Title: Privacy Protecting Technologies
1Privacy Protecting Technologies
2Technology Value Neutral?
- Does technology, on average, help or hinder
personal privacy?
3The Big Idea
- We can use technology to improve privacy
4Web Browsing
5Ad Subtract
6(No Transcript)
7(No Transcript)
8Search Sanity
9Ad Subtract Client-Side Java Proxy
- Advantages
- Multiplatform
- Easy to debug
- Client/server
- Disadvantages
- Doesnt work with SSL
- Install footprint
- Need to parse HTML
10Bugnosis
11Bugnosis
- Features
- Browser helper object
- Accesses HTTP HTTPS
- Downloads updates
- Designed for journalists
12Private Messaging
- PGP first generation
- Hush Mail web based
- The Martus Project application specific
- Disappearing Ink (Omniva) - Deletion
13PGP
- Add-on
- Plug-in
- S/MIME vs. OpenPGP
- Political Baggage
14Hush Mail
- Second-generation
- Web-based
- Java Crypto Client
15Hush Mail
16Hush Mail
17Hush Mail
18Hush Mail
19Hush Mail Interface
20HushMail Diagram
21Disappearing Ink / Omniva
- Self-destructing email for people who want to use
it. - Why bother? Because its hard to delete things
22Email gets copies a lot
23(No Transcript)
24(No Transcript)
25(No Transcript)
26Mix-Nets, Web IP transport
- Chaums mix-net scheme
- The big idea anonymity needs company
- 1 mix you trust the mixer
- More mixes - Less Trust
- Mixing needs to be in space and time
27Practical applications of mixers
- Anonymous Remailers
- Anonymous Browsing
- Anonymous Publishing
28Anonymous Remailers
- Anonymous posting on Usenet
- anon.penet.fi
- Based in Finland
- Operated by Julf Helsingius
- 70,000 registered users 10,000 messages/day
- February 1995 Church of Scientology demands the
True Name of a nym an144108_at_anon.penet.fi - Revealed on February 8 to belong to
tc_at_alumni.caltech.edu under order from Finish
Court - (Information applied to the Finish court had
apparently been somewhat misleading) - August 30 After second court case,
anon.penet.fi shut down - full details at www.xs4all.nl/kspaink/cos/rnewman
/anon/penet.html
29Craigs List
30Key features of an anonymous remailer
- Strips identity from messages passing through
- Provides mapping of nyms to true names
- But only if replies are important
- Optional
- Mixing - only if traffic in and out is observable
- Encryption -
31Anonymous Web Browsing
- Web Caches
- Anonymizer
- Anonymous Transport Services
- Freedom
- Onion Routing
32Web Caches
cache-ntc-ah12.proxy.aol.com - -
10/May/2003224731 -0400 "GET
/clips/1999.TR.LCS35-FountainOfIdeas.pdf
HTTP/1.0" 200 65536 "http//aolsearch.aol.com/aol/
search?queryfountainideaspage2" "Mozilla/4.0
(compatible MSIE 6.0 AOL 7.0 Windows NT 5.1
.NET CLR 1.0.3705) cache-ntc-ah12.proxy.aol.com
- - 10/May/2003224739 -0400 "GET
/clips/1999.TR.LCS35-FountainOfIdeas.pdf
HTTP/1.1" 206 688128 "-" "Mozilla/4.0
(compatible MSIE 6.0 AOL 7.0 Windows NT 5.1
.NET CLR 1.0.3705) cache-ntc-ah12.proxy.aol.com
- - 10/May/2003224744 -0400 "GET
/clips/1999.TR.LCS35-FountainOfIdeas.pdf
HTTP/1.1" 206 1024 "-" "Mozilla/4.0 (compatible
MSIE 6.0 AOL 7.0 Windows NT 5.1 .NET CLR
1.0.3705) cache-ntc-ah12.proxy.aol.com - -
10/May/2003224747 -0400 "GET
/clips/1999.TR.LCS35-FountainOfIdeas.pdf
HTTP/1.1" 206 75 "-" "Mozilla/4.0 (compatible
MSIE 6.0 AOL 7.0 Windows NT 5.1 .NET CLR
1.0.3705) cache-ntc-ah12.proxy.aol.com - -
10/May/2003224752 -0400 "GET
/clips/1999.TR.LCS35-FountainOfIdeas.pdf
HTTP/1.1" 206 725650 "-" "Mozilla/4.0
(compatible MSIE 6.0 AOL 7.0 Windows NT 5.1
.NET CLR 1.0.3705)"
33Cache with anonymity
34Anonymizer
35Anonymizer.com rewrites URLs
text-aligncenter fontbold
font-familyArial' ree.anonymizer.com/http//www.simson.net/photos.ph
p' title'Photos by and of Simson Garfinkel'
Photos style'backgroundlime
text-aligncenter fontbold font-familyArial'
ttp//www.simson.net/pubs.php' title'Publications
, both academic and journalistic.' Pubs
text-aligncenter
fontbold font-familyArial' href'http//anon.free.anonymizer.com/http//www.s
imson.net/projects.php' title'Current projects'
Projects
36Private IP Transport
37Freedom
38Unresolved Issues
- How do you buy a book anonymously?
39Anonymous Publication Systems
- anon.penet.fi was really about the right to
anonymous publication on Usenet (1996) - Napster (1999 2001)
- Freenet
40References
- EPIC Online Guide to Privacy Protecting tools
- http//www.epic.org/privacy/tools.html