4 ms·
OP here. This is a Reddit IAmA thread where a guy is claiming he writes covert software that allows ISPs and governments to snoop Internet traffic in real time
by thinkzig 17y ago
OP here. This is a Reddit IAmA thread where a guy is claiming he writes covert software that allows ISPs and governments to snoop Internet traffic in real time. I found this discussion fascinating and horrifying at the same time.
Assuming this guy isn't a troll, what do you think about the claims he's making? Do you think hardware/software combos like this exist?
- there 17y agoof course it's possible. isp's require equipment like this to troubleshoot problems and detect/isolate denial of service attacks. i used to work at an isp and built two sniffers like that that were used on a per-incident basis to watch traffic going to certain places (usually all traffic to and from a particular colocated server). in my case the devices weren't anything more than openbsd servers with tcpdump, snort, and other pcap utilities, but at larger isp's they would use something more proprietary to handle larger amounts of traffic. i'm sure if we had a good reason to we could have just left them on all the time and used something like snort or another deep packet inspector to trigger alerts on certain traffic.
- frig 17y agoIt wouldn't be that surprising. You put together custom regex-processing silicon (eg: what Tarari used to make) and related hardware (eg: entropy calculators, that kind of thing) and mix in various types of content-addressed memory and you could get some nutty performance #s on specialized tasks like what's discussed there.