<?xml version="1.0" encoding="utf-8" ?>

<rss version="2.0" 
   xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
   xmlns:admin="http://webns.net/mvcb/"
   xmlns:dc="http://purl.org/dc/elements/1.1/"
   xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
   xmlns:wfw="http://wellformedweb.org/CommentAPI/"
   xmlns:content="http://purl.org/rss/1.0/modules/content/"
   >
<channel>
    
    <title>JonDonym News Center - Speaker's Corner</title>
    <link>https://anonymous-proxy-servers.net/blog/</link>
    <description>Private and secure web surfing</description>
    <dc:language>en</dc:language>
    <generator>Serendipity 1.7 - http://www.s9y.org/</generator>
    
    

<item>
    <title>PRISM Brothers</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/385-PRISM-Brothers.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/385-PRISM-Brothers.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=385</wfw:comment>

    <slash:comments>2</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=385</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;The Guardian and The Washington Post recently published slides about the PRISM project of the US government’s National Security Agency (NSA). The agency is engaged in mass surveillance of users around the world. I assume, the topic is well known to readers of our blog. International protests against PRISM are mostly focusing on US spying by NSA and FBI only. But other countries have projects like PRISM too.&lt;/p&gt;

&lt;p&gt;The NSA counterpart in  &lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;Canada&lt;/span&gt; is the CSEC (Communications Security Establishment Canada). Like NSA the CSEC has far-reaching national security powers &lt;a href=&quot;http://www.thestar.com/news/canada/2013/06/10/tories_deny_canadian_spy_agencies_are_targeting_canadians.html&quot;&gt;to monitor and map electronic communication signals around the globe&lt;/a&gt;. Defense Minister Peter MacKay spoke about the spying activities only: &lt;em&gt;&amp;quot;We don’t target Canadians, okay.&amp;quot;&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;The &lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;British&lt;/span&gt; counterpart of NSA is called GCHQ (Government Communications Headquarters). It operates in partnership with NSA, CSEC and other spying agencies, uses an own worldwide nework of monitoring station and  is part of ECHELON.&lt;/p&gt;

&lt;p&gt;The DSD (Defence Signals Directorate, &lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;Australia&lt;/span&gt;) and GCSB (Government Communications Security Bureau,  &lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;New Zealand&lt;/span&gt;) are cooperating with NSA, CSEC and GCHQ too (&lt;a href=&quot;https://de.wikipedia.org/wiki/UKUSA&quot;&gt;UKUSA Agreement&lt;/a&gt;). Both are ECHELON partners with own monitoring station. The cooperation includes information sharing. According to Fairfax Media&#039;s sources, intelligence agencies in Australia have been &lt;a href=&quot;http://www.theage.com.au/it-pro/security-it/australia-gets-deluge-of-us-secret-data-prompting-a-new-data-facility-20130612-2o4kf.html&quot;&gt;receiving a high volume of valuable data from NSA&lt;/a&gt;, with some even coming from the PRISM program itself.&lt;/p&gt;

&lt;p&gt;The NSA counterpart in &lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;Sweden&lt;/span&gt; is called FRA (Försvarets radioanstalt). In June 2008 it got the power &lt;a href=&quot;http://www.thelocal.se/12370/20080611/&quot;&gt;to warrantlessly wiretap all telephone and Internet traffic&lt;/a&gt; that crosses Sweden&#039;s borders. Swedish people are &lt;a href=&quot;http://www.dn.se/nyheter/politik/fra-har-samlat-data-i-tio-ar/&quot;&gt;target of FRA espionage&lt;/a&gt; too.&lt;/p&gt;

&lt;p&gt;&lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;France&lt;/span&gt; has an own spying network called &lt;a href=&quot;https://en.wikipedia.org/wiki/Frenchelon&quot;&gt;Frenchelon&lt;/a&gt;. Like the US counterpart &lt;em&gt;Echelon&lt;/em&gt; it is not only used for counter terrorism but economic espionage and spying on political activists too.&lt;/p&gt;

&lt;p&gt;The secret &lt;a href=&quot;https://en.wikipedia.org/wiki/Onyx_%28interception_system%29&quot;&gt;Onyx interception system&lt;/a&gt; is the &lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;Swiss&lt;/span&gt; intelligence gathering system for espionage and maintained by the NDB (Federal Intelligence Service). It is used to monitor  telephone, fax and Internet communications worldwide. In 2006 a secret document sent by the Egyptian department of Foreign Affairs to the Egyptian Embassy in London and intercepted by Onyx was public.&lt;/p&gt;

&lt;p&gt;The NSA counterpart in &lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;Russia&lt;/span&gt; is the SSSI (formerly FAPSI). It was setup in 2003 by reorganization of intelligence agencies in Russia and has unlimited power to  warrantlessly wiretap all internet communications. The FBI counterpart in Russia is the FSB. The interception system SORM offers unlimited, direct access to the servers of almost all Russian ISPs for the FSB (&lt;a href=&quot;http://www.wired.com/dangerroom/2012/12/russias-hand/all/&quot;&gt;Wired&lt;/a&gt;). Intercepted e-mails and phone calls were published by Russian media in 2011 to discredit opposition member. The largest social network in Russia is &lt;em&gt;Vkontakte.ru&lt;/em&gt; with 200 million members. &lt;a href=&quot;https://www.datenschutz.de/news/alle/detail/?nid=5823&quot;&gt;It cooperates with FSB&lt;/a&gt; and sent data of opposition member.&lt;/p&gt;

&lt;p&gt;In &lt;span style=&quot;font-weight: bold; color: #333;&quot;&gt;Germany&lt;/span&gt; warrantlessly wiretapping and espionage is done by BND (Federal Intelligence Service). It is scanning 20% of all emails routed over German AS for 16,400 keywords. In 2010 the keyword scanners sent copies of 37,000,000 email to the BND for more detailed analysis. In 2008 W. Schäuble (formerly minister of the interior) recommended the &lt;a href=&quot;http://heise.de/-208319&quot;&gt;setup of a spying agency like NSA or like the British GCHQ&lt;/a&gt; for Germany. The project was cancelled in 2010 but the recommendation was &lt;a href=&quot;http://www.golem.de/news/prism-polizeigewerkschaft-sieht-us-totalueberwachung-als-vorbild-1306-99694.html&quot;&gt;renewed by R. Wendt last days&lt;/a&gt;. &lt;/p&gt;

&lt;p&gt;Minister of the interior Friedrich approved, that German intelligence services gets valuable data from NSA but he didn&#039;t know anything about a program called PRISM.&lt;/p&gt;

&lt;h5 style=&quot;margin-bottom: 10px;&quot;&gt;Stand up! It&#039;s time NOW!&lt;/h5&gt;

&lt;ul&gt;
&lt;li style=&quot;list-style: none;&quot;&gt;&lt;a href=&quot;https://optin.stopwatching.us/&quot;&gt;StopWatching.Us&lt;/a&gt; (Mozilla Foundation)&lt;/li&gt;
&lt;li style=&quot;list-style: none;&quot;&gt;&lt;a href=&quot;http://2013.euhackathon.eu/&quot;&gt;EUhackathon 2013&lt;/a&gt; (visualization of government surveillance)&lt;/li&gt;
&lt;li style=&quot;list-style: none;&quot;&gt;&lt;a href=&quot;http://www.respect-my-privacy.eu&quot;&gt;Respect my Privacy&lt;/a&gt; (campaign for European Data Protection Regulation)&lt;/li&gt;
&lt;li style=&quot;list-style: none;&quot;&gt;&lt;a href=&quot;https://www.accessnow.org/page/s/denials-are-not-enough&quot;&gt;Denials Are Not Enough&lt;/a&gt; (ACCESS NOW)&lt;/li&gt;
&lt;li style=&quot;list-style: none;&quot;&gt;... and others&lt;/li&gt;
&lt;/ul&gt; 
    </content:encoded>

    <pubDate>Wed, 12 Jun 2013 21:44:04 +0200</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/385-guid.html</guid>
    
</item>
<item>
    <title>EUhackathon 2013</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/383-EUhackathon-2013.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/383-EUhackathon-2013.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=383</wfw:comment>

    <slash:comments>2</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=383</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;The third edition of the &lt;a href=&quot;http://2013.euhackathon.eu/&quot;&gt;EUhackathon&lt;/a&gt; takes place on 24-25 September 2013 in Brussels, Belgium.&lt;/p&gt;
&lt;blockquote&gt;&lt;p&gt;The topic: What does government surveillance around the world look like?&lt;/p&gt;
&lt;p&gt;The challenge: To ensure that officials are acting in the public interest, citizens should know when and why governments demand access to their information. Using data sets from network analysis, corporate Transparency Reports and freedom of information (FOI) requests, create apps and visualizations that shed light on the state of government surveillance in their country and exercise their democratic rights to due process and greater transparency.&lt;/p&gt;&lt;/blockquote&gt;
&lt;div style=&quot;text-align: center;&quot;&gt; &lt;a href=&quot;http://2013.euhackathon.eu/&quot;&gt;&lt;img src=&quot;/blogimages/EUHackaton-2013.png&quot; alt=&quot;EUhackathon 2013&quot; height=&quot;63&quot; width=&quot;590&quot; /&gt;&lt;/a&gt;&lt;/div&gt;

&lt;p&gt;A very nice surveillance simulation was created by &lt;em&gt;re:log&lt;/em&gt;. During the bloggers conference &lt;em&gt;re:publica&lt;/em&gt; this year in Germany all smartphones using the free W-LAN of the conference were tracked. The collected datasets were published without identifiable information and &lt;em&gt;re:log&lt;/em&gt; creates a &lt;a href=&quot;http://apps.opendatacity.de/relog/&quot;&gt;simulation of movements of participants&lt;/a&gt; (Javascript required). Click on a data point and follow the movements of a person.&lt;/p&gt;
&lt;div style=&quot;text-align: center;&quot;&gt;&lt;a href=&quot;http://apps.opendatacity.de/relog/&quot;&gt;&lt;img src=&quot;/blogimages/re-log.png&quot; alt=&quot;Besucherstromanalyse&quot; height=&quot;342&quot; width=&quot;590&quot; /&gt;&lt;/a&gt;&lt;/div&gt;

&lt;p&gt;Smartphones are tracking devices. You may replace the background in mind by a city map and you may imagine, how participants of a demonstration may be tracked or how the FBI is mapping muslim communities without any suspicion of a crime being committed (&lt;a href=&quot;http://www.wired.com/dangerroom/2011/10/fbi-geomaps-muslims/&quot;&gt;Danger Room&lt;/a&gt;).&lt;/p&gt;


&lt;h5&gt;&lt;em&gt;&amp;quot;Going Dark&amp;quot;&lt;/em&gt;&lt;/h5&gt;
&lt;p&gt;The FBI would gain undetected real-time access to suspects’ Skype calls, Facebook chats, and other online communications ­and in &amp;quot;clear text&amp;quot;. The project is called &lt;em&gt;&amp;quot;Going Dark&amp;quot;&lt;/em&gt; and started a few years ago. &lt;a href=&quot;https://anonymous-proxy-servers.net/blog/index.php?/archives/313-Backdoors-Federal.html&quot;&gt;Susan Landau&lt;/a&gt;, security expert at Harvard University, wrote in 2011 about the wishes of FBI to get backdoors into the servers of Google, Facebook, Yahoo... Actually &lt;a href=&quot;https://www.eff.org/deeplinks/2013/05/caleatwo&quot; style=&quot;font-weight: bold;&quot;&gt;CALEA II&lt;/a&gt; is the latest proposal of FBI  to extent the surveillance capabilities of phone calls (since 1994) and VoIP (since 2004) to all other online communications.&lt;/p&gt;

&lt;blockquote&gt;The new proposal reportedly allows the FBI to listen in on any conversation online, regardless of the technology used, by mandating engineers build &amp;quot;backdoors&amp;quot; into communications software.&lt;/blockquote&gt;

&lt;p&gt;By &lt;a href=&quot;http://www.washingtonpost.com/investigations/us-intelligence-mining-data-from-nine-us-internet-companies-in-broad-secret-program/2013/06/06/3a0c0da8-cebf-11e2-8845-d970ccb04497_story.html&quot;&gt;publications of Washington Post&lt;/a&gt; and &lt;em&gt;The Guardian&lt;/em&gt; about &lt;em&gt;PRISM&lt;/em&gt; the &lt;em&gt;CALEA II&lt;/em&gt; proposal looks like a small extent of a long running surveillance of foreign targets to include US citizens. The warrant-less surveillance of foreign targets is legal by the &lt;a href=&quot;https://en.wikipedia.org/wiki/Foreign_Intelligence_Surveillance_Act&quot;&gt;Foreign Intelligence Surveillance Act&lt;/a&gt; (FISA).&lt;/p&gt;

&lt;blockquote&gt;The National Security Agency and the FBI are tapping directly into the central servers of nine leading U.S. Internet companies, extracting audio and video chats, photographs, e-mails, documents, and connection logs that enable analysts to track foreign targets.&lt;/blockquote&gt;

&lt;p&gt;All named internet companies deny directly access of NSA and FBI into own servers. First statements of &lt;a href=&quot;http://newsroom.fb.com/Fact-Check&quot;&gt;Facebook&lt;/a&gt;, &lt;a href=&quot;http://online.wsj.com/article/SB10001424127887324798904578529912280347482.html?mod=djemalertTECH&quot;&gt;Apple&lt;/a&gt; and &lt;a href=&quot;&quot;&gt;Microsoft&lt;/a&gt; are online. But surveillance of private communication is not really new and does not require directly access into the central servers of Internet companies:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;Twitters offer all information by a commercial API interface. For $360,000 per year you may get access to all data sets of users. The DHS uses this API interface and is sharing information with other agencies.&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;Google will send a copy of each e-mail and each search request to the new NSA data center in Fort Bluffdale. This was public by the &lt;a href=&quot;http://www.wired.com/threatlevel/2012/03/ff_nsadatacenter/all/1&quot;&gt;whistleblower William Binney.&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;In the EC study &lt;a href=&quot;http://www.europarl.europa.eu/committees/en/studiesdownload.html?languageDocument=EN&amp;file=79050&quot;&gt;Fighting cyber crime and protecting privacy in the cloud&lt;/a&gt; the authors are warning about warrant-less spying of US authorities. All cloud and email providers with server in USA may be affected.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt; 
    </content:encoded>

    <pubDate>Fri, 07 Jun 2013 15:39:22 +0200</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/383-guid.html</guid>
    
</item>
<item>
    <title>Stelle als JonDoBrowser-Entwickler</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/381-Stelle-als-JonDoBrowser-Entwickler.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/381-Stelle-als-JonDoBrowser-Entwickler.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=381</wfw:comment>

    <slash:comments>3</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=381</wfw:commentRss>
    

    <author>nospam@example.com (JonDos)</author>
    <content:encoded>
    &lt;p&gt;Liebe Leser des Blogs,&lt;/p&gt;

&lt;p&gt;aktuell suchen wir jemanden, der uns bei der Entwicklung des
JonDoBrowsers unterstützt. Dabei könnte diese Aufgabe im Rahmen von
Telearbeit (von zu Hause aus) als Teilzeit-Stelle, nebenberuflich, oder
auch in selbständiger Arbeit auf Projekt- oder Stundenbasis wahrgenommen
werden. Wir freuen uns auf Bewerbungen!&lt;/p&gt;

&lt;p&gt;Bewerbungen sind bitte per E-Mail zu richten an:	&lt;em&gt;rolf.wendolsky_(at)_jondos.de&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;Voraussetzungen:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Erfahrung mit JavaScript-Programmierung&lt;/li&gt;
&lt;li&gt;Kenntnisse über online-Tracking-Techniken und Online-Anonymität&lt;/li&gt;
&lt;li&gt;wünschenswert: Kenntnisse in C++&lt;/li&gt;
&lt;li&gt;optional: Erfahrung in der Entwicklung von Firefox-Add-Ons&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Am Besten liegt der Bewerbung auch ein Programmierbeispiel bei, und
kurze Angaben dazu, was man bereits im Software-Bereich gemacht hat.
Umfangreiche Zeugnisunterlagen sind uns dabei weniger wichtig.&lt;/p&gt; 
    </content:encoded>

    <pubDate>Mon, 03 Jun 2013 17:22:47 +0200</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/381-guid.html</guid>
    
</item>
<item>
    <title>Liberty Reserve closed</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/379-Liberty-Reserve-closed.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/379-Liberty-Reserve-closed.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=379</wfw:comment>

    <slash:comments>2</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=379</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;&lt;em&gt;Liberty Reserve&lt;/em&gt; was closed a few days ago. It was one of the most frequently used Internet payment processors. The DNS record of the domain points to &lt;em&gt;Shadowserver.org&lt;/em&gt;, an organization that fights global computer crime in cooperation with US authorities. &lt;a href=&quot;http://www.ticotimes.net/More-news/News-Briefs/Digital-currency-site-Liberty-Reserve-shut-down-after-arrest-of-Costa-Rican-owner-in-Spain-_Saturday-May-25-2013&quot;&gt;The Tico Times&lt;/a&gt; reported that the money laundering investigation against the founder was a joint operation between authorities in the US and Costa Rica.&lt;/p&gt;

&lt;p&gt;We are not happy about the closing and we are not able to accept payments with &lt;em&gt;Liberty Reserve&lt;/em&gt; any more. The service was offering anonymous payments between customers and merchants,  it doesn&#039;t apply the US embargo restrictions against 60 countries and was world wide useable. &lt;em&gt;Liberty Reserve&lt;/em&gt; was listed as a member of the &lt;a href=&quot;http://gdcaonline.org/&quot;&gt;Global Digital Currency association&lt;/a&gt; (GDCA), a trade association of online currency operators, exchangers, merchants and users with a declared goal to help with fighting fraud and other illegal activities. In our point of view &lt;em&gt;Liberty Reserve&lt;/em&gt; was a trusted payment processor.&lt;/p&gt;

&lt;p&gt;The e-gold payment sites &lt;em&gt;milenia-finance.com, asiangold.com, exchangezone.com, moneycentralmarket.com&lt;/em&gt; and &lt;em&gt;swiftexchanger.com&lt;/em&gt; are offline too (closed by US authorities) and the DNS records point to &lt;em&gt;Shadowserver.org&lt;/em&gt;. The payment processor &lt;a href=&quot;http://www.pecunix.com/&quot;&gt;Pecunix&lt;/a&gt; was down only for short time, it was target of DDoS attacks. The servers of &lt;em&gt;Pecunix&lt;/em&gt; were moved to another, secure location and the service is online again. After closing of &lt;em&gt;Liberty Reserve&lt;/em&gt; the digital payment processor &lt;em&gt;PerfectMoney.com&lt;/em&gt; announced it was no longer accepting U.S. citizens as customers to avoid trouble with US agencies.&lt;/p&gt;
 
    </content:encoded>

    <pubDate>Tue, 28 May 2013 15:20:59 +0200</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/379-guid.html</guid>
    
</item>
<item>
    <title>First-Party Cookies</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/377-First-Party-Cookies.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/377-First-Party-Cookies.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=377</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=377</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;The browser Mozilla Firefox version 22.0 will block third-party cookies by default. Content from a third-party origin will get only permission to set cookies if its origin already has at least one cookie set. (see: &lt;a href=&quot;http://webpolicy.org/2013/02/22/the-new-firefox-cookie-policy/&quot;&gt;The New Firefox Cookie Policy&lt;/A&gt;). This policy will potentially block cookies from advertising networks that are used to track the browsing habits of users. Google, the main sponsor of Mozilla, is not affected by this policy because Firefox gets a Google cookie at first start.&lt;/p&gt;

&lt;p&gt;Is blocking of third-party cookies useful to avoid the tracking of browsing habits of users by third parties? Let&#039;s make a small test. We installed a fresh Firefox and disabled third-party cookies in the configuration. This configuration setting is a little bit more restrictive than the new Firefox cookie policy, but suitable for our demonstration. Afterwards we opened 3 websites and took a look at stored cookies.&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;&lt;h5&gt;&lt;a href=&quot;http://www.zeit.de&quot;&gt;Zeit.de&lt;/a&gt; (online portal of a German newspaper)&lt;/h5&gt;
&lt;div style=&quot;text-align: center;&quot;&gt;&lt;img src=&quot;/blogimages/zeit_en.png&quot; alt=&quot;cookies set by Zeit.de&quot;  vspace=&quot;10&quot;  /&gt;&lt;/div&gt;
&lt;p&gt;All cookies were classified as first-party content but some of them are used by third-party servers.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;The cookie &lt;em&gt;&amp;quot;rsi_segs&amp;quot;&lt;/em&gt; is used by www.audiencescience.com for behavioral based advertising.&lt;/li&gt;
&lt;li&gt;&lt;em&gt;&amp;quot;wt3_eid&amp;quot;&lt;/em&gt; and &lt;em&gt;&amp;quot;wt3_sid&amp;quot;&lt;/em&gt; are used by WebTrekk.&lt;/li&gt;
&lt;li&gt;The cookies &lt;em&gt;&amp;quot;__umta&amp;quot;&lt;/em&gt; ... &lt;em&gt;&amp;quot;__umtz&amp;quot;&lt;/em&gt; are used by Google Analytics.&lt;/li&gt;
&lt;li&gt;The cookie &lt;em&gt;&amp;quot;_chartbeat2&amp;quot;&lt;/em&gt; is used by www.chartbeat.com for real-time analysis of website vistors.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;The cookies are generated and send to the tracking service by Javascript. Because these cookies are used to transfer information to third parties it is a violation of user preferences.&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;&lt;h5&gt;&lt;a href=&quot;http://www.zalando.de&quot;&gt;Zalando.de&lt;/a&gt; (commercial webshop)&lt;/h5&gt;
&lt;div style=&quot;text-align: center;&quot;&gt;&lt;img src=&quot;/blogimages/zalando_en.png&quot; alt=&quot;cookies set by Zalando.de&quot;  vspace=&quot;10&quot;  /&gt;&lt;/div&gt;
&lt;p&gt;Zalando.de uses Javascript generated cookies too. But additional we found two cookies for the sub-domain &lt;em&gt;&amp;quot;track.zalando.de&amp;quot;&lt;/em&gt;. This domain is a DNS alias for &lt;em&gt;&amp;quot;zalando-de01.webtrekk.net&amp;quot;&lt;/em&gt;, an external server not related to Zalando.de. By using the DNS alias for loading a 1x1 pixel transparent image (webbug), it became first-party status and was able to set the cookies &lt;em&gt;&amp;quot;wteid_xxxxx&amp;quot;&lt;/em&gt; and &lt;em&gt;&amp;quot;wtsid_xxxxx&amp;quot;&lt;/em&gt;.&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;&lt;h5&gt;&lt;a href=&quot;http://www.heise.de&quot;&gt;Heise.de&lt;/a&gt; (German IT news portal)&lt;/h5&gt;
&lt;div style=&quot;text-align: center;&quot;&gt;&lt;img src=&quot;/blogimages/heise_en.png&quot; alt=&quot;cookies set by Heise.de&quot; vspace=&quot;10&quot;  /&gt;&lt;/div&gt;
&lt;p&gt;Heise.de is using WebTrekk too. Both methods of Zeit.de (1.) and Zalando.de (2.) are combined:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;If Javascript is active,  the cookies &lt;em&gt;&amp;quot;wt3_eid&amp;quot;&lt;/em&gt; und &lt;em&gt;&amp;quot;wt3_sid&amp;quot;&lt;/em&gt; are created with Javascript.&lt;/li&gt;
&lt;li&gt;If Javascript was disabled, a 1x1 pixel webbug will be loaded from the sub-domain  &lt;em&gt;&amp;quot;prophet.heise.de&amp;quot;&lt;/em&gt;. This sub-domain is a DNS alias for &lt;em&gt;&amp;quot;heise02.webtrekk.net&amp;quot;&lt;/em&gt; and is used to get first-party status for the webbug. The webbug sets the cookies &lt;em&gt;&amp;quot;wteid_xxxxx&amp;quot;&lt;/em&gt; and &lt;em&gt;&amp;quot;wtsid_xxxxx&amp;quot;&lt;/em&gt; for tracking.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ol&gt;
&lt;h5&gt;Conclusion&lt;/h5&gt;
&lt;p&gt;Tracking services are using sophisticated methods to get first-party status for their tracking elements to avoid blocking. The tracking services above are only small examples. Yahoo! Web Analytics&lt;/a&gt; sets a one-year, first-party, persistent cookie that includes a unique visitor ID number and is able to &lt;a href=&quot;http://help.yahoo.com/l/us/yahoo/ywa/documentation/install_guide/ig_get_started.html&quot;&gt;track 99,9% of website visitors&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;It is not possible, to use first-party cookies for cross-domain tracking. These cookies are only valid and accessible within the context of one domain. But by using additional tracking features, it is possible to link tracking data of multiple domains together. WebTrekk collects Geo-location by IP address, screen size and color depth of your monitor, inner size of browser window, your preferred language, browser name and version, operating system and version, settings of Java (ON/OFF), Javascript (ON/OFF) and cookies (ON/OFF). It is possible to calculate a high quality &lt;a href=&quot;https://anonymous-proxy-servers.net/en/help/wwwprivacy_technik.html#header&quot;&gt;browser fingerprint&lt;/a&gt; with this data. The browser fingerprint will be unique for most user and it may be possible to use it for linking tracking data over multiple domains.&lt;/p&gt;

&lt;p&gt;To avoid  tracking of your browsing habits by third parties we recommend the blocking of all cookies and Javascript. Enable session cookies or Javascript only for trusted websites if required to get it working as expected. Delete all cookies after leaving the website or at least by closing your browser. JonDoFox and JonDoBrowser are configured for this behavior. During your surf session you can delete cookies with click on the menu item &lt;em&gt;&amp;quot;Tools - Clear Recent History&amp;quot;&lt;/em&gt; or you may hit CTRL-ALT-DEL.&lt;/p&gt; 
    </content:encoded>

    <pubDate>Thu, 09 May 2013 17:24:40 +0200</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/377-guid.html</guid>
    
</item>
<item>
    <title>JonDoBrowser 0.6 - Status Report</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/371-JonDoBrowser-0.6-Status-Report.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/371-JonDoBrowser-0.6-Status-Report.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=371</wfw:comment>

    <slash:comments>4</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=371</wfw:commentRss>
    

    <author>nospam@example.com (G. Koppen)</author>
    <content:encoded>
    &lt;p&gt;In the future the JonDoBrowser shall replace the JonDoFox profile in order to
allow an even better protection against tracking on the Web. As the
development is already on its way since a while we would like to deliver a
short status report every six weeks from now on. That would hopefully give
users an idea about where we are now and what still remains to do:&lt;/p&gt;

&lt;p&gt;The top 5 things we did during the last six weeks:&lt;/p&gt;
&lt;p&gt;1) Worked on the update mechanism (full updates are working on Linux now)&lt;br /&gt;
2) We disabled SSL 3.0 by default. If there are problems, please report them!&lt;br /&gt;
3) Disabled the annoying add-on bar and moved the UnPlug icon to the toolbar.&lt;br /&gt;
4) Reported possible problems for the protection against tracking with HTTP
authentication to &lt;a href=&quot;https://bugzilla.mozilla.org/show_bug.cgi?id=856978&quot;&gt;Mozilla&lt;/a&gt;.&lt;br /&gt;
5) Released JonDoBrowser 0.6&lt;/p&gt;

&lt;p&gt;Top 5 things for the coming weeks:&lt;/p&gt;
&lt;p&gt;1) Releasing JonDoBrowser 0.7 (scheduled for May 20, 2013)&lt;br /&gt;
2) Integration of partial updates into the update patch for Linux systems&lt;br /&gt;
3) Integrating a better compression algorithm for JonDoBrowser packages on
  Linux systems into the build script&lt;br /&gt;
4) Mozilla&#039;s reftests test suite shall work flawlessly with JonDoBrowser.&lt;br /&gt;
5) Removing a duplicated UnPlug in the extensions directory of the profile as
  this is probably causing issues during the first start of JonDoBrowser on
  Linux&lt;/p&gt;

&lt;p&gt;ToDo for the 1.0-Release:&lt;/p&gt;
&lt;p&gt;1) Update mechanism for Windows, Mac OS X and Linux&lt;br /&gt;
2) Integration of JonDo into the JonDoBrowser (Windows only)&lt;br /&gt;
3) Making JonDoBrowser compatible with Mozilla&#039;s test suites&lt;/p&gt; 
    </content:encoded>

    <pubDate>Tue, 16 Apr 2013 09:39:58 +0200</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/371-guid.html</guid>
    
</item>
<item>
    <title>Webtracking Trends</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/370-Webtracking-Trends.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/370-Webtracking-Trends.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=370</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=370</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;More than 80% of Internet user dislike the tracking of their online behavior. But tracking is expanding more and more. Popular Web sites are far more aggressive in their tracking practices.&lt;/p&gt;

&lt;h5&gt;More Elements on Popular Websites&lt;/h5&gt;
&lt;p&gt;The project &lt;a href=&quot;http://www.law.berkeley.edu/privacycensus.htm&quot;&gt;Web Privacy Census&lt;/a&gt; of University of California is watching the state of internet tracking and privacy over years. An increasing usage of tracking features was documented. For an example we want to show only the usage of cookies by the 100 most popular websites:&lt;/p&gt;
&lt;div align=&quot;center&quot;&gt;
&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th scope=&quot;col&quot;&gt;&lt;/th&gt;
&lt;th scope=&quot;col&quot; style=&quot;font-weight: normal; color: #333;&quot;&gt;Numbers of cookies&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;&lt;td&gt;2009&lt;/td&gt;&lt;td style=&quot;text-align: center;&quot;&gt;3.602&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2011&lt;/td&gt;&lt;td style=&quot;text-align: center;&quot;&gt;5.675&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2012&lt;/td&gt;&lt;td style=&quot;text-align: center;&quot;&gt;6.485&lt;/td&gt;&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;p&gt;The project observed statistically significant increases in the amount of usage of sophisticated HTML5 features like DOMstorage and other &lt;a href=&quot;http://samy.pl/evercookie/&quot;&gt;EverCookies&lt;/a&gt; for tracking. 38% of popular websites were using EverCookies techniques in  Oct. 2012. EverCookies are not easy to manage and remove by users like third-party cookies.&lt;/p&gt;
&lt;p&gt;Because it is easy to block third-party content with modern browser more third-party aggregators are working to hide their presence in a first-party site by serving content from what are or appear to be first party servers. This approach makes it very difficult to block tracking scripts by advertising blocker. For an example you may have a look at the easy to use &lt;a href=&quot;http://www.webtrekk.com/en/products/plug-ins-interfaces.html&quot;&gt;tracking plug-ins offered by Webtrekk&lt;/a&gt; for blogs, content management systems and shops.&lt;/p&gt;
&lt;p&gt;Some tracking services doesn&#039;t use markers like cookies or EverCookies but only browser fingerprinting for surfer recognition. The demonstration project Panopticlick featured out, that more than 80% of browser have a unique fingerprint. The recognition rate increases to 94% if Flash or Java plug-ins were enabled. (&lt;a href=&quot;https://panopticlick.eff.org/browser-uniqueness.pdf&quot;&gt;How Unique Is Your Web Browser&lt;/a&gt; PDF). Tracking services are using more sophisticated methods and achieve &lt;a href=&quot;http://www.bluecava.com/visitor-insight-campaign-measurement&quot;&gt;30% higher recognition rates than cookies based approaches&lt;/a&gt;. Other tracking services are &lt;a href=&quot;http://www.multicounter.de/features.html&quot;&gt;using browser information, screen size and other values additionally&lt;/a&gt; for user recognition.&lt;/p&gt;
&lt;p&gt;An increasing number of websites is using more than one tracking service. An example is the webshop Zalando. It uses the following tracking and advertiesment services: 36YIELD, ADSCALE, APPNEXUS, ATDMT, ATEMDA, CRITED, DEMDEX, DOUBLECLICK, FACEBOOK, METRIGO, OPENX, PUBMATIC, ADSERVER, SOCIOMANTIC, YIELDLAB und YIELDMANAGER.&lt;/p&gt;

&lt;h5&gt;Decreasing number of independent tracking companies&lt;/h5&gt;
&lt;p&gt;A number of families of domains and tracking services have been created through acquisition of many companies by some global player. The families are sharing collected data and achieve a large coverage of popular websites.&lt;/p&gt;
&lt;p&gt;The larges family is Google and associated companies. The earnings of these family are 44% of the world-wide online advertising market. During the last years Google bought the following companies:&lt;/p&gt;
&lt;div align=&quot;center&quot;&gt;
&lt;table&gt;
&lt;tr&gt;&lt;td&gt;2003&lt;/td&gt;&lt;td&gt;Applied Semantics&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2003&lt;/td&gt;&lt;td&gt;Springs&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2006&lt;/td&gt;&lt;td&gt;dMarc&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2007&lt;/td&gt;&lt;td&gt;Adscape&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2007&lt;/td&gt;&lt;td&gt;Feedburner&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2007&lt;/td&gt;&lt;td&gt;DoubleClick + falkad.net&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2009&lt;/td&gt;&lt;td&gt;Admob&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2009&lt;/td&gt;&lt;td&gt;Teracent&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2010&lt;/td&gt;&lt;td&gt;Invite Media&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2011&lt;/td&gt;&lt;td&gt;Admeld&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2012&lt;/td&gt;&lt;td&gt;Wildfire&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td&gt;2012&lt;/td&gt;&lt;td&gt;Adelphic&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
&lt;p&gt;Because of this acquisitions tracking features of the Google family are present on more and more popular websites:&lt;/p&gt;
&lt;div align=&quot;center&quot;&gt;
&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th scope=&quot;col&quot;&gt;&lt;/th&gt;
&lt;th scope=&quot;col&quot; style=&quot;font-weight: normal; color: #333;&quot;&gt;Tracking features of the Google family&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;2005&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;present on 7% of popular websites&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;2006&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;present on 16% of popular websites&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;2008&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;present on 55% of popular websites&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;2009&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;present on 80% of popular websites&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;2012&lt;/td&gt;
&lt;td style=&quot;text-align: center;&quot;&gt;present on 97% of popular websites&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;&lt;/div&gt;
&lt;p&gt;Other tracking families are the Overture network, Microsoft and the Yahoo! family, each with a portion of 3-8% of the world-wide online advertising market. The new cooperation of Facebook with BlueKai and Epsilon is the start of a new large tracking family.&lt;/p&gt;

&lt;h5&gt;Using of Real World Data&lt;/h5&gt;
&lt;p&gt;The tracking of our online behavior offers only an incomplete view on our interests. First steps are taken by Facebook to include real world data in profiling for proper online advertisements. A cooperation with Axciom and Datalogix was &lt;a href=&quot;https://www.eff.org/deeplinks/2013/02/howto-opt-out-databrokers-showing-your-targeted-advertisements-facebook&quot;&gt;announced&lt;/a&gt; in February. Both databrokers operate big databases with real wold data like creditcard payments, loyalty cards at supermarkets and product warranty cards and so on.&lt;/p&gt;
&lt;p&gt;If the information flow increased in both direction, our online activities may get more influence of our real live. A year ago &lt;a href=&quot;http://news.cnet.com/8301-1009_3-57461462-83/berkeley-laws-first-web-privacy%20-census-is-out-and-its-troubling/&quot;&gt;Sarah Downey warns&lt;/A&gt;:&lt;/p&gt;
&lt;blockquote&gt;The harms of online tracking are real and growing. This isn&#039;t about targeted advertising, like the ad industry wants everyone to believe. This is about the collection and use of your personal information in ways you can&#039;t even imagine.&lt;/blockquote&gt;
&lt;p&gt;Today our online activities may decide about getting a new job or may have an influence on assurance taxes. Personally I know 3 cases of including private online activities to check job applicants by personnel managers. In one case the result was positive. In two cases the applicants were rejected mainly (but not only) because of this data.&lt;/p&gt; 
    </content:encoded>

    <pubDate>Wed, 20 Mar 2013 13:35:22 +0100</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/370-guid.html</guid>
    
</item>
<item>
    <title>16. Europäischer Polizeikongress</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/365-16.-Europaeischer-Polizeikongress.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/365-16.-Europaeischer-Polizeikongress.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=365</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=365</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;Auf einem Polizeikongress finden die Teilnehmer ein dankbares Forum, um neue Überwachungsbefugnisse zu fordern. Zentrales Thema auf dem &lt;a href=&quot;http://www.european-police.eu/Welcome/&quot;&gt;16. Europäischen Polizei&amp;shy;kongress&lt;/a&gt; war die Wiedereinführung der Vorrats&amp;shy;daten&amp;shy;speicherung (neudeutsch: &lt;a href=&quot;http://neusprech.org/mindestspeicherdauer/&quot;&gt;Mindest&amp;shy;speicher&amp;shy;dauer&lt;/a&gt;). Heraus&amp;shy;ragende Gedanken äußerte BKA Vize&amp;shy;präsident J. Maurer: Jeder Bürger müsse eine neue Sicht auf das Internet verinnerlichen und eine Speicherung von IP-Adressen sei nicht problematisch, weil:&lt;/p&gt;

&lt;blockquote&gt;Wer im Internet ist, hat die Privatheit verlassen.&lt;/blockquote&gt;

&lt;p&gt;Diese pauschale Sichtweise würde eine Aufhebung des Post- und Fern&amp;shy;melde&amp;shy;geheimnis für E-Mails und sonstige private Kommunikation im Internet bedeuten. Das Post- und Fern&amp;shy;melde&amp;shy;geheimnis wurde nach den Erfahrungen mit der faschistischen Dikatur Mitte des letzten Jahr&amp;shy;hunderts als Grund&amp;shy;recht in allen über&amp;shy;geordneten Normen&amp;shy;katalogen verankert (UN-Menschen&amp;shy;rechts&amp;shy;konvention, EU-Grund&amp;shy;rechte&amp;shy;charta, Grund&amp;shy;gesetz), als Schutz&amp;shy;recht für Bürger gegen einen über&amp;shy;mächtigen (Polizei-) Staat. Für mich stellt sich die Frage, ob Herr Maurer die geeignete Einstellung hat, um verantwortungsvoll die Führung einer Polizei&amp;shy;behörde mit weit&amp;shy;reichenden geheim&amp;shy;dienstlichen Kompetenzen zu übernehmen.&lt;/p&gt;

&lt;p&gt;Ein weiteres Beispiel für den Geist des Kongresses war der starke Beifall für den  nordrhein-west&amp;shy;fälische Innenminister R. Jäger, als er die Haltung von Bundes&amp;shy;justiz&amp;shy;ministerin Leutheusser-Schnarren&amp;shy;berger als &lt;em&gt;&amp;quot;nah an einer Straf&amp;shy;vereitelung&amp;quot;&lt;/em&gt; bezeichnete. Die Bundes&amp;shy;justiz&amp;shy;ministerin hält eine Mindest&amp;shy;speicher&amp;shy;dauer von sieben Tagen für IP-Adressen und Quick Freeze für Verbindungs&amp;shy;daten für ausreichend (siehe &lt;a href=&quot;http://www.bmj.bund.de/files/35b5b1519d82fc1e2c240e843626ce40/4806/Eckpunkte%20Datensicherung.pdf&quot;&gt;Eckpunkte&amp;shy;papier des BJM zur VDS&lt;/a&gt;, PDF). Außerdem ist für Frau Leutheusser-Schnarren&amp;shy;berger &lt;a href=&quot;http://www.bmj.de/SharedDocs/Reden/DE/2012/20120419_7_For_Net_Symposium.html?nn=1477162&quot;&gt;Anonymität ein Grund&amp;shy;prinzip des freien Internets&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;Medial begleitet wurde der Polizeikongress  mit Horror&amp;shy;geschichten über &lt;a href=&quot;http://www.noz.de/deutschland-und-welt/politik/69650335/polizeigewerkschaft-fordert-2000-cyber-cops&quot;&gt;drohende Terror&amp;shy;anschläge per E-Mail&lt;/a&gt; oder &lt;a href=&quot;http://www.faz.net/aktuell/politik/inland/ein-mordfall-und-mobilfunkdaten-eine-nummer-zu-viel-12029779.html&quot;&gt;die schlimmen Folgen fehlender Vorrats&amp;shy;daten&amp;shy;speicherung für die Aufklärung von Mord&amp;shy;fällen&lt;/a&gt; (FAZ). Der Bundes&amp;shy;daten&amp;shy;schutz&amp;shy;beauftragte bezeichnete den FAZ-Artikel als &lt;a href=&quot;https://www.bfdi.bund.de/bfdi_forum/showthread.php?t=3977&quot;&gt;unredlich&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;Kein Sprecher auf dem Polizeikongress konnte neue Fakten oder Studien präsentieren, welche die Notwendigkeit der Vorrats&amp;shy;daten&amp;shy;speicherung wissenschaftlich belegen. Zur Erinnerung:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Das &lt;a href=&quot;https://anonymous-proxy-servers.net/paper/MPI_VDS_Studie.pdf&quot;&gt;wissenschaftlichen Gutachten&lt;/a&gt; des &lt;em&gt;Max-Planck-Instituts (MPI) für ausländisches und internationales Straf&amp;shy;recht&lt;/em&gt; kam zu dem Schluss, dass die Aufzählung spektakulärer Einzel&amp;shy;fälle nicht als Nach&amp;shy;weis der Notwendigkeit für eine 6-monatige Mindest&amp;shy;speicher&amp;shy;dauer genügt. Die Straf&amp;shy;verfolgungs&amp;shy;behörden haben nach Ansicht der Autoren bisher keine belastbaren Begründungen für eine &lt;a href=&quot;http://neusprech.org/schutzluecke/&quot;&gt;Schutz&amp;shy;lücke&lt;/a&gt; im Internet liefern können.&lt;/li&gt;
&lt;li&gt;Die Zahlen der jährlichen Kriminalstatistiken des BKA zeigen, dass die Vorrats&amp;shy;daten&amp;shy;speicherung 2009 keinen Einfluss auf die Aufklärungs&amp;shy;rate und die allgemeine Entwicklung der Straf&amp;shy;taten im Internet hatte. Es gibt von Jahr zu Jahr mehr Straf&amp;shy;taten im Internet bei abnehmender Aufklärungsrate. 
&lt;div align=&quot;center&quot;&gt;
   &lt;table cellspacing=&quot;15&quot;&gt;
      &lt;tr align=&quot;center&quot;&gt;
        &lt;td&gt;&lt;/td&gt;
        &lt;td&gt;2007&lt;br/&gt;(ohne VDS)&lt;/td&gt;
        &lt;td&gt;2008&lt;br/&gt;(ohne VDS)&lt;/td&gt;
        &lt;td&gt;2009&lt;br/&gt;(mit VDS)&lt;/td&gt;
        &lt;td&gt;2010&lt;br/&gt;(ohne VDS)&lt;/td&gt;
      &lt;/tr&gt;
 
      &lt;tr align=&quot;center&quot;&gt;
        &lt;td&gt;Straftaten im Internet&lt;/td&gt;
        &lt;td valign=&quot;bottom&quot;&gt;179.026&lt;/td&gt;
        &lt;td valign=&quot;bottom&quot;&gt;167.451&lt;/td&gt;
        &lt;td valign=&quot;bottom&quot;&gt;206.909&lt;/td&gt;
        &lt;td valign=&quot;bottom&quot;&gt;223.642&lt;/td&gt;
      &lt;/tr&gt;
      &lt;tr align=&quot;center&quot;&gt;
        &lt;td&gt;Aufklärungsrate im Internet&lt;/td&gt;
        &lt;td valign=&quot;bottom&quot;&gt;82.9%&lt;/td&gt;
        &lt;td valign=&quot;bottom&quot;&gt;79.8%&lt;/td&gt;
        &lt;td valign=&quot;bottom&quot;&gt;75.7%&lt;/td&gt;
        &lt;td valign=&quot;bottom&quot;&gt;72,3%&lt;/td&gt;
      &lt;/tr&gt;
  &lt;/table&gt;
&lt;/div&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Sicherheitspolitiker aller Ebenen sollten mehr Respekt vor Grund&amp;shy;prinzipien unserer Gesellschaft zeigen, statt nicht-diskussions&amp;shy;fähige Maximal&amp;shy;forderungen zu präsentieren.&lt;/p&gt; 
    </content:encoded>

    <pubDate>Wed, 20 Feb 2013 21:13:57 +0100</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/365-guid.html</guid>
    
</item>
<item>
    <title>JonDos does not recommend Hushmail.com</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/362-JonDos-does-not-recommend-Hushmail.com.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/362-JonDos-does-not-recommend-Hushmail.com.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=362</wfw:comment>

    <slash:comments>11</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=362</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;Hushmail.com enjoys a good reputation for privacy friendly e-mail services or years. The EFF.org recommended in the tutotial about anonymous e-mails accounts only Hushmail.org (&lt;a href=&quot;https://www.eff.org/deeplinks/2012/11/tutorial-how-create-anonymous-email-accounts&quot;&gt;Don&#039;t be a Petraeus&lt;/a&gt;) and the German Journalist P.Beuth wants to publish a tutorial for anonymous e-mail accounts by using Hushmail.com next days in the online newspaper ZEIT.de.&lt;/p&gt;

&lt;h5&gt;JonDos does NOT recommend Hushmail.com&lt;/h5&gt;
&lt;p&gt;Have a look at the &lt;a href=&quot;https://www.hushmail.com/privacy/&quot;&gt;privacy policy&lt;/a&gt; of Hushmail.com. The content of all emails is scanned and like an extended data retention the following data records are stored for 18 month:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;all sender and recipient email addresses (data retention log)&lt;/li&gt;
&lt;li&gt;all file names of attachments&lt;/li&gt;
&lt;li&gt;subjects of all emails&lt;/li&gt;
&lt;li&gt;URLs in the bodies of unencrypted email&lt;/li&gt;
&lt;li&gt;... &lt;em&gt;&amp;quot;and any other information that we deem necessary&amp;quot;&lt;/em&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;The stored records are not deleted when you cancel your account.&lt;/p&gt;
&lt;p&gt;When you make a purchase to buy a premium account your IP address, country, city and postal code will be transfered to third party PCI compliant services. Hushmail.com is not responsible for the privacy policy of these services. The usage of PCI compliant services may be useful for payment processors like PayPal.com but it is not required for telecommunication services. JonDos GmbH operates for years successful without using PCI compliant services.&lt;/p&gt;
&lt;p&gt;The website of Hushmail.com uses third-party services for some parts such as the  help system. After login your Hushmail ID and your name is transferred to these service on purpose (not unintentionally!). For the privacy policy of third-party services Hushmail.com is not responsible.&lt;/p&gt;
&lt;h5&gt;Recommended e-mail provider&lt;/h5&gt;
&lt;p&gt;A small list of recommended e-mail provider you may find in our online help about &lt;a href=&quot;https://anonymous-proxy-servers.net/en/help/thunderbird.html&quot;&gt;anonymous e-mail accounts with Mozilla Thunderbird&lt;/a&gt;. You may send us your recommendations by using our &lt;a href=&quot;https://anonymous-proxy-servers.net/bin/contact?lang=en&quot;&gt;contact form&lt;/a&gt; and we will add it after checking the service.&lt;/p&gt; 
    </content:encoded>

    <pubDate>Mon, 28 Jan 2013 13:33:23 +0100</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/362-guid.html</guid>
    
</item>
<item>
    <title>Lawful access to user-related telecommunication data in Germany</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/361-Lawful-access-to-user-related-telecommunication-data-in-Germany.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/361-Lawful-access-to-user-related-telecommunication-data-in-Germany.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=361</wfw:comment>

    <slash:comments>2</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=361</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;In April 2012 the security scientist Pete Swire published a &lt;a href=&quot;https://papers.ssrn.com/sol3/papers.cfm?abstract_id=2038871&quot;&gt;paper&lt;/a&gt; about trends in lawful surveillance. Intelligence services and law enforcement agencies are seeking access to stored data in the cloud and on private computers because wired interception of telecommunication is less effective.&lt;/p&gt;
&lt;p&gt;With a new drafted law (BR-Drs. 664/12) the German government is taking a leading position in this development. For the future intelligence services and law enforcement agencies may have warrant-less access to passwords of e-mail accounts and cloud-stored data, PIN codes of smartphones and to the &lt;a href=&quot;https://de.wikipedia.org/wiki/TR-069&quot;&gt;TR-069&lt;/a&gt; interface of routers provided by Internet access provider for customers. Provider with more than 100,000 customers have to offer automated interfaces for lawful access. Smaller provider have to answer a request within 6 hours. All providers are not responsible in case of unauthorized access to user-related telecommunication data.&lt;/p&gt;
&lt;p&gt;The German Pirate Party commented:&lt;/p&gt;
&lt;blockquote&gt;&lt;em&gt;&amp;quot;This draft is not supported by constitution.&amp;quot;&lt;/em&gt; (&lt;a href=&quot;http://fraktion.piratenpartei-sh.de/piraten-vertraulichkeit-und-anonymitat-der-telekommunikation-schutzen/&quot;&gt;Patrick Breyer, MDL&lt;/a&gt;)&lt;/blockquote&gt;

&lt;h5&gt;JonDonym storage grid&lt;/h5&gt;
&lt;p&gt;We are going for development of new services to keep your data private. For premium users we offer a &lt;a href=&quot;https://storage.anonymous-proxy-servers.net/&quot;&gt;storage grid&lt;/a&gt;, which does not have all the comfortable features of DropBox and is only accessible by webinterface (at the moment). But it implements some great security concepts:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;The storage nodes of the grid are operated by verified JonDonym operators. Because of splitting and encryption of data the operators can&#039;t inspect your uploads.&lt;/li&gt;
&lt;li&gt;An account is not required and no personal data is collected.&lt;/li&gt;
&lt;li&gt;The cryptographic keys for read/write or read-only access are included in the URI and are not linkable to a single person.&lt;/li&gt;
&lt;li&gt;Access to the storage grid is protected by one of the strongest anonymisation services around the world.&lt;/li&gt;
&lt;/ul&gt; 
    </content:encoded>

    <pubDate>Wed, 19 Dec 2012 17:18:18 +0100</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/361-guid.html</guid>
    
</item>
<item>
    <title>Secure SSL encryption for webserver</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/360-Secure-SSL-encryption-for-webserver.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/360-Secure-SSL-encryption-for-webserver.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=360</wfw:comment>

    <slash:comments>3</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=360</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;The project &lt;a href=&quot;https://www.trustworthyinternet.org/ssl-pulse/&quot;&gt;SSL Pulse&lt;/a&gt; tracks nearly 200,000 high profile web sites from the Alexa top one million site list and evaluates their SSL implementation. Only 10% of all sites are genuinely secure.&lt;/p&gt;
&lt;div style=&quot;text-align: center;&quot;&gt;&lt;img src=&quot;/blogimages/sslpulse.png&quot; alt=&quot;result&quot; /&gt;&lt;/div&gt;
&lt;p&gt;We want to give some small recommedations for webmaster to improve the security of HTTPS encryption. All sample configuration snippets are
working for Apache2, but you may adapt it for other web servers too.&lt;/p&gt;

&lt;h5&gt;Create a SSL certificate&lt;/h5&gt;
&lt;p&gt;At first you have to create the SSL certificate and get a signature by a certification authority (CA).
You may use &lt;a href=&quot;https://www.checkdomain.de/ssl/&quot;&gt;checkdomain&lt;/a&gt; to get a signed certificate.&lt;/p&gt;

&lt;p&gt;All CAs offer a comfortable webinterface to use your browser of all steps of the certificate creation process. We do NOT recommend the use of website wizards. You do not have full control over the creation of your private key. You may use the OpenSSL library to create at first the private key and a certificate signing request (CSR) afterwards on your computer:&lt;/p&gt;
&lt;kbd&gt;&amp;gt; openssl genrsa -out my.key 2048&lt;br /&gt;
&amp;gt; openssl req -new -key mein.key -out my.csr&lt;/kbd&gt;
&lt;p&gt;Now you can send only the CSR to the CA and you will get the signed certificate (CRT) back.&lt;/p&gt;

&lt;h5&gt;Enable SSL encryption in your server configuration&lt;/h5&gt;
&lt;p&gt;To enable SSL encryption you have to load the module &lt;em&gt;&amp;quot;ssl&amp;quot;&lt;/em&gt; and add the following lines to your virtual host configuration for port 443. The certificate chain file is only required time by time, please read the documentation of you preferred CA and download the bundle if required.&lt;/p&gt;

&lt;kbd&gt;
    SSLEngine On&lt;br /&gt;
    SSLCertificateKeyFile /path_to/my.key&lt;br /&gt;
    SSLCertificateFile /path_to/my.crt&lt;br /&gt;
    SSLCertificateChainFile /path_to/bundle.crt&lt;br /&gt;&lt;/kbd&gt;

&lt;p&gt;Restart your web server and SSL encryption is working. But SSL is a complex standard and contains may insecure features.&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;&lt;h5&gt;Disable insecure SSL protocols&lt;/h5&gt;
&lt;p&gt;SSL v.2.0 is &amp;quot;broken by design&amp;quot; and SSL v.3.0 is not secure any more. You have to disable both and use only TLS 1.0 - TLS 1.2. You may use the following configuration option in the file &lt;em&gt;ssl.conf&lt;/em&gt;:&lt;/p&gt;
&lt;kbd&gt;SSLProtocol TLSv1&lt;/kbd&gt;
&lt;/li&gt;
&lt;li&gt;&lt;h5&gt;Disable insecure cipher&lt;/h5&gt;
&lt;p&gt;Disable insecure cipher suites and weak keys in &lt;em&gt;ssl.conf&lt;/em&gt;. A year ago the security researchers Juliano Rizzo and Thai Duong presented &lt;a href=&quot;http://h-online.com/-1346387&quot;&gt;BEAST&lt;/a&gt; (Browser Exploit Against SSL/TLS). Actual browsers are not affected by this attack any more. You can ignore warnings about BEAST vulnerability of your webserver. Secure settings are:&lt;/p&gt;

 &lt;kbd&gt; SSLCipherSuite HIGH:!RC4:!MD5:!aNULL:!EDH:!3DES:!ADH&lt;/kbd&gt;

&lt;/li&gt;
&lt;li&gt;&lt;h5&gt;Disbale TLS compression&lt;/h5&gt;
&lt;p&gt;This year Juliano Rizzo and Thai Duong presented a new attack &lt;a href=&quot;http://h-online.com/-1702136&quot;&gt;CRIME&lt;/A&gt; (Compression and Information Leakage of Plaintext). You can avoid this attack by disable TLS cempresion and do not use SPDY. For Apache2 a patch was released in November this year to fix the problem. Keep your software up-2-date.&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;&lt;h5&gt;Enable HTTP Strict Transport Security&lt;/h5&gt;
&lt;p&gt;&lt;a href=&quot;https://en.wikipedia.org/wiki/Strict_Transport_Security&quot;&gt;HTTP Strict Transport Security&lt;/a&gt; is a security policy mechanism whereby a web server declares that webbrowser interact with it using only secure HTTPS connections. A HTTP header field is added by the web server to the response. 
This will avoid an attack which was first introduced by Moxie Marlinspike at 2009 BlackHat. To add the Strict Transport Security header you have to load the module &lt;em&gt;&amp;quot;headers&amp;quot;&lt;/em&gt; and add the following line to your virtual host configuration:&lt;/p&gt;
 &lt;kbd&gt;Header always set Strict-Transport-Security &quot;max-age=31536000&quot;&lt;/kbd&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Security is a process and not an one-time action. Check your server time by time with the &lt;a href=&quot;https://www.ssllabs.com/ssltest/index.html&quot;&gt;SSL server test&lt;/a&gt; for new vulnerabilities and fix it as soon as possible.&lt;/p&gt;
 
    </content:encoded>

    <pubDate>Mon, 10 Dec 2012 13:39:09 +0100</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/360-guid.html</guid>
    
</item>
<item>
    <title>Don't be a Petraeus</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/359-Dont-be-a-Petraeus.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/359-Dont-be-a-Petraeus.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=359</wfw:comment>

    <slash:comments>3</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=359</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;The EFF.org evaluated the investigation of FBI in the personal lives of CIA Director David Petraeus, Paula Broadwell, Jill Kelly and General John Allen and published &lt;a href=&quot;https://www.eff.org/deeplinks/2012/11/tutorial-how-create-anonymous-email-accounts&quot;&gt;A Tutorial on Anonymous Email Accounts&lt;/a&gt;.&lt;/p&gt;
&lt;ol&gt;
&lt;li&gt;You should use an anonymisation service when setting up and accessing your webmail account. You must always use the anonymisation service. (The EFF.org recommends Tor, but JonDonym is suited too.)&lt;/li&gt;
&lt;li&gt;Use a privacy-friendly mail provider with secure SSL encryption. GMail or Yahoo! are not acceptable, but Hushmail is not the only one proper mail provider all over the world. You may find some more recommendations in our &lt;a href=&quot;/en/help/thunderbird.html&quot;&gt;online help&lt;/a&gt;.&lt;/li&gt;
&lt;li&gt;If an email address was required for account creation you may use &lt;a href=&quot;https://anonymous-proxy-servers.net/wiki/index.php/Use_cases#Temporary_E-mail_accounts&quot;&gt;disposable addresses&lt;/a&gt;. Do not use an email address, which is traceable to you real identity - never.&lt;/lI&gt;
&lt;li&gt;Use encryption to keep you mails private. The content of emails may be used for deanonymisation. OpenPGP is recommended.&lt;/li&gt;
&lt;li&gt;Additional we want to add a fifth point. Do not store read or sent mails or drafts on the server of your mail provider. Stored mails are not protected by privacy law like telecommunication, if the owner was able to delete them.&lt;/li&gt;
&lt;/ul&gt; 
    </content:encoded>

    <pubDate>Thu, 29 Nov 2012 20:51:23 +0100</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/359-guid.html</guid>
    
</item>
<item>
    <title>North American Internet Blackout</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/357-North-American-Internet-Blackout.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/357-North-American-Internet-Blackout.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=357</wfw:comment>

    <slash:comments>1</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=357</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;On July 06, 2012 US-President Barack Obama signed the executive order &lt;a href=&quot;http://www.whitehouse.gov/the-press-office/2012/07/06/executive-order-assignment-national-security-and-emergency-preparedness-&quot;&gt;Assignment of National Security and Emergency Preparedness Communications Functions&lt;/a&gt;. It empower certain governmental agencies with control over telecommunications and the Web during natural disasters and security emergencies and authorized the DHS to seize private facilities when necessary and effectively shutting down or limiting civilian communications. It may be possible to disconnect private-sector computers from the Internet to keep Federal Government communication running.&lt;/p&gt;

&lt;hr /&gt;
&lt;p&gt;You can see the feeling of a regional internet &amp;quot;blackout&amp;quot; in North America this week. On October 26 some US-router went down. The consequences were significant trouble in internet traffic. &lt;a href=&quot;http://internettrafficreport.com/&quot;&gt;Internet Traffic Report&lt;/a&gt; reports that Asian and North American packet loss has jumped to an average 30-35%, compared with 9% for Europe and 0% each for South America and Australia. The volume of traffic went down by 5-10% for North America at all (USA, Canada, Mexico). Many people are barely able to connect to the network.&lt;/p&gt;

&lt;div align=&quot;center&quot;&gt;
&lt;img src=&quot;/blogimages/tr_namerica_p1.gif&quot; alt=&quot;packet loss jumped to 30-35%&quot; /&gt;
&lt;/div&gt;

&lt;p&gt;Fife days later on November 01  the New York main router was back in service. The volume of traffic increases (but did not reaches normal values) and the value of &amp;quot;packet loss&amp;quot; went down on November 01, 2012.&lt;/p&gt;


&lt;div align=&quot;center&quot;&gt;
&lt;img src=&quot;/blogimages/tr_namerica_s2.gif&quot; alt=&quot;packet loss&quot; style=&quot;margin: 7px;&quot; /&gt;
&lt;img src=&quot;/blogimages/tr_namerica_p2.gif&quot; alt=&quot;traffic&quot;  style=&quot;margin: 7px;&quot; /&gt;
&lt;/div&gt;

&lt;p&gt;On November 02 the first router in New Jersey was back in service. The volume of traffic and the value of &amp;quot;packet loss&amp;quot;  reaches normal values.&lt;/p&gt;
&lt;div align=&quot;center&quot;&gt;
&lt;img src=&quot;/blogimages/tr_namerica_s3.gif&quot; alt=&quot;packet loss&quot; style=&quot;margin: 7px;&quot; /&gt;
&lt;img src=&quot;/blogimages/tr_namerica_p3.gif&quot; alt=&quot;traffic&quot;  style=&quot;margin: 7px;&quot; /&gt;
&lt;/div&gt;

&lt;p&gt;May be in this case the US government is not responsible for the local blackout. The Content Delivery Network &lt;a href=&quot;http://www.akamai.com/dv1&quot;&gt;Akamai&lt;/a&gt; reports that internet-based attacks are up 50% over average on October 26, 2012. The US east coast was a highest volume region.&lt;/p&gt; 

&lt;div align=&quot;center&quot;&gt;
&lt;img src=&quot;/blogimages/internetattacks.png&quot; alt=&quot;internet-based attacks October 26&quot; /&gt;
&lt;/div&gt;
&lt;p&gt;No independent analysis of this &amp;quot;blackout&amp;quot; was published at the moment in our knowledge. But it seems the &lt;a href=&quot;http://www.thewhir.com/web-hosting-news/noise-filter-hurricane-sandy-floods-nyc-data-center-impacts-hosts-colocation-providers&quot;&gt;losses arising from &lt;em&gt;Sandy&lt;/em&gt;&lt;/a&gt; were mainly responsible for the local blackout.&lt;/p&gt; 
    </content:encoded>

    <pubDate>Fri, 02 Nov 2012 15:28:25 +0100</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/357-guid.html</guid>
    
</item>
<item>
    <title>Secure Voice-over-IP (VoIP)</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/356-Secure-Voice-over-IP-VoIP.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/356-Secure-Voice-over-IP-VoIP.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=356</wfw:comment>

    <slash:comments>2</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=356</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;Telecommunications carriers and manufacturers of telecommunications equipment are required by law to conduct electronic surveillance for law enforcement and intelligence agencies. In United States the &lt;a href=&quot;https://secure.wikimedia.org/wikipedia/en/wiki/Calea&quot;&gt;Communications Assistance for Law Enforcement Act (CALEA)&lt;/a&gt; wiretapping law passed in 1994. In Germany a similar law was adopted 1995 by German FEDs&#039; initiative (it was replaced in 2002 with the &lt;a href=&quot;https://de.wikipedia.org/wiki/Telekommunikations-%C3%9Cberwachungsverordnung&quot;&gt;Telekommunikations-Überwachungs&amp;shy;­verordnung (TKÜV)&lt;/a&gt;) and other countries adopted similar laws too.&lt;/p&gt;

&lt;p&gt;Since 2005 CALEA applies to Internet access providers and providers of Voice-over-Internet-Protocol (VoIP) services with interconnections to the public switched telephone network like Skype.&lt;/p&gt;

&lt;h3&gt;Encrypted Voice-over-IP without backdoor&lt;/h3&gt;
&lt;p&gt;To answer the &lt;a href=&quot;https://anonymous-proxy-servers.net/blog/index.php?/archives/334-Total-Information-Awareness-Projekt-der-US-Regierung.html&amp;amp;user_language=en&quot;&gt;Total Information Awareness Project&lt;/a&gt; of the US administration&#039;s and other surveillance projects some nerds develop secure Voice-over-IP networks.&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;&lt;h5&gt;Open Secure Telephony Network (OSTN)&lt;/h5&gt;
&lt;p&gt;The &lt;a href=&quot;https://guardianproject.info&quot;&gt;Guardian Project&lt;/a&gt; is working to define a defacto standard by which a voice over internet protocol service can be considered end-to-end secured, with verifiable encryption, minimal logging, and a decentralized model of deployment and use.&lt;/p&gt;
&lt;p&gt;At the moment the project is ready for usage but still under development. Three &lt;a href=&quot;https://guardianproject.info/wiki/OSTN#Hosted_VoIP_Services&quot;&gt;OSTN providers&lt;/a&gt; are stable working and some &lt;a href=&quot;https://guardianproject.info/wiki/OSTN#Client_Software&quot;&gt;VoIP clients&lt;/a&gt; for desktop computers and smartphones offer full OSTN support. The server software is open source and it is possible to run your own VoIP server.&lt;/p&gt;
&lt;p&gt;The configuration of your &amp;quot;secured&amp;quot; VoIP client is very simple. You have to create an account on the website of an OSTN provider and enter the login credentials you got like a SIP account. Secure SRTP/ZRTP encryption of incoming and outgoing phone calls is activated without any action required by you or your communication partner. You have to verify only a 4-digit combination of letters and numbers displayed by your VoIP client with your partner. If both of you will see the same combination of letters and numbers no man-in-middle is sniffing you call.&lt;/p&gt;
&lt;p&gt;To avoid local surveillance with a (federal) trojan horse like &lt;a href=&quot;http://www.digitask.de/&quot;&gt;Digitask trojan&lt;/a&gt; or &lt;a href=&quot;http://wikileaks.org/spyfiles/files/0/289_GAMMA-201110-FinSpy.pdf&quot;&gt;FinSpy&lt;/a&gt; or &lt;a href=&quot;http://www.hackingteam.it/index.php/remote-control-system&quot;&gt;HackingTeam RCS&lt;/a&gt; you may use a live-cd. The &lt;a href=&quot;https://anonymous-proxy-servers.net/en/jondo-live-cd.html&quot;&gt;JonDo Live-CD / DVD&lt;/a&gt; contains the VoIP client &lt;em&gt;Jitsi&lt;/em&gt; with full support of the OSTN protocol.&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;&lt;h5&gt;Silent Circle&lt;/h5&gt;
&lt;p&gt;&lt;a href=&quot;https://silentcircle.com&quot;&gt;Silent Circle&lt;/a&gt; is a commercial project of Phil Zimmermann (developer of OpenPGP for email encryption and the ZRTP protocoll for VoIP encryption), Combat-decorated Navy SEALs and privacy activists. For $20 per month it offers secure Voice-over-IP with strong encryption and without surveillance backdoor. Client software for iPhone and Windows is ready for use, an Android client is coming soon. Solutions for easy to use encrypted e-mail and SMS are under development too.&lt;/p&gt;

&lt;p&gt;The logo of &amp;quot;Silent Circle&amp;quot;, the red Enso symbol, was used  by the 47 Ronin (a group of Japanese &amp;quot;Masterless Samurai&amp;quot;) as a symbol of their protection of the citizens 300 years ago. It is a legendary symbol of honor, character, skill and unconventional tactics.&lt;/p&gt;
&lt;/p&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;It is NOT possible to use JonDonym or Tor for anonymisation of Voice-over-IP calls.&lt;/p&gt; 
    </content:encoded>

    <pubDate>Fri, 26 Oct 2012 17:50:39 +0200</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/356-guid.html</guid>
    
</item>
<item>
    <title>SHA-3 announced</title>
    <link>https://anonymous-proxy-servers.net/blog/index.php?/archives/353-SHA-3-announced.html</link>
            <category>Speaker's Corner</category>
    
    <comments>https://anonymous-proxy-servers.net/blog/index.php?/archives/353-SHA-3-announced.html#comments</comments>
    <wfw:comment>https://anonymous-proxy-servers.net/blog/wfwcomment.php?cid=353</wfw:comment>

    <slash:comments>0</slash:comments>
    <wfw:commentRss>https://anonymous-proxy-servers.net/blog/rss.php?version=2.0&amp;type=comments&amp;cid=353</wfw:commentRss>
    

    <author>nospam@example.com (cane)</author>
    <content:encoded>
    &lt;p&gt;NIST has announced the winner of the &lt;a href=&quot;http://csrc.nist.gov/groups/ST/hash/sha-3/index.html&quot;&gt;SHA-3 Cryptographic Hash Algorithm Competition&lt;/a&gt;. &lt;a href=&quot;http://keccak.noekeon.org/&quot;&gt;Keccak&lt;/a&gt; has been selected as SHA-3.&lt;/p&gt;
&lt;p&gt;We will use the new recommended hash algorithm for the further development of our software and replace old hash algorithm.&lt;/p&gt; 
    </content:encoded>

    <pubDate>Wed, 03 Oct 2012 12:26:21 +0200</pubDate>
    <guid isPermaLink="false">https://anonymous-proxy-servers.net/blog/index.php?/archives/353-guid.html</guid>
    
</item>

</channel>
</rss>
