as enough other people are going along with it–sort of like the stock markets, right?</p>
<h2>All that being said?</h2>
<p><strong>Tor</strong> is pretty nifty, if and only if used correctly. So is stuff like <strong>obfsproxy</strong>. And <strong>.Bit</strong>. And <strong>Bitcloud</strong>. Even <strong>BitTorrent Sync</strong> has its uses. <strong>VPNs</strong> are cool too, and could become more so if we had a truly anonymous online currency in general use. Hey, I love the cool tricks I can get my personal email server to do, too. There&#8217;s a Wild West of ideas out there right now, and many people are hard at work solving bits and pieces of our online privacy/reliability/redundancy/free-from-interference-and-monitoring issues. Sooner or later? They&#8217;ll start talking to each other a bit more, and more complete open-source systems will become available.</p>
<p>Nobody gets to decide whether this will happen–it has to. All we can decide is how we will react to it.</p>
<h2>Now I&#8217;m Done</h2>
<p>There is room for hope here, and some ideas along these lines are finding their way into the books I&#8217;m writing. I hope this has been at least vaguely interesting, because–after all–<strong>that’s what I’m here for: your entertainment</strong>.</p>
<p>My recommendation? Have fun out there!</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2014/02/13/online-privacy-rant-number-328-473-or-so/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Online%20privacy%20rant%20number%20328.473%2C%20or%20so&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Online%20privacy%20rant%20number%20328.473%2C%20or%20so').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Online%20privacy%20rant%20number%20328.473%2C%20or%20so', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2014/02/13/online-privacy-rant-number-328-473-or-so/feed/</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
			</item>
		<item>
		<title>Not Sure Yet. Maybe Next Week?</title>
		<link>https://dhyoung.net/2014/01/13/not-sure-yet/</link>
					<comments>https://dhyoung.net/2014/01/13/not-sure-yet/#comments</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Tue, 14 Jan 2014 03:02:53 +0000</pubDate>
				<category><![CDATA[Personal]]></category>
		<category><![CDATA[Publishing]]></category>
		<category><![CDATA[Technobabble]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=2565</guid>

					<description><![CDATA[So here we are. If only I knew where that was. Or do I mean where that were? And even if I do (did?), you&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2014/01/13/not-sure-yet/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Not%20Sure%20Yet.%20Maybe%20Next%20Week%3F&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Not%20Sure%20Yet.%20Maybe%20Next%20Week%3F').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Not%20Sure%20Yet.%20Maybe%20Next%20Week%3F', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><p>So here we are. If only I knew where that was. Or do I mean where that <em>were</em>? And even if I do (did?), you might reasonably ask why I bother. Oh, this post isn&#8217;t about a new release.  If you were wondering. Instead…</p>
<p><strong>WARNING: This is a nuts-and-bolts kind of post, or it would be if nuts and bolts had a tendency to hang up in mid-air, and it&#8217;s very likely dealing with a bunch of goofy and unrealistic expectations.</strong> And badly at that. Read at your own risk. Or, if possible, have your computer read it to you. That would be at least semi-appropriate.</p>
<p>Lots of goals going on in my neck of the woods. Lots of aspirations. Lots of hoping. Mainly, though, I just want to make sense. And it&#8217;s harder than you might think–though of course that may be a result of a peculiar mind. Meaning, of course, mine. ’Cause frankly I can&#8217;t tell what’s what anymore.</p>
<p>Here are the issues I’m currently allowing to take over said brain:</p>
<ul>
<li>I want to write new fiction on a <em>regular</em> basis.</li>
<li>I want to learn to <em>dictate</em> that fiction.</li>
<li>I want to dictate that fiction <em>remotely</em>, without being remotely near a computer.</li>
<li>I want to use <em>software</em> for transcription–meaning that I don’t want to have to hire or train someone to transcribe my dictation.</li>
</ul>
<p>Frankly I may have bitten off more than I can chew. I am dictating this, right now. But…I’m having trouble with the dictating-new-<em>fiction</em> bit. It works, but it&#8217;s very slow. And even making the attempt may well be flying in the face of lessons I would like to think I’ve learned about writing fiction. To wit:</p>
<ul>
<li>I generate fiction much more <em>quickly</em> when I don’t stop to edit as I go. Weird tricks such as unreadable fonts and an audibly ticking timer encourage me to rush forward.</li>
<li>I seem to generate <em>better</em> fiction when I write more quickly. I’m constantly amazed at how few typos I create. And the story moves quickly, in more than one sense,  possibly because I’m focusing on just that: the story. Rather than the words or other odd characters (?) thereof.</li>
<li>Dean Wesley Smith, among others, writes about the creative mind versus the critical mind. The idea seems to be that we can operate either one way, or the other.  Thus, we <em>shouldst not</em> mix our editing-crap activities with our writing-crap mission. All of my experimenting thus far seems to back this up.</li>
</ul>
<p>So…what’s the problem? Here it is: as I dictate, I have to verbalize punctuation marks. Hmm.</p>
<p>Okay, that was fun to say (rather than type, and how&#8217;s this for a bit of extraneous punctuation?), but there may actually be something worse than the obvious awkwardness involved here. Verbalizing punctuation, and thus visualizing individual sentences, definitely slows me down, which is at least a mild problem. But it may be that even <em>thinking</em> about punctuation interrupts the creative flow–which, yeah, it clearly does–but in a way that is <em>not actually amenable to training.</em></p>
<p>For contrast: when I blindly type a story, as quickly as I can, I’m not thinking about sentences at all. I’m thinking about the story. About what’s happening at the moment, and what might be happening next. So…clearly this means my fingers are well-trained to manage the details for me. I am therefore considering two possibilities:</p>
<ol>
<li>This (by which I mean dictating sentences, punctuation and all) is a new skill, and it will take time to learn to do it well.</li>
<li>All this fussing with the details of punctuation means what I’m trying to do is <em>fundamentally stupid</em>, and I should therefore quit messing with it as soon as possible.</li>
</ol>
<p>I guess a reasonable person might at this point ask: what’s the point? Why even bother with all this? And I’m not sure I have a good answer.</p>
<p>I really, really want to teach myself to write fiction in some setting other than sitting at my desk. I love the idea of wandering down a trail and muttering into a microphone. But does this make sense at all? Wouldn’t learning to dictate while hiking be <em>yet another</em> new skill?  And don’t I live in a freaking rain forest? So…what kind of equipment do I expect to use, exactly?  A waterproof microphone? Plus a waterproof recorder? Am I in fact doing this only for the new-toy factor? Because: yes…I’m like that. Sometimes.</p>
<p>FWIW, I <em>have</em> figured some of this out. I use an Android tablet rather than a dedicated recorder. I use software called “DictaDroid,” after experimenting with approximately 10 alternatives. I use a Plantronics USB headset. When I dictate as I stand at the large-type (?) computer, the transcription software works very very well. It&#8217;s getting a lot better at transcribing my recordings too. But the limiting factor doesn&#8217;t appear to be hardware or software except in the sense that software doesn&#8217;t usefully handle punctuation for me–the problem is <em>me</em>.</p>
<p>And it&#8217;s extraordinarily stupid of me to let this become an issue just now. For Crom&#8217;s sake, I only recently figured out how to write new fiction, both quickly and regularly. Or, actually, either. It&#8217;s a mind-blowing level of success. And yet I’m messing with it. Instead of using it.</p>
<p>Yes, I got sick and the fever did strange things to my mind. But no, I don’t have a fever now. Except metaphorically.</p>
<p>Am I asking too much, not only of myself but also of the world of possibilities? Am I essentially being a spoiled brat? Is it just that proceeding to write normally is too much like, for God&#8217;s sake, work? Maybe so.</p>
<p>OTOH, if this works…well, maybe I’ll be very happy. Or maybe I’ll use it as an excuse to go off on another ridiculous adventure of some sort. Maybe this sort of reality-denying behavior is endemic to writers of fiction.</p>
<p>Beats me, folks. I’m giving myself through Friday of this week to figure it out. We&#8217;ll see how it goes.</p>
<p>Meanwhile, have fun out there. Or else I may punctuate you unmercifully.</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2014/01/13/not-sure-yet/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Not%20Sure%20Yet.%20Maybe%20Next%20Week%3F&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Not%20Sure%20Yet.%20Maybe%20Next%20Week%3F').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Not%20Sure%20Yet.%20Maybe%20Next%20Week%3F', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2014/01/13/not-sure-yet/feed/</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
			</item>
		<item>
		<title>Backups, a PSA, and a question</title>
		<link>https://dhyoung.net/2013/11/21/backups-a-psa-and-a-question/</link>
					<comments>https://dhyoung.net/2013/11/21/backups-a-psa-and-a-question/#comments</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Thu, 21 Nov 2013 20:57:08 +0000</pubDate>
				<category><![CDATA[Random Rants]]></category>
		<category><![CDATA[Technobabble]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=2432</guid>

					<description><![CDATA[Hi- This post isn&#8217;t for everybody. It&#8217;s about data backups, and an idea I got this morning. Not the most exciting topic ever&#8230;for most people.&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2013/11/21/backups-a-psa-and-a-question/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Backups%2C%20a%20PSA%2C%20and%20a%20question&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Backups%2C%20a%20PSA%2C%20and%20a%20question').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Backups%2C%20a%20PSA%2C%20and%20a%20question', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><figure id="attachment_831" aria-describedby="caption-attachment-831" style="width: 300px" class="wp-caption alignright"><a href="https://dhyoung.net/wp-content/uploads/2012/05/sample_uptime1.png"><img fetchpriority="high" decoding="async" class="size-medium wp-image-831" alt="sample uptime statistics" src="https://dhyoung.net/wp-content/uploads/2012/05/sample_uptime1-300x224.png" width="300" height="224" srcset="https://dhyoung.net/wp-content/uploads/2012/05/sample_uptime1-300x224.png 300w, https://dhyoung.net/wp-content/uploads/2012/05/sample_uptime1.png 330w" sizes="(max-width: 300px) 100vw, 300px" /></a><figcaption id="caption-attachment-831" class="wp-caption-text">Blast from the past! Okay, from <em>my</em> past. But still!</figcaption></figure>
<p>Hi-</p>
<p>This post isn&#8217;t for everybody. It&#8217;s about data backups, and an idea I got this morning. Not the most exciting topic ever&#8230;for most people. I have a special interest in it, but if you don&#8217;t? Might be better to skip this one.</p>
<p>Okay, here&#8217;s the setup:</p>
<ul>
<li>I&#8217;ve liked a company called <a href="http://spideroak.com"><strong>SpiderOak</strong></a> for a while now. I&#8217;ve often recommended them to others.</li>
<li>I liked them a lot better than something like Dropbox, even though their software is (necessarily) a bit slower and more cumbersome to use. Because they (say they) encrypt all user data with the user&#8217;s password, and (they say) they don&#8217;t ever know user passwords, and (they say) therefore they have no way to know what data is being stored with them. So they (say they) can&#8217;t provide your info to any third party either.</li>
<li>One caveat I&#8217;ve always had with this is that you have to give your password to their web server to set up your account. Which means that each and every password in fact flows through their web server&#8217;s memory at least once. It&#8217;s a strange design choice IMO. Seems to me that using a separate passphrase for encryption would be a (much!) better idea.</li>
<li>Another issue is that if you access your stuff via their web interface at any time after account setup&#8230;the password is again available to their server, for as long as your session lasts. They&#8217;re aware of this issue, and warn against it for those who care. But they don&#8217;t warn about the account-setup bit. Hmm.</li>
<li>Basically you have the same issue if you access any of your stuff from a mobile device. And if you store your password automatically it&#8217;s no more secure than your mobile device. Which is always true with any device that can access your data&#8230;but still, it&#8217;s worth thinking about.</li>
<li>You have to trust the company a lot to use the software at all. It&#8217;s not open-source, so it&#8217;s unclear how well they&#8217;ve implemented their ideas. There&#8217;s no way to verify that the version of the software you download is the same as the version other people are getting (I&#8217;ve suggested digital signatures on their download page &amp; a BitTorrent &#8220;download&#8221; option to mitigate this, but they&#8217;ve preferred not to implement either&#8230;and since they&#8217;re both very easy to do, this concerns me somewhat). In fact as soon as you start the app the first time, it (reasonably!) asks for a username and password. Thing is, if I slipped someone a fake version it wouldn&#8217;t be hard to&#8211;for instance&#8211;fake that login window. Nothing good can happen from there. Plus, by default the app updates itself (and I know of no easy way to verify the company can&#8217;t update bits or all of it regardless of user preference, or even run arbitrary code on a per-user basis) and for all I know they have utilities to grab the password&#8211;always assuming they don&#8217;t already have it&#8211;upon request from a gov&#8217;t agency&#8230;which also means employees may have access, and the system as a whole may be hackable. Unless they&#8217;re the first to develop one that isn&#8217;t. If it were open-source and easy to inspect I&#8217;d feel better&#8230;but it isn&#8217;t.</li>
</ul>
<p>All that said? I still thought they were a  better bet than other backup storage providers. I liked them so much that I&#8217;ve been voluntarily paying them for double the storage space I&#8217;ve actually used for over a year. So all the caveats above were no big deal for my <a href="https://en.wikipedia.org/wiki/Use_case" target="_blank"><strong>use case</strong></a>. And, y&#8217;know, I like playing with this &#8220;security&#8221; stuff but mostly<strong> I just needed backups that just <em>worked</em></strong>. So I could&#8230;you know&#8230;do my thing and not worry about hard drive failures or accidentally deleting a month&#8217;s worth of effort.</p>
<p>Oops. They got me on that one.</p>
<p>I have a folder I backed up that has a few hundred subfolders. It&#8217;s about 18GB in total, with a few thousand files. I used to be able to, as part of setting up a new computer, &#8220;sync&#8221; that folder to the new machine. Everything would (slowly but surely) come to me, wherever I was. It was nice.</p>
<p>Unfortunately it no longer works for that folder. I&#8217;ve set up multiple new operating systems, both 32-bit and 64-bit, both various flavors of Linux and plain ol&#8217; Windows&#8230;and that data will no longer sync. I don&#8217;t know why&#8211;could be data corruption (which is a<em> very bad thing</em> from a backup provider), or it could just be a software glitch with their current version.</p>
<p>All is not lost, for two reasons:</p>
<ol>
<li>I can choose to download that data instead of setting up a &#8220;sync,&#8221; and it sort of works. I get some of the files, anyway, but I may never wait around to find out whether I could get all of them. I have a fairly good internet connection at the moment, and it looks as if it will take roughly 10 days to get all 18GB. Downsides: (1) if I shut down the app, its &#8220;Download Manager&#8221; doesn&#8217;t remember what it was doing, so I&#8217;d have to leave a computer running without shutting it down for the entire 10 days. (2) I actually have much more data than that 18GB stored with SpiderOak. So&#8230;bad news, there. Um, and also (3) Seriously? <em>Ten days?</em></li>
<li>I&#8217;m kind of a geek. So I actually have everything backed up on an external drive anyway. Downside: what am I paying SpiderOak for?<strong> What about all the people to whom I&#8217;ve recommended their service? I need to publicly disrecommend them ASAP. Thus, this.</strong></li>
</ol>
<p>Unfortunately, it gets much worse than that. I sent their tech support an email about all this on 11/7. They responded the same day, telling me the issue had been &#8220;escalated&#8221; and I&#8217;d hear back within two days.</p>
<p>Since then I&#8217;ve sent a few more messages.<strong> I&#8217;ve heard <em>nothing</em>. For two weeks.</strong> Which, to me, means there&#8217;s no reason to do business with them anyway. Sheesh. What a pain. I&#8217;m disappointed, because I&#8217;d thought much better of them.</p>
<p>Okay, moving on: I have a fairly quick solution in mind for my own use, and here&#8217;s where some feedback might be useful. I used to run a service (called &#8220;Scarecrow&#8221;) that backed up small-business websites in the cloud. (It also checked website availability from various locations around the US&#8211;thus the image for this post&#8211;and sent user-defined alerts when files changed or a site didn&#8217;t respond, but that&#8217;s a side issue in this context.)</p>
<p>Scarecrow used <a href="https://en.wikipedia.org/wiki/Amazon_S3" target="_blank"><strong>Amazon S3</strong></a> for storage, but all files were given <a href="https://en.wikipedia.org/wiki/Uuid" target="_blank"><strong>UUID</strong></a> filenames in a single &#8220;bucket&#8221; and all files were also encrypted with various keys, so nobody at Amazon could read their contents or even determine which of my customers owned which file. I liked that feature a lot.</p>
<p>Here&#8217;s what I can do fairly quickly, for my own use:</p>
<ol>
<li>Set up a file server</li>
<li>Set up a Scarecrow virtual machine (only takes about 128MB of RAM, because all uploads/downloads/encryption/decryption are streamed in small chunks) to monitor that file server. Scarecrow can use FTP or SFTP&#8230;but plain old SSH is its first choice. So&#8230;easy.</li>
<li>Sit around smirking while it backs up everything to S3</li>
<li>Separately, encrypt and back up the Scarecrow database so I can still do restores if something happens to my Scarecrow instance.</li>
<li>Look into LAN-based folder-sync software so I don&#8217;t have to write a client app and my wife and I don&#8217;t have to remember to transfer important stuff to the file server.</li>
</ol>
<p>Now&#8230;this will give me everything I need, and will cost far less than SpiderOak did&#8230;never mind that I was paying them double; I appreciated the convenience of their solution. Until, and all.</p>
<p>With Scarecrow, since it has a web interface already built, I can actually view all versions of all files if I want to. I can see a snapshot of all backed-up files at any given time, and if I want to download a version of a file or restore everything from, say, last Tuesday at 10:43:27PM I can do it whenever I want&#8230;and still keep all other versions of all files around in case I decide I need them. Plus, if something unforeseen happens to my S3 account or the Scarecrow db, I&#8217;ll still have a backup in the form of my file server.</p>
<p>What I&#8217;m wondering is: should I open-source Scarecrow, and maybe make the whole virtual machine into a downloadable appliance? Hell, it could be set up to run as a Windows service (for you Windows people) without much effort on my part. I&#8217;d want to do some work on it, &#8217;cause some things (like my S3 account info) are stored in ways I found reasonable and I never chose to build any sort of application interface that had access to read or change that stuff. And I&#8217;d want the LAN folder-sync part to be simple to set up. Right now I know absolutely nothing about that end of things&#8230;but it looks like I&#8217;ll have to learn.</p>
<p>It&#8217;d be fun to do this. Of course it would also take time, which is a problem when I&#8217;m trying to get a lot of writing done. So, does anybody but me care about this stuff? I mean, some people obviously do, but they mostly don&#8217;t read my blog. And I&#8217;m not sure doing all this is worth the time it&#8217;d take away from my other projects. Especially if I then have to go out and find a way to let people know about it. What a pain.</p>
<p>It&#8217;s an idea. I get them sometimes. Often they pass without ill effect. We&#8217;ll see what happens this time.</p>
<p>The main takeaway from all this, for me: I&#8217;ve argued against people who said the cloud was a bad place for personal data. Um&#8230;<strong>SpiderOak <em>used to be</em> my primary example of a company that was doing it right. Could be I was wrong. I hate that.<br />
</strong></p>
<p>Sigh. I still think that, with caution and awareness, that anti-cloud position is not <em>totally</em> correct. However, I simply don&#8217;t know of a backup solution out there (besides my proposal) that&#8217;s (1) reliable, and (2) verifiably prevents people who aren&#8217;t me from seeing my data. Even when I ran Scarecrow for money, in principle I had access to my customers&#8217; files&#8230;I had to, so the app would be able to restore them &#8220;from the cloud&#8221; without customers&#8217; having to run it all from a client application on their own computers. But if everybody ran their own version of Scarecrow, with their own Amazon accounts&#8211;funny how often Amazon crops up in discussion around here, isn&#8217;t it?&#8211;and with their own app-generated encryption keys&#8230;<em>hmm!</em></p>
<p>So, noodle on that for a bit if you&#8217;re of a mind to do so. And have fun out there!</p>
<p><strong>UPDATE:</strong></p>
<p style="padding-left: 30px;">They now say, via Twitter, that they&#8217;re really sorry. And have hired new help. And at least one employee is working as hard as he can. Well&#8230;tough. What are we, children on a playground? <strong>They didn&#8217;t respond to me<em> at all</em> until I went public</strong>&#8211;even though I told them I would. But they responded within an hour after I did. I don&#8217;t like that at all. What about the customers who don&#8217;t post complaints in public? I already established what happens to them&#8230;</p>
<p style="padding-left: 30px;">And this clearly means they&#8217;ve got at least one very badly designed system within their company. Doesn&#8217;t it? I mean, not letting stuff like this sit for weeks with no comment/response is a no-brainer. Why didn&#8217;t an automated system pop up and say or do something about it? If their systems and culture allow/encourage this sort of thing where I can see it, what do they do where I<em> can&#8217;t?</em> Sheesh. Anyway, I&#8217;m done with &#8217;em. I think you should be done with &#8217;em, too. So&#8230;how &#8217;bout Scarecrow? {8&#8242;&gt;</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2013/11/21/backups-a-psa-and-a-question/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Backups%2C%20a%20PSA%2C%20and%20a%20question&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Backups%2C%20a%20PSA%2C%20and%20a%20question').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Backups%2C%20a%20PSA%2C%20and%20a%20question', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2013/11/21/backups-a-psa-and-a-question/feed/</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
			</item>
		<item>
		<title>Opting out? Or creating something new?</title>
		<link>https://dhyoung.net/2013/11/08/opting-out-or-creating-something-new/</link>
					<comments>https://dhyoung.net/2013/11/08/opting-out-or-creating-something-new/#respond</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Fri, 08 Nov 2013 21:58:48 +0000</pubDate>
				<category><![CDATA[Death of Amazon]]></category>
		<category><![CDATA[My Fiction]]></category>
		<category><![CDATA[Publishing]]></category>
		<category><![CDATA[Random Rants]]></category>
		<category><![CDATA[Technobabble]]></category>
		<category><![CDATA[Wild-Ass Speculation]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=2301</guid>

					<description><![CDATA[Hi! Here&#8217;s a spoiler: I think those are interdependent concepts, meaning it&#8217;s sometimes hard to do one without also doing the other. Which has interesting&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2013/11/08/opting-out-or-creating-something-new/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Opting%20out%3F%20Or%20creating%20something%20new%3F&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Opting%20out%3F%20Or%20creating%20something%20new%3F').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Opting%20out%3F%20Or%20creating%20something%20new%3F', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><div style="float: right; margin-left: 5px;"><iframe src="//www.youtube.com/embed/cOubCHLXT6A" height="315" width="420" allowfullscreen="" frameborder="0"></iframe></div>
<p>Hi! Here&#8217;s a spoiler: I think those are interdependent concepts, meaning it&#8217;s sometimes hard to do one without also doing the other. Which has interesting implications. Or at least they&#8217;re interesting to <em>me</em>.</p>
<p>A reader sent me a link to the video on the right (well, it&#8217;s supposed to be on the right, but if that doesn&#8217;t work for you it&#8217;s available on YouTube <a href="https://www.youtube.com/watch?v=cOubCHLXT6A" target="_blank"><strong>here</strong></a>) because of the &#8220;2R3v&#8221; notion I threw into this week&#8217;s story. Thanks, He/She/Other Who Wishes to Remain Nameless!</p>
<p>Anyway, this guy BSS has a lot of good thoughts to offer in the video. And yes, I briefly mentioned a &#8220;Second Revolution&#8221; in which normal folk used technology to mind their own business, and strongly implied that meant that the previous form of government in the US had essentially died out from disuse (but there were still people trying to get out in front and try to make it be about them as it happened&#8230;natch).</p>
<p>Which may seem a bit &#8220;out there&#8221;&#8230;but frankly I think it&#8217;s inevitable. Either access to the means of production (3D printers, home CNC machines, whatever) will become democratized/widespread just as access to information has been (and will continue to be, &#8217;cause that process is far from finished), or that process will be stopped by some sort of catastrophe or apocalypse, which will <em>also</em> mess with what we currently think of as the normal state of affairs. (Just for the record, I&#8217;m kinda hoping that if it comes it&#8217;ll be zombies. Because they&#8217;re cool.)</p>
<p>Good, bad, or indifferent&#8230;fundamental change is just as inevitable today as it was for the feudal systems of yore. And yet&#8230;inevitably, change surprises nearly everybody when it arrives, regardless of how quickly they can say &#8220;disruptive technology&#8221; five times in the shower on Wednesdays. (Or is that just me? &#8216;Cause I&#8217;m getting much better at it, if you want to compare times.) Also, change tends to be a messy process. Oh, and it&#8217;s been coming much faster lately. Ready for the ride?</p>
<p>Few companies have historically survived paradigm shifts (aka &#8220;disruptive technologies&#8221; in this context) in their industries. When they have, they&#8217;ve generally (possibly even &#8220;always&#8221; but I&#8217;m not sure enough to say so) managed it by creating a new division to deal with the new tech, and at some point the dog/tail balance shifted, so&#8230;did the original company survive? Sort of, I guess. Some investors got their value preserved or enhanced, anyway, which is the point as far as they were concerned. Why should governments be different? Especially if most of what they currently do (in fact, as opposed to theory) is essentially irrelevant to the ways we&#8217;ll learn to spend our time as our individual empowerment inexorably moves forward?</p>
<p>Still, some readers will be rolling their eyes at this post, and some won&#8217;t have gotten this far. But think back, if you&#8217;re old enough. Remember when &#8220;the news&#8221; was what you saw on the four TV channels available in your town? Or read in a newspaper? This was before blogging. Before YouTube and Twitter. Before we started creating our own hometowns and carrying them with us via Facebook. Before people started building lots of open-source software and distributing whatever information they wanted on the Internet. Now&#8230;imagine when something similar happens to people&#8217;s ability to<em> make stuff</em>. As BSS puts it, there are entire 3-letter agencies that do nothing but ban physical objects. Good luck with that, guys! It simply can&#8217;t last. Somewhere in there, too, taxation gets a bit difficult to enforce. So do rules about currency. See, stuff like <a href="https://www.khanacademy.org/science/core-finance/money-and-banking/bitcoin" target="_blank">Bitcoin</a> is just the tip of the iceberg.</p>
<p>In fact, Bitcoin&#8217;s a bit of a bad joke in the process of being played on us all. Because of the way it&#8217;s designed, there simply won&#8217;t be enough coins&#8211;ever&#8211;for it to remain a major player once significant numbers of people start to get involved. Coins will soar in value in the short term, but Bitcoin is destined to fade away at some near-future point (says me and only me but I&#8217;m still saying it damnit). Actually this &#8220;flaw&#8221; led me to dismiss Bitcoin as soon as I first heard of it a few years ago&#8230;but I didn&#8217;t realize just how strong the demand for truly digital money already<em> is</em>. In fact, many libertarian types have bemoaned the rise of digital dollars in the US for years, on the grounds that they&#8217;re easier for the government to track and manage than paper money. Boy were they wrong too! Which is the point: the actual change we observe over time is always more fundamental than we expect.</p>
<p>So, lately the Snowden/NSA thing has made it seem that technology is basically used to reduce people&#8217;s privacy (and thus their capacity for effective independent action). And in fact this is often true. But not always. There are things like <a href="http://torproject.org" target="_blank"><strong>Tor</strong></a> (which it turns out the NSA specifically targets, meaning they don&#8217;t like for us to use it, which makes me smile a little). But using Tor is complicated&#8230;I got into what I&#8217;ll call &#8220;a discussion&#8221; a few weeks ago, just prior to the Snowden leaks, on someone else&#8217;s blog when a guy wanted to offer a router for sale that moved all network traffic via Tor for those who connected to it via wifi. Neat idea, sort of, but the thing is? Tor protects the privacy of your data<em> in transit</em>. Technically speaking, the term for what  it does, by itself and used as this guy planned, to enhance your privacy once you start actually using websites is this: fuck-all. And by design. Tor itself doesn&#8217;t even <em>try</em> to play in that space.</p>
<p>Okay, caveats exist, and the Tor Browser Bundle (or perhaps <a href="https://www.whonix.org/wiki/Main_Page"><strong>Whonix</strong></a>?) <em>does</em> in fact help a lot with privacy if used correctly, but that doesn&#8217;t mean half-measures are useful just because someone wants them to be. Also the guy with the plan probably meant well, but he didn&#8217;t know what he was doing and proposed to make money from people by promising stuff he couldn&#8217;t deliver. Which I dislike. So: using Tor is likely to actually make your internet life <em>less</em> private unless you know exactly what you&#8217;re doing. Which is not the same as connecting to a wifi network. Want to do it right? Most people can&#8217;t.</p>
<p>For instance: Hey guys, guess what? The entire operating system I&#8217;m using to write this post is dedicated to browsing to websites to which I log in under my own name, or doing web searches for stuff to which I intend to refer in public. I don&#8217;t use it for <em>anything</em> else. I have lots of others for other purposes, though. And even this one denies lots of information to whoever&#8217;s snooping and recording. I figure I&#8217;m totally hackable still, but&#8230;my data is somewhat compartmentalized. Let me be more explicit: I&#8217;m using stuff like Tor, <a href="https://www.ghostery.com/" target="_blank"><strong>Ghostery</strong></a>, <a href="http://bleachbit.sourceforge.net/" target="_blank"><strong>Bleachbit</strong></a>, <a href="http://noscript.net/" target="_blank"><strong>NoScript</strong></a>, <a href="https://www.eff.org/https-everywhere" target="_blank"><strong>HTTPSEverywhere</strong></a>, <a href="http://perspectives-project.org/" target="_blank"><strong>Perspectives</strong></a>, and<em> lots more</em> right now. For this operating system. And I <em>still</em> assume everything I&#8217;m doing is essentially public. And I don&#8217;t even have a <em>reason</em> to play with this stuff, except that it&#8217;s a fun game for me.</p>
<p>If you, in your internet life, doubt you can be easily tracked? Try the <a href="http://panopticlick.eff.org" target="_blank"><strong>Panopticlick</strong></a>! Chances are good your browser is going to have a unique signature. It &#8220;fingerprints&#8221; you wherever you go on the web. So&#8230;are you visiting websites? Do you think that&#8217;s your own business and nobody else&#8217;s? Last time I went to CNN.com I saw there were twelve (12) separate companies attempting to record my visit. These guys sell and trade information, too. Most people have no idea of just how thoroughly their activity is being monitored. And no, turning on &#8220;Do Not Track&#8221; in your browser won&#8217;t help. Because most people don&#8217;t, so it just makes you that much easier to identify. Neat, huh? Oh, and who says any cookie-blocking will really help, anyway? &#8216;Cause a lot of info, plus a browser footprint, can easily be logged on the web server itself. So I saw twelve companies, and they distribute information, but for all I know there were 40 others dealing directly with CNN.</p>
<p>All the sites you go to that show you little Facebook icons? Or Twitter, or Pinterest, or LinkedIn, or whatever? Often that stuff is coming from web servers owned by&#8230;Facebook, Twitter, or whoever. So lots and lots of people can get access to much of your browsing history. I think that&#8217;s technologically cool, and I think it&#8217;s awesome that it&#8217;s generally used only to show you better-targeted ads, but still. It&#8217;s just a <em>tad bit</em> of a privacy problem. Isn&#8217;t it?</p>
<p>Thing is&#8230;privacy tech really is getting better. Browsers can get MUCH better with little effort, and I expect those that are open-source to improve the fastest and most dramatically in the near future. &#8216;Cause the kind of people who work on them often care about this stuff. And the NSA&#8217;s more direct forms of snooping (meaning the stuff they don&#8217;t just get from the companies that themselves just wanted to show you ads but actually ALSO know all about you and the things you like to watch monkeys do on rooftops) generally&#8211;though not always&#8211;seem to rely more on operator error than on anything fundamental (such as the oft-speculated notion that they have backdoors into common encryption algorithms&#8230;IMHO they just don&#8217;t).</p>
<p>Concern over data privacy is becoming more widespread. Tools to achieve it are, perforce, going to become much more pervasive and user-friendly. It&#8217;s very cool that the computers we use have so much more capacity than most of us ever use for watching videos and web-surfing and typing blog posts or tweets. Because it means they can begin to devote more time to protecting <em>us</em>.</p>
<p>Here&#8217;s what I say: monitoring impedes free speech. It restricts the flow of information. And enough people <em>already</em> care about this to change everything for the rest of us. Within five years I expect truly anonymous digital currencies (which Bitcoin isn&#8217;t, quite, though that may change if <a href="http://zerocoin.org/"><strong>Zerocoin</strong></a> works and is widely implemented) to become widespread. Combine that with distributed means of production and bigger info-hoses (yeah, I made that up just now) and none of us can predict just how huge the changes will be.</p>
<p>So here I am, writing my little stories. Science fiction, some of &#8217;em, I guess. But I&#8217;m barely scratching the surface. I mean&#8230;I&#8217;ve been around since the 1960s and I started getting excited about the internet in the early 90s. But I didn&#8217;t predict Ebay or Wikipedia or even Google. Hell, I didn&#8217;t predict what Amazon did to publishing&#8230;well, okay, that one I sort of saw coming but I didn&#8217;t think it&#8217;d be so soon. I&#8217;ve been <a title="Subtext, and Saving The WorldTM" href="https://dhyoung.net/2010/05/24/subtext-and-saving-the-worldtm/"><strong>talking about</strong></a> how distributed systems are more robust than centralized systems for years, and I&#8217;m still predicting the death of Amazon (or at least of their importance in selling digital content) in the fairly near future, but I know damn well I&#8217;m barely scratching the surface.</p>
<p>It&#8217;s fun to watch this stuff happen. I can&#8217;t wait to see what&#8217;s next!</p>
<p>Have fun out there.</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2013/11/08/opting-out-or-creating-something-new/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Opting%20out%3F%20Or%20creating%20something%20new%3F&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Opting%20out%3F%20Or%20creating%20something%20new%3F').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Opting%20out%3F%20Or%20creating%20something%20new%3F', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2013/11/08/opting-out-or-creating-something-new/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Rackspace hackery update</title>
		<link>https://dhyoung.net/2013/10/12/rackspace-hackery-update/</link>
					<comments>https://dhyoung.net/2013/10/12/rackspace-hackery-update/#comments</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Sat, 12 Oct 2013 17:25:56 +0000</pubDate>
				<category><![CDATA[Random Rants]]></category>
		<category><![CDATA[Technobabble]]></category>
		<category><![CDATA[Wild-Ass Speculation]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=2219</guid>

					<description><![CDATA[&#160; [UPDATE, later on 10/12: the weird cert error for my SSH login to the web server (yes, this one) went away today sometime today. No&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2013/10/12/rackspace-hackery-update/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Rackspace%20hackery%20update&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Rackspace%20hackery%20update').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Rackspace%20hackery%20update', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><figure id="attachment_2229" aria-describedby="caption-attachment-2229" style="width: 300px" class="wp-caption aligncenter"><a href="https://dhyoung.net/wp-content/uploads/2013/10/trackers2.png"><img decoding="async" class="size-medium wp-image-2229" alt="trackers2" src="https://dhyoung.net/wp-content/uploads/2013/10/trackers2-300x207.png" width="300" height="207" srcset="https://dhyoung.net/wp-content/uploads/2013/10/trackers2-300x207.png 300w, https://dhyoung.net/wp-content/uploads/2013/10/trackers2-1024x709.png 1024w, https://dhyoung.net/wp-content/uploads/2013/10/trackers2.png 1432w" sizes="(max-width: 300px) 100vw, 300px" /></a><figcaption id="caption-attachment-2229" class="wp-caption-text">Just a humorous side note. Nothing to see here!</figcaption></figure>
<p>&nbsp;</p>
<p style="text-align: left;"><span style="color: #888888;"><span style="color: #333333;"><strong>[UPDATE, later on 10/12:</strong> the weird cert error for my SSH login to the web server (yes, this one) went away today sometime today. No <em>apparent</em> changes to relevant certs/files on either side since January. Which looks exactly like a discontinued MitM attack. Interesting&#8230;no conclusions here; just a mystery. Plus, you know, a need to move my stuff elsewhere just in case.<strong>]</strong></span></span></p>
<p style="text-align: left;"><span style="color: #888888;"><span style="color: #333333;">I&#8217;ve heard back from Rackspace, multiple times. They say they can&#8217;t replicate the cert issues with their Java applet. Perhaps that&#8217;s a browser misconfiguration issue&#8211;though of course I used multiple browsers on two computers.</span></span></p>
<p><span style="color: #888888;"><span style="color: #333333;">Treating my SSH login-via-cert troubles as a separate matter, they suggest perhaps my servers have been compromised, or my desktop &amp; laptop have been compromised, as they don&#8217;t have a pattern of similar complaints. I say this: that sort of server-side compromise (changing the server&#8217;s certificates) would be just plain silly, as it lets me know the server has been modified&#8230;the attacker would already need access to be able to pull it off. However, this is exactly how a &#8220;Man in the Middle&#8221; attack works. And if the desktop and laptop were compromised, booting into a LiveCD (which I&#8217;ve done) would not produce the same results unless it were a hardware issue.</span></span></p>
<p>So I&#8217;m left with two possibilities: (1) Somebody hacked both my servers simultaneously (aiming this at me specifically&#8211;one server is in Dallas; the other is in Chicago) via some other means and thought it would be funny/helpful to make it look like a MitM attack for some reason&#8211;assuming I noticed it, and the cert error on Rackspace&#8217;s side combined with the restored access on the box I actually logged into via their Java applet is mere coincidence, or (2) Rackspace knows exactly what&#8217;s going on but won&#8217;t tell me. Oh, okay, (3) some super-secret spy types broke into my house and secretly installed hardware into all my computers. Er&#8230;I ain&#8217;t gonna buy that one, but feel free to have fun with it if you like.</p>
<p>If (2), that could be a corporate decision on their part to use a product like <strong><a href="http://bluecoat.com/see-and-act-encrypted-data" target="_blank">Blue Coat</a> </strong>(as used by Iran and Syria&#8230;heh), and of course they wouldn&#8217;t tell me about it &#8217;cause that&#8217;d lead to customers deserting them <em>en masse.</em> Though if they&#8217;re using Blue Coat messing with their own cert is kind of silly. OR it could be some sort of semi-competent government-required action that they&#8217;re not allowed to disclose to me. There&#8217;s been a lot of that in the news lately.</p>
<p>Now&#8230;the fact that things happened at the same time does not mean they&#8217;re otherwise related. It could be a series of strange exercises in hackery and misconfiguration. Personally I&#8217;m going with Occam&#8217;s Razor on this one but YMMV.</p>
<p>No matter what&#8230;I view my servers on Rackspace as compromised. And I am permanently suspicious of the company &amp; all other servers hosted with them. Since my email goes through one of those, please don&#8217;t send me anything sensitive unless you encrypt it. Not that you were going to before, right? {8&#8242;&gt;</p>
<p>Have fun out there! {8&#8242;&gt;</p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2013/10/12/rackspace-hackery-update/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=Rackspace%20hackery%20update&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('Rackspace%20hackery%20update').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'Rackspace%20hackery%20update', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2013/10/12/rackspace-hackery-update/feed/</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
			</item>
		<item>
		<title>PSA: I think Rackspace Chicago &#038; Dallas datacenters are seriously compromised</title>
		<link>https://dhyoung.net/2013/10/11/psa-i-think-rackspace-chicago-dallas-datacenters-are-seriously-compromised/</link>
					<comments>https://dhyoung.net/2013/10/11/psa-i-think-rackspace-chicago-dallas-datacenters-are-seriously-compromised/#comments</comments>
		
		<dc:creator><![CDATA[David]]></dc:creator>
		<pubDate>Fri, 11 Oct 2013 20:25:23 +0000</pubDate>
				<category><![CDATA[Random Rants]]></category>
		<category><![CDATA[Technobabble]]></category>
		<category><![CDATA[Wild-Ass Speculation]]></category>
		<guid isPermaLink="false">https://davidhaywoodyoung.com/?p=2206</guid>

					<description><![CDATA[This has nothing to do with fiction, but I figure people ought to know. As I say below, I doubt this is aimed at me&#8230;]]></description>
										<content:encoded><![CDATA[<div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2013/10/11/psa-i-think-rackspace-chicago-dallas-datacenters-are-seriously-compromised/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=PSA%3A%20I%20think%20Rackspace%20Chicago%20%26%20Dallas%20datacenters%20are%20seriously%20compromised&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('PSA%3A%20I%20think%20Rackspace%20Chicago%20%26%20Dallas%20datacenters%20are%20seriously%20compromised').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'PSA%3A%20I%20think%20Rackspace%20Chicago%20%26%20Dallas%20datacenters%20are%20seriously%20compromised', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div><br/><p><a href="https://dhyoung.net/wp-content/uploads/2013/10/cert-warning.png"><img loading="lazy" decoding="async" class="alignright size-medium wp-image-2212" alt="cert warning" src="https://dhyoung.net/wp-content/uploads/2013/10/cert-warning-300x202.png" width="300" height="202" srcset="https://dhyoung.net/wp-content/uploads/2013/10/cert-warning-300x202.png 300w, https://dhyoung.net/wp-content/uploads/2013/10/cert-warning.png 612w" sizes="(max-width: 300px) 100vw, 300px" /></a>This has nothing to do with fiction, but I figure people ought to know. As I say below, I doubt this is aimed at me specifically.</p>
<p>Originally I intended to give them time to respond, but then I wondered: What would <b><a href="http://bruceschneier.com">Bruce Schneier</a></b> say about that? Sunlight is the best disinfectant.</p>
<p>Of course it&#8217;s possible that I&#8217;m being targeted specifically, though that&#8217;d be weird. And it&#8217;s possible that I&#8217;m misinterpreting the data/events below. And it&#8217;s possible that I&#8217;m making this up, for all you know.</p>
<p>So, with those caveats, here&#8217;s the text of a ticket I opened with Rackspace this morning:</p>
<blockquote><p>Figured you guys might be interested to know you&#8217;re probably being hacked by someone with access to your datacenters.</p>
<p>A while back (maybe a month?) I suddenly couldn&#8217;t log in via SSH to either of my virtual machines. They both require a cert for login. I got an error for both VMs that said there was a cert problem. I subsequently contacted you guys via chat &amp; was told you weren&#8217;t doing any sort of MitM stuff, which left either somebody local to me, my ISP, or somebody who has access to both datacenters. (Neither of my VM had been &#8220;touched&#8221; by me).</p>
<p>Simultaneously I got a certificate warning when trying to use your web console app to take a look at my mail server. I chose not to proceed&#8230;but somehow the console opened anyway. Since I don&#8217;t actually have anything all that sensitive on either VM anyway, I logged into my mail server via the console.</p>
<p>Now I&#8217;m a few thousand miles from my previous location. The mail server suddenly accepts my cert for SSH login again (I haven&#8217;t tried for some time). All appears to be well. I could choose to believe it was a mysterious glitch that fixed itself, but I think it&#8217;s significant that I actually provided a password via the web console, via SSL using what purported to be your certificate, and only then was I mysteriously able to log in via whatever method I choose.</p>
<p>Because there&#8217;s a new wrinkle as of yesterday (at least that&#8217;s when I noticed it): My web server (different datacenter) suddenly has a new &#8220;fingerprint&#8221; for its key. The record on my laptop remains unchanged, and is in fact &#8220;synched&#8221; to other computers via encrypted online storage, so it can&#8217;t be an issue on the laptop itself. I don&#8217;t see how this can be anything but a MitM attack, carried out via various methods over a period of weeks (at least). Since I&#8217;ve tried connecting via multiple ISPs, from locations thousands of miles apart, I can only conclude the attack is fairly likely to originate within your own network&#8211;though if it&#8217;s not, it means somebody with serious backbone access is targeting at least one of your customers. Which sucks even harder.</p>
<p>As for me? I used to do &#8220;secure&#8221; web app development for various corporations &amp; startups, and I still play around with Tor and VPNs terminating in different countries (of which neither affects the results I get when attempting to log in via SSH, pointing again to something local to your datacenters) and various other goofy stuff&#8230;but I&#8217;m doing it all strictly as a game. I mean, I write fiction these days. Damn near everything about me is now public (google &#8220;David Haywood Young&#8221; and you&#8217;ll see what I mean), so I doubt anybody cares about &#8220;hacking&#8221; me or my VMs specifically. I&#8217;ll bet the issue(s) is (are?) affecting lots of your other customers, though, and not in a good way.</p>
<p>Are you already aware? Do you have a plan to fix it? I&#8217;m willing to talk to you guys first, but I&#8217;ll be blogging about it all fairly soon. I think people should know. ATM I have to assume anything in either the Dallas or Chicago datacenter is compromised.</p></blockquote>
<p>More on their cert below. No details about mine are forthcoming. <img src="https://s.w.org/images/core/emoji/14.0.0/72x72/1f642.png" alt="🙂" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p><a href="https://dhyoung.net/wp-content/uploads/2013/10/cert-details.png"><img loading="lazy" decoding="async" class="aligncenter size-medium wp-image-2214" alt="cert-details" src="https://dhyoung.net/wp-content/uploads/2013/10/cert-details-300x154.png" width="300" height="154" srcset="https://dhyoung.net/wp-content/uploads/2013/10/cert-details-300x154.png 300w, https://dhyoung.net/wp-content/uploads/2013/10/cert-details.png 932w" sizes="(max-width: 300px) 100vw, 300px" /></a></p>
<br/><div class='heateorSssClear'></div><div  class='heateor_sss_sharing_container heateor_sss_horizontal_sharing' data-heateor-sss-href='https://dhyoung.net/2013/10/11/psa-i-think-rackspace-chicago-dallas-datacenters-are-seriously-compromised/'><div class='heateor_sss_sharing_title' style="font-weight:bold" ></div><div class="heateor_sss_sharing_ul"><a aria-label="Facebook" class="heateor_sss_facebook" href="https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Facebook" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#3c589a;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-5 -5 42 42"><path d="M17.78 27.5V17.008h3.522l.527-4.09h-4.05v-2.61c0-1.182.33-1.99 2.023-1.99h2.166V4.66c-.375-.05-1.66-.16-3.155-.16-3.123 0-5.26 1.905-5.26 5.405v3.016h-3.53v4.09h3.53V27.5h4.223z" fill="#fff"></path></svg></span></a><a aria-label="Twitter" class="heateor_sss_button_twitter" href="http://twitter.com/intent/tweet?text=PSA%3A%20I%20think%20Rackspace%20Chicago%20%26%20Dallas%20datacenters%20are%20seriously%20compromised&url=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F" title="Twitter" rel="nofollow noopener" target="_blank" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg heateor_sss_s__default heateor_sss_s_twitter" style="background-color:#55acee;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-4 -4 39 39"><path d="M28 8.557a9.913 9.913 0 0 1-2.828.775 4.93 4.93 0 0 0 2.166-2.725 9.738 9.738 0 0 1-3.13 1.194 4.92 4.92 0 0 0-3.593-1.55 4.924 4.924 0 0 0-4.794 6.049c-4.09-.21-7.72-2.17-10.15-5.15a4.942 4.942 0 0 0-.665 2.477c0 1.71.87 3.214 2.19 4.1a4.968 4.968 0 0 1-2.23-.616v.06c0 2.39 1.7 4.38 3.952 4.83-.414.115-.85.174-1.297.174-.318 0-.626-.03-.928-.086a4.935 4.935 0 0 0 4.6 3.42 9.893 9.893 0 0 1-6.114 2.107c-.398 0-.79-.023-1.175-.068a13.953 13.953 0 0 0 7.55 2.213c9.056 0 14.01-7.507 14.01-14.013 0-.213-.005-.426-.015-.637.96-.695 1.795-1.56 2.455-2.55z" fill="#fff"></path></svg></span></a><a aria-label="Email" class="heateor_sss_email" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault();window.open('mailto:?subject=' + decodeURIComponent('PSA%3A%20I%20think%20Rackspace%20Chicago%20%26%20Dallas%20datacenters%20are%20seriously%20compromised').replace('&', '%26') + '&body=https%3A%2F%2Fdhyoung.net%2Fcategory%2Ftechnobabble%2Ffeed%2F', '_blank')" title="Email" rel="nofollow noopener" style="font-size:32px!important;box-shadow:none;display:inline-block;vertical-align:middle"><span class="heateor_sss_svg" style="background-color:#649a3f;width:35px;height:35px;border-radius:999px;display:inline-block;opacity:1;float:left;font-size:32px;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box"><svg style="display:block;border-radius:999px;" focusable="false" aria-hidden="true" xmlns="http://www.w3.org/2000/svg" width="100%" height="100%" viewBox="-.75 -.5 36 36"><path d="M 5.5 11 h 23 v 1 l -11 6 l -11 -6 v -1 m 0 2 l 11 6 l 11 -6 v 11 h -22 v -11" stroke-width="1" fill="#fff"></path></svg></span></a><a class="heateor_sss_more" title="More" rel="nofollow noopener" style="font-size: 32px!important;border:0;box-shadow:none;display:inline-block!important;font-size:16px;padding:0 4px;vertical-align: middle;display:inline;" href="https://dhyoung.net/category/technobabble/feed/" onclick="event.preventDefault()"><span class="heateor_sss_svg" style="background-color:#ee8e2d;width:35px;height:35px;border-radius:999px;display:inline-block!important;opacity:1;float:left;font-size:32px!important;box-shadow:none;display:inline-block;font-size:16px;padding:0 4px;vertical-align:middle;display:inline;background-repeat:repeat;overflow:hidden;padding:0;cursor:pointer;box-sizing:content-box;" onclick="heateorSssMoreSharingPopup(this, 'https://dhyoung.net/category/technobabble/feed/', 'PSA%3A%20I%20think%20Rackspace%20Chicago%20%26%20Dallas%20datacenters%20are%20seriously%20compromised', '' )"><svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="-.3 0 32 32" version="1.1" width="100%" height="100%" style="display:block;border-radius:999px;" xml:space="preserve"><g><path fill="#fff" d="M18 14V8h-4v6H8v4h6v6h4v-6h6v-4h-6z" fill-rule="evenodd"></path></g></svg></span></a></div><div class="heateorSssClear"></div></div><div class='heateorSssClear'></div>]]></content:encoded>
					
					<wfw:commentRss>https://dhyoung.net/2013/10/11/psa-i-think-rackspace-chicago-dallas-datacenters-are-seriously-compromised/feed/</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
			</item>
	</channel>
</rss>
