Hacker News new | ask | show | jobs
by awaythrow999 749 days ago
Threat models matter. If you're defending against nation state actors in a military/cyber context it is an essential part of the overall defense strategy. Ignoring BGP on the grounds that "it was always insecure" is then just weird, if not reckless.

The SCION project (Iirc from ZTH) solved all of this and also has been extensively tried in the field.

1 comments

If you are defending against a nation state, you should be worried about your staff being bribed, otherwise coerced or worse just being foreign agents. In properly run networks, BGP hijacks shouldn't have a noticeable impact.
> you should be worried about your staff being bribed, otherwise coerced or worse just being foreign agents

This is it, find a senior network operator, pick up their kids from school, and take them home.

You now have an agent with full access over that network.

But what I do have are a very particular set of skills, skills I have acquired over a very long career. Skills that make me a nightmare for people like you
> In properly run networks, BGP hijacks shouldn't have a noticeable impact

Bullshirt. Even AWS Route53 has fallen victim to BGP hijacking. It takes 1 mistake for SHTF