Hacker News new | ask | show | jobs
by michaelt 3441 days ago
If I was the NSA, I'd certainly be looking to launch a VPN company or two - maybe even subsidising their offerings, to get them to the top of the performance and value for money charts.

After all, getting users to voluntarily direct their traffic through your network would be much easier than installing snooping hardware at every ISP, backdooring hardware in transit or snooping on undersea cables.

6 comments

> If I was the NSA, I'd certainly be looking to launch a VPN company or two

not worth the trouble when you can just compel existing VPN companies to send all traffic to you.

In foreign jurisdictions?
The obvious answer to this is - if you're paying for a VPN in hopes of avoiding the NSA then you're using the wrong technology.

But since the NSA apparently shares its findings with other agencies, then the same applies if you're using a VPN in hopes of avoiding any sort of government monitoring.

So a VPN is only useful to (possibly) help protect yourself from corporate spying.

> Maybe even subsidising their offering

Yeah there's a few VPNs that look shady because of their pricing. One that springs to mind is LeafVPN[1]. For $5.00 you get to send all your traffic to Mallory. And it even has `LEA` as the first three letters, so you're safe! This is not an endorsement of this service BTW.

[1]: https://leafvpn.com

any of this services are safe to use http://vpntrends.com/best-vpn-services/ ? Not that i do anything illegal but don't want to send my information directly to the government.
If you were the NSA you could hack any VPN company on demand.

Hell, most of them host in super cheap DCs too so guess how good the physical security is?

Meh, just get vendors to mess up the implementation of their VPN protocol stack. This one was likely far from intentional but demonstrates quite clearly what can happen when implementations go south:

https://www.kb.cert.org/vuls/id/905344

It is easier and cheaper to send GAG order to most popular companies. Check Lavabit case.

PS: I have checked lababit website, seems like they are reopening in 2 days.