|
|
|
|
|
by jlgreco
4748 days ago
|
|
That is basically a continuation of the Room 641A concept. There are a few problems with that theory when you consider that these companies are using SSL now. They cannot MiTM data from a beam splitter and we know they are not actively MiTM'ing traffic from a spliced cable with their own private key signed by a cooperating CA (doing this would be noticed quickly if they tried it en masse). If they have the companies private keys then they could be passively decrypting the traffic, unless DHE/ECDHE were being used. If that was the case then they would need the companies private key and the ability to do an active MiTM. I don't doubt that they are doing something, but I don't think we have enough information yet to say what. Hopefully further releases will shed more light on this. |
|
The thing that is most frustrating about this leak is we only get 4 slides out of a 41 slide deck, and are left to fill the gaps with paranoid worst-case assumptions. And the Internet is a great echo chamber of paranoid assumptions.