America
Law Enforcement Appliance Subverts SSL
Source: http://gizmodo.com/5501346/law-enforcement-appliance-subverts-ssl
That little lock on your browser window indicating you are communicating securely with your bank or e-mail account may not always mean what you think its means.
Normally when a user visits a secure website, such as Bank of America, Gmail, PayPal or eBay, the browser examines the website’s certificate to verify its authenticity.
At a recent wiretapping convention however, security researcher Chris Soghoian discovered that a small company was marketing internet spying boxes to the feds designed to intercept those communications, without breaking the encryption, by using forged security certificates, instead of the real ones that websites use to verify secure connections. To use the appliance, the government would need to acquire a forged certificate from any one of more than 100 trusted Certificate Authorities.
The attack is a classic man-in-the-middle attack, where Alice thinks she is talking directly to Bob, but instead Mallory found a way to get in the middle and pass the messages back and forth without Alice or Bob knowing she was there.
The existence of a marketed product indicates the vulnerability is likely being exploited by more than just information-hungry governments, according to leading encryption expert Matt Blaze, a computer science professor at University of Pennsylvania.
“If company is selling this to law enforcement and the intelligence community, it is not that large a leap to conclude that other, more malicious people have worked out the details of how to exploit this,” Blaze said.
The company in question is known as Packet Forensics, which advertised its new Man-In-The-Middle capabilities in a brochure handed out at the Intelligent Support Systems (ISS) conference, a Washington DC wiretapping convention that typically bans the press. Soghoian attended the convention, notoriously capturing a Sprint manager bragging about the huge volumes of surveillance requests it processes for the government.
According to the flyer: “Users have the ability to import a copy of any legitimate key they obtain (potentially by court order) or they can generate ‘look-alike’ keys designed to give the subject a false sense of confidence in its authenticity.” The product is recommended to government investigators, saying “IP communication dictates the need to examine encrypted traffic at will” and “Your investigative staff will collect its best evidence while users are lulled into a false sense of security afforded by web, e-mail or VOIP encryption.”
Packet Forensics doesn’t advertise the product on its website, and when contacted by Wired.com, asked how we found out about it. Company spokesman Ray Saulino initially denied the product performed as advertised, or that anyone used it. But in a follow-up call the next day, Saulino changed his stance.
“The technology we are using in our products has been generally discussed in internet forums and there is nothing special or unique about it,” Saulino said. “Our target community is the law enforcement community.”
Blaze described the vulnerability as an exploitation of the architecture of how SSL is used to encrypt web traffic, rather than an attack on the encryption itself. SSL, which is known to many as HTTPS://, enables browsers to talk to servers using high-grade encryption, so that no one between the browser and a company’s server can eavesdrop on the data. Normal HTTP traffic can be read by anyone in between – your ISP, a wiretap at your ISP, or in the case of an unencrypted WiFi connection, by anyone using a simple packet sniffing tool.
In addition to encrypting the traffic, SSL authenticates that your browser is talking to the website you think it is. To that end, browser makers trust a large number of Certificate Authorities – companies that promise to check a website operator’s credentials and ownership before issuing a certificate. A basic certificate costs less than $50 today, and it sits on a website’s server, guaranteeing that the BankofAmerica.com website is actually owned by Bank of America. Browser makers have accredited more than one hundred Certificate Authorities from around the world, so any certificate issued by any one of those companies is accepted as valid.
To use the Packet Forensics box, a law enforcement or intelligence agency would have to install it inside an ISP, and persuade one of the Certificate Authorities – using money, blackmail or legal process – to issue a fake certificate for the targeted website. Then they could capture your username and password, and be able to see whatever transactions you make online.
Technologists at the Electronic Frontier Foundation, who are working on a proposal to fix this whole problem, say hackers can use similar techniques to steal your money or your passwords. In that case, attackers are more likely to trick a Certificate Authority into issuing a certificate, a point driven home last year when two security researchers demonstrated how they could get certificates for any domain on the internet simply by using a special character in a domain name.
“It is not hard to do these attacks,” said Seth Schoen, an EFF staff technologist. “There is software that is being published for free among security enthusiasts and underground that automate this.”
China, which is known for spying on dissidents and Tibetan activists, could use such an attack to go after users of supposedly secure services, including some Virtual Private Networks, which are commonly used to tunnel past China’s firewall censorship. All they’d need to do is convince a Certificate Authority to issue a fake certificate. When Mozilla added a Chinese company, China Internet Network Information Center, as a trusted Certificate Authority in Firefox this year, it set off a firestorm of debate, sparked by concerns that the Chinese government could convince the company to issue fake certificates to aid government surveillance.
In all, Mozilla’s Firefox has its own list of 144 root authorities. Other browsers rely on a list supplied by the operating system manufacturers, which comes to 264 for Microsoft and 166 for Apple. Those root authorities can also certify secondary authorities, who can certify still more – all of which are equally trusted by the browser.
The list of trusted root authorities includes the United Arab Emirates-based Etilisat, a company which was caught last summer secretly uploading spyware onto 100,000 customers’ Blackberrys.
Soghoian says fake certificates would be a perfect mechanism for countries hoping to steal intellectual property from visiting business travelers. The researcher published a paper (.pdf) on the risks Wednesday, and promises he will soon release a Firefox add-on to notify users when a site’s certificate is issued from an authority in a different country than the last certificate the user’s browser accepted from the site.
EFF’s Schoen, along with fellow staff technologist Peter Eckersley and security expert Chris Palmer, want to take the solution further, using information from around the net so that browsers can eventually tell a user with certainty when they are being attacked by someone using a fake certificate. Currently browsers warn users when they encounter a certificate that doesn’t belong to a site, but many people simply click through the multiple warnings.
“The basic point is that in the status quo there is no double check and no accountability,” Schoen said. “So if Certificate Authorities are doing things that they shouldn’t, no one would know, no one would observe it. We think at the very least there needs to be a double check.”
EFF suggests a regime that relies on a second level of independent notaries to certify each certificate, or an automated mechanism to use anonymous Tor exit nodes to make sure the same certificate is being served from various locations on the internet – in case a user’s local ISP has been compromised, either by a criminal, or a government agency using something like Packet Forensics’ appliance.
One of the most interesting questions raised by Packet Forensics product is how often do governments use such technology and do Certificate Authorities comply. Christine Jones, the general counsel for GoDaddy – one of the net’s largest issuers of SSL certificates – says her company has never gotten such a request from a government in her 8 years at the company. ”I’ve read studies and heard speeches in academic circles that theorize that concept, but we never would issue a ‘fake’ SSL certificate,” Jones said, arguing that would violate the SSL auditing standards and put them at risk of losing their certification. “Theoretically it would work, but the thing is we get requests from law enforcement every day, and in entire time we have been doing this, we have never had a single instance where law enforcement asked us to do something inappropriate.”
VeriSign, the largest Certificate Authority, declined to comment.
Matt Blaze notes that domestic law enforcement can get many records, such as a person’s Amazon purchases, with a simple subpoena, while getting a fake SSL certificate would certainly involve a much higher burden of proof and technical hassles for the same data.
Intelligence agencies would find fake certificates more useful, he adds. If the NSA got a fake certificate for Gmail – which now uses SSL as the default for e-mail sessions in their entirety (not just their logins) – they could install one of Packet Forensics’ boxes surreptitiously at an ISP in, for example, Afghanistan, in order to read all the customer’s Gmail messages. Such an attack, though, could be detected with a little digging, and the NSA would never know if they’d been found out.
Despite the vulnerabilities, experts are pushing more sites to join Gmail in wrapping their entire sessions in SSL.
“I still lock my doors even though I know how to pick the lock,” Blaze said.
Tags: acco, account, Agency, Alice, America, Anyone, appliance, attack, authenticity, authority, bank, bank of america, being, Bob, browser, case, certificate, certificate authorities, check, China, Chris Palmer, Chris Soghoian, com, communication, community, company, computer, computer science professor, confidence, convention, copy, Court, domain, e mail account, eBay, eff, encryption, enforcement, existence, expert, feds, Firefox, forensics, Gmail, government, ility, information, Intelligence, intelligence community, intercept, Internet, ISP, law, leap, list, lock, Mallory, man in the middle attack, Matt Blaze, mechanism, money, Mozilla, need, new man, order, Packet, PayPal, Pennsylvania, Peter Eckersley, point, Private Networks, Product, professor, Ray Saulino, researcher, root, Science, secure website, security, security certificates, sense, server, Seth Schoen, site, SSL, staff, technologist, Tor, traffic, United Arab Emirates, University, university of pennsylvania, user, vulnerability, Washington, way, Web, website, window, year
The JKWeddingDance video was real; the viral effect was MANUFACTURED – Post 1 of 2
originally investigated and reported on Friday July 31, 2009 by Augustine Fou, with Tugce Esener @tesener
Several friends and colleagues had the same reaction when they found out about this video — that it was at such a high view count already and we were late to the party of finding out. Then we did some more digging — digital forensics :-) And this is a case where a viral hit was indeed successfully manufactured. There’s something to be learned from all this – how to successfully manufacture a viral video sensation and make viral profits.
Related: How to manufacture a viral video sensation and make viral profits – Post 2 of 2
Chris Brown is successfully tapping into the viral halo of a funny video that coincidentally used his song.
ReadWriteWeb article on how rights owners (Sony, Chris Brown) can make viral profits on other people using their work instead of suing them - http://bit.ly/KA3HI
The video was real. But promotional activities (possibly/likely paid) created the initial viral effect (led to the tipping point of the viral effect) which then got carried a further by people thinking they were simply late to the party, including myself (e.g. 440k bit.ly clicks and 3k detectable retweets out of the 13M views). The numbers don’t jive.
The viral halo has added 1 million more views to the video from August 1 – August 2. (13.1 M to 14.5 M)
Ten ELEVEN TWELVE THIRTEEN proof points to follow, each with screen shot to illustrate.
1a. anyone notice that the “Forever” soundtrack is remarkably consistent throughout the video as if it were dubbed or added in after the original footage was shot. The sound is too consistent in volume and loudness to have come from a built-in, on-camera microphone. At the very end of the video, once it cuts back to the couple at the altar the sound quality goes back to the echo-y, tinny sound of an on-camera mic.
1b. The “TheKHeinz” user on YouTube was registered on July 19, 2009, the day the video was posted. We usually look for clues like this to detect “plants” by PR agencies. This is an issue of trust — a user “CmdrTaco” on Slashdot has been around the forums for years, made hundreds of posts, and was rated by the community very highly. PR agencies trying to seed stories have to create new user accounts during the PR campaign (recent registration date) and have made no other posts or uploads before (no history).

2. The social intensity detected in all of the top social venues like Technorai, Delicious, Reddit, Digg, etc. indicate there was not enough organic sharing to support a view count of 13 million views in 11 days (updated: 14.6 million today August 2, 2009).
a) Bit.ly shows only 447k clicks on the shortened URL

“At Fortune’s Brainstorm:Tech conference Ashton Kutcher effectively took credit for boosting the views from – in his words – 12,500 views before he tweeted the link – to some 1.2 million views 12 hours later…”
Well, unfortunately he used a bit.ly link which provides public analytics on how many people clicked. Most tweets result in immediate traffic, which then tails off immediately after the tweet falls off the first page. In his case, look at the following bit.ly stats URL and click “past month” to see the peak clicks on July 23. All he can actually claim is that his tweet drove a peak of about 100,000 clicks on that day not 1.2 million
http://bit.ly/info/Z7vMw
too bad Ashton. next time you make a BMOC claim, be sure to use a non trackable method, so analytics won’t “out” you so easily.

after only 3.5 days of retweets the twitter intensity died off to next-to-nothing; if this were a truly viral video, carried forth by real people (and not by paid PR support and paid media) the retweet intensity would remain high. As of August 21, there are over 21M views on the video and the 505k retweets does not show actual organic support for that number.

b) Twitturly shows only 3 thousand retweets on the YouTube URL itself

c) Delicious shows only 447 bookmarks of the video itself


d) Reddit only shows 673 thumbs up for the video itself

e) Technorati shows only 277 blog mentions of the video itself — this could be undercounting if blogs used URL shorteners. But if you look at the blog intensity results (below) sorted by blogs with most authority the blogs have very little authority (i.e. influence or size of audience).

– these are real indications of interest by real people. The social intensity of the passalong for this video does not substantiate the huge number of views in 11 days.
What we are seeing now is the additional viral halo, as the momentum is sustained by large media outlets reporting on the story — even Google Blog blogged about it (boasting about the success of YouTube advertising in driving revenues). Of course TechCrunch is right that viral videos can be monetized: http://www.techcrunch.com/2009/07/30/youtube-viral-wedding-videos-are-great-for-advertising/ )
3. Twitter shows nothing in the top “trending topics” related to this video – indicating few people are actually tweeting about it — if this video is SO viral (13M views in 11 days) then it has GOT to show up on a scan of social intensity. (see screen capture below)
July 31 (Friday) August 2 (Sunday)


4. The original video was posted July 19, 2009. The people from the video appeared on NBC’s Today Show and danced around Rockerfeller Center on July 25th (6 calendar days after posting). Today Show staff may be great at spotting news, but to get all the wedding party from the wedding to re-enact the dance on the Today Show in 6 calendar days — too good to be true? Hmm…

5. Out of all the wedding videos on YouTube, how did Chris Brown detect this particular one that used his song. @glenngabe noted that there are song detection mechanisms - ContentID - which detect the pattern of the copyrighted song and report that to the rights owners. We know there are hundreds, if not thousaands, or really funny wedding home videos — America’s Funniest Videos has been running for years and years on TV showing funny wedding blooper videos that people submitted to them.
6. ALL TEN of the top viral videos on AdAge’s Viral Video Chart took around 3 – 6 months to achieve full viral effect — not 6 days. See all 10 videos’ stats, as reported by YouTube at the following link. This video has not shown up at all on the list of Adage viral videos.
AdAge Top Viral Videos all take 3 – 6 months to reach full viral effect
7. From @RedW0rm – YouTube Declares Wedding Video a Financial Success – http://bit.ly/9ZUtu
8. also check the velocity of this http://twitter.com/#search?q=jkwedding or this http://twitter.com/#search?q=jkweddingdance notice the tweets are not seconds apart but hours apart. Something that achieved 13M views in the 11 days since posting would show far higher velocity or twitter intensity.
9. For a top-trending topic on twitter, there is usually correspondingly high search volume that is detectable. At first glance, terms related to this viral video like “jkwedding” or “jk wedding dance” all seem to spike. But if you put it against even “Corazon Aquino” (one of the top trending topics NOW on Twitter) those JK wedding search volumes are dwarfed. (see chart below).

10. Google only reports 366 links to the video and most of them are not even important websites (see Alexa blue bar)

11. The video itself has no honors and no stats (yet); YouTube stats are conveniently turned off. Other videos have their stats graphs publicly available.

12. see the fine print in the YouTube description — For more information or to make a donation towards violence prevention please visit our website: http://www.jkweddingdance.com/ – why would a normal wedding video ask people to make a donation towards violence prevention? (see screen capture below), the WHOIS record shows the domain jkweddingdance.com was created 29-Jul-09 — today is 31-Jul-09
Updated: This was circumstantial evidence. A source confirmed that Jill is studying patterns of violence propagation for her PhD. Their choice of charity was their own choice. And the site was set up to help that cause.



Conclusion? The video itself is real, made by those nice people in the wedding. They may not even realize why or how their wedding video went viral (and the tens of thousands of other wedding videos on YouTube did not). On the Today Show, “The couple told Lauer they were surprised at the video’s popularity” (also see NY Daily News article – http://bit.ly/OA3iG )
Related articles:
ReadWriteWeb – Build Profit Not DMCA Suits
WSJ – YouTube Declares Wedding Video a Financial Success
PSFK – Co-opting Viral Hits to Sell More Music
TechCrunch – YouTube: Viral Wedding Videos Are Great For Advertising
Huffington Post – Viral Wedding on YouTube Drives Buyers to Chris Brown Music
Tags: 1 million, 1a, adage, adage viral video, adage viral video chart, Alexa, All, America, americas funniest videos, Anyone, article, Ashton, Ashton Kutcher, August, august 1, Augustine, authority, Benjamin Peterson, bit, blog, botto, bottom, Cadbury, calendar, calendar days, camera microphone, capture, case, Center, centeron, chart, Chris, Chris Brown, chris brown forever, chris brown song in wedding video, chris brown's, chris brown's handlers, chris brown\s reaction to wedding dance video, colleagues, com, contentID, Corazon Aquino, Coronado, count, Courtyard, Dance, dancing, day, Delicious, description, detection mechanism, detection mechanisms, Digg, digging, digital forensic evidence, digital forensics, digital science, domain, domestic violence, donation, down the aisle, effect, ELEVEN, end domestic violence, ESENER, Eyebrows, filet o fish, financial success, fine, forensics, Fou, friday, full viral, funny wedding entrance, funny wedding entrance video, funny wedding video, funny wedding video with chris brown song, funny wedding viral video, google, GOT, halo, Hamilton, hit, hmm, Hotel, how to make a viral video, http://www.jkwedding.com/, indication, information, intensity, interest, issue, jill peterson, jive, jk wedding, jk wedding dance, jk wedding entrance, jk Wedding Entrance Dance, jk wedding entrance dance video, JK Wedding Video, jkwedding ballet, jkwedding dance, jkwedding entrance, jkwedding jk, jkwedding video, jkwedding.com, jkweddingdance, Jul, July, kevin heinz, link, loudness, ly, Marriott, marriott courtyard hotel, marriott hotel, NBC, news, nothing, notice, Numa Numa Guy, numa numa guy geico, number, numbers don, party, peak, peope, plants, point, post, pr agencies, pr campaign, PR stunts fake, prevention, print, profits, promotional activities, proof, proof points, reaction, ReadWriteWeb, record, Reddit, registrant, Related, Rockerfeller, Samsung, screen, screen capture, search, sensation, Sheep, shot, show, slashdot, social intensity, social venues, something, Song, song in funny wedding entrance, sony, sony bmg, sony pr, sony pr efforts, sony pr team, sony social marketing, sound, sound quality, staff, street, success, support, T-Mobile, t-mobile dance, TEN, tesener, TheKHeinz, THIRTEEN, thru, tinny sound, tipping point, today, today show, top, Tugce, tweet, TWELVE, twitt(url)y, twitter, twitter intensity, twitter pass-along, uploads, URL, user, user accounts, velocity, video, video 3, Videos, view, violence, violence prevention, vir, Viral, viral effect is manufactured, viral halo, viral profits, viral video, viral video chart, viral videos, visit, was jk wedding video real?, website, wedding, wedding dance, Wedding Entrance Dance, wedding entrance video, wedding party, WHOIS, whois record, Work, YouTube
About Me
http://twitter.com/acfou
Send Tips: tips@go-digital.net
Digital Strategy Consulting
Dr. Augustine Fou Bio
Tags
Popular Posts
- HP Mini 311 Nvidia ION Netbook Hackintosh'ed
- Facebook advertising metrics and benchmarks
- When NOT to use Groupon (as an advertiser)
- How-To View Gmail for iPad on Your Regular Computer - Chrome and Safari
- social media benchmarks
- What is Web 3.0? Characteristics of Web 3.0
- Facebook's Security Check Asks Users to Identify Photos of Friends' Dogs, Gummi Bears
- Vapor4 May Be the First Bumper Worthy of the iPhone 4
- Two Social Success Stories - Groupon and FourSquare
Recent Posts
- 1535
- ‘we are prioritizing our Android platform’
- 1531
- 1529
- 1527
- HP Labs teams up with Hynix to manufacture memristors, plans assault on flash memory in 2013
- Amazon planning subscription video service to challenge Netflix and Hulu?
- It’s Time To Make Standardized Ratings For Gadgets
- Arcade Fire and Google Pushing HTML5 Together
- New ARM architecture (likely Eagle) better suited for OS virtualization
Recent Articles by Dr. Augustine Fou
- Augustine Fou | ClickZ
- ClickZ Welcomes Augustine Fou | ClickZ
- The ROI for Social Media Is Zero | ClickZ
- A New Definition of 'Digital' | ClickZ
- Social Commerce: In Friends We Trust | ClickZ
- 10 Commandments of Modern Marketing | ClickZ
- Digital is the DNA of All Advertising | ClickZ
- Experiential Marketing | ClickZ
- Social Intensity: A New Measure for Campaign Success? | ClickZ
- Beyond Targeting in the Age of the Modern Consumer | ClickZ
Pages
Archives
- September 2010 (7)
- August 2010 (101)
- July 2010 (61)
- June 2010 (28)
- May 2010 (28)
- April 2010 (26)
- March 2010 (33)
- February 2010 (21)
- January 2010 (12)
- December 2009 (4)
- November 2009 (2)
- October 2009 (14)
- September 2009 (6)
- August 2009 (19)
- July 2009 (34)
- June 2009 (11)
- May 2009 (4)
- April 2009 (6)
- March 2009 (13)
- February 2009 (32)
- January 2009 (25)
- December 2008 (1)
- October 2008 (1)
- November 2007 (1)
