Rocksolid Light

Welcome to novaBBS (click a section below)

mail  files  register  newsreader  groups  login

Message-ID:  

"You can't get very far in this world without your dossier being there first." -- Arthur Miller


computers / alt.privacy.anon-server / Re: Yamn Question: Tagging Attacks

SubjectAuthor
* Yamn Question: Tagging AttacksYamn Remailer
+* Re: Yamn Question: Tagging AttacksStefan Claas
|+- Re: Yamn Question: Tagging AttacksStefan Claas
|+- Re: Yamn Question: Tagging AttacksAnonymous Remailer (austria)
|+- Re: Yamn Question: Tagging AttacksEECL
|`* Re: Yamn Question: Tagging AttacksAnonymous
| +* Re: Yamn Question: Tagging AttacksStefan Claas
| |`* Re: Yamn Question: Tagging AttacksStefan Claas
| | +* Re: Yamn Question: Tagging AttacksAnonymous
| | |`* Re: Yamn Question: Tagging AttacksStefan Claas
| | | +- Re: Yamn Question: Tagging AttacksStefan Claas
| | | `* Re: Yamn Question: Tagging Attackselvis-85792
| | |  `* Re: Yamn Question: Tagging AttacksAnonymous
| | |   `- Re: Yamn Question: Tagging AttacksStefan Claas
| | `* Re: Yamn Question: Tagging Attacksanonymous
| |  +- Re: Yamn Question: Tagging AttacksStefan Claas
| |  `- Re: Yamn Question: Tagging AttacksYamn Remailer
| +- Re: Yamn Question: Tagging AttacksAnonymous
| +- Re: Yamn Question: Tagging Attackselvis-85792
| `- Re: Yamn Question: Tagging AttacksZax
`* Re: Yamn Question: Tagging AttacksSEC3
 `* Re: Yamn Question: Tagging AttacksZax
  `* Re: Yamn Question: Tagging AttacksAnonymous
   `* Re: Yamn Question: Tagging AttacksAnonymous
    `* Re: Yamn Question: Tagging AttacksAnonymous
     +- Re: Yamn Question: Tagging AttacksAnonymous
     `* Re: Yamn Question: Tagging AttacksAnonymous Remailer
      `* Re: Yamn Question: Tagging AttacksAnonymous
       `* Re: Yamn Question: Tagging AttacksAnonymous Remailer
        `* Re: Yamn Question: Tagging AttacksYamn Remailer
         `- Re: Yamn Question: Tagging AttacksAnonymous

Pages:12
Re: Yamn Question: Tagging Attacks

<slrnskofs2.p19.elvis-85792@notatla.org.uk>

  copy mid

https://news.novabbs.com/computers/article-flat.php?id=9747&group=alt.privacy.anon-server#9747

  copy link   Newsgroups: alt.privacy.anon-server
Path: i2pn2.org!i2pn.org!weretis.net!feeder8.news.weretis.net!news.uzoreto.com!news-out.netnews.com!news.alt.net!fdc2.netnews.com!peer01.ams1!peer.ams1.xlned.com!news.xlned.com!peer02.iad!feed-me.highwinds-media.com!news.highwinds-media.com!fx20.iad.POSTED!not-for-mail
Newsgroups: alt.privacy.anon-server
From: elvis-85...@notatla.org.uk
Subject: Re: Yamn Question: Tagging Attacks
References: <20210917.230115.0f335f6a@mix2.remailer.xyz>
<d1276c10-15ef-413e-b42c-dc1532f744b1n@googlegroups.com>
<89dbb364cd1d2bfed1f7530e3559a998@remailer.paranoici.org>
<c60e2f66-e407-4bda-a356-eeb78521f5a0n@googlegroups.com>
<b7223bd3-4bf6-49e4-bcdf-d0a4a4da21d4n@googlegroups.com>
<20210922.131249.e1214ce8@yamn.paranoici.org>
<89487d10-5b15-40c1-87d1-9d9b97c687f6n@googlegroups.com>
X-noarchive: yes
X-no-archive: yes
User-Agent: slrn/1.0.3 (Linux)
Message-ID: <slrnskofs2.p19.elvis-85792@notatla.org.uk>
Lines: 7
X-Complaints-To: abuse@blocknews.net
NNTP-Posting-Date: Thu, 23 Sep 2021 08:49:06 UTC
Organization: blocknews - www.blocknews.net
Date: Thu, 23 Sep 2021 08:49:06 GMT
X-Received-Bytes: 1358
 by: elvis-85...@notatla.org.uk - Thu, 23 Sep 2021 08:49 UTC

On 2021-09-22, Stefan Claas <spam.trap.usenet@gmail.com> wrote:

> In short this would mean (fo me) that if Bob's online computer is compromised,
> let's say with a trojan specialized in adding such a tag, he can create his message

This is not what Ritter (and Zax and me) mean by tagging attacks which can be
carried out by remailers cheating by altering messages that pass through.

Re: Yamn Question: Tagging Attacks

<20210924.014539.eba3cfa4@mix2.remailer.xyz>

  copy mid

https://news.novabbs.com/computers/article-flat.php?id=9748&group=alt.privacy.anon-server#9748

  copy link   Newsgroups: alt.privacy.anon-server
From: ano...@anon.net (anonymous)
Subject: Re: Yamn Question: Tagging Attacks
References: <b7223bd3-4bf6-49e4-bcdf-d0a4a4da21d4n@googlegroups.com>
Message-Id: <20210924.014539.eba3cfa4@mix2.remailer.xyz>
Date: Fri, 24 Sep 2021 01:45:39 +0200
Newsgroups: alt.privacy.anon-server
Path: i2pn2.org!i2pn.org!weretis.net!feeder8.news.weretis.net!sewer!news.dizum.net!not-for-mail
Organization: dizum.com - The Internet Problem Provider
X-Abuse: abuse@dizum.com
Injection-Info: sewer.dizum.com - 2001::1/128
 by: anonymous - Thu, 23 Sep 2021 23:45 UTC

On 22 Sep 2021, Stefan Claas <spam.trap.usenet@gmail.com> posted
some

> On Saturday, September 18, 2021 at 4:50:18 PM UTC+2, Stefan Claas
>> On Saturday, September 18, 2021 at 2:24:13 PM UTC+2, Anonymous
wrote:
>> >
>> > > On Friday, September 17, 2021 at 11:01:18 PM UTC+2, Yamn
Remailer
>> > >>
>> > >> "Deterministic header padding to protect against tagging
>> > >> attacks"
>> > >>
>> > >> Can someone please define what that means?
>> > >>
>> > >>
>> > >> https://github.com/crooks/yamn
>> > >
>> > > Hi,
>> > >
>> > >
>> > > https://ritter.vg/blog-cryptodotis-
tagging_attack_on_mixmaster.htm
>> > > l
>> > >
>> > > Regards
>> > > Stefan
>> > >
>> > Thanks, Stefan. That was very thorough.
>> >
>> > Now if I may, back to the original question as the docs are
scant
>> > on details.
>> >
>> > Yamn tries to mitigate tagging attacks by "Deterministic header
>> > padding to protect against tagging attacks"
>> > In layman's terms what does that mean?
>> In my blooming imagination it would tell me that if Alice or Bob
has
>> a Government trojan on their online device (which can't be
detected
>> by AV software) and an exit node is compromised, that TLAs know
>> that they send the message(s).
>
> I tried out the following with GnuPG. I added one visible (should
be
> hidden, like a space character) byte to the end of the checksum in
> an armored message and GnuPG does not give a checksum error.
>
> So, when Bob encrypts offline and transfers to his compromised
> computer third parties would know that he send the anonymous
> and encrypted message and not Alice.

I alluded to this as it applies to photos in an Apple thread.
I can take a totally innocent photo and make it appear as an
undesired / illegal pic in a few seconds. I am certain that I am
not the only one possessing this knowledge. It was acquired from
a support element of an OEM with a vast population of storage
across the planet. There is no doubt that this knowledge is being
abused.

Re: Yamn Question: Tagging Attacks

<c13b8e63-b8c1-42dd-b9f9-96a5fcab554an@googlegroups.com>

  copy mid

https://news.novabbs.com/computers/article-flat.php?id=9749&group=alt.privacy.anon-server#9749

  copy link   Newsgroups: alt.privacy.anon-server
X-Received: by 2002:a37:6215:: with SMTP id w21mr9451134qkb.354.1632476345942;
Fri, 24 Sep 2021 02:39:05 -0700 (PDT)
X-Received: by 2002:ac8:7549:: with SMTP id b9mr3056122qtr.392.1632476345800;
Fri, 24 Sep 2021 02:39:05 -0700 (PDT)
Path: i2pn2.org!i2pn.org!weretis.net!feeder8.news.weretis.net!proxad.net!feeder1-2.proxad.net!209.85.160.216.MISMATCH!news-out.google.com!nntp.google.com!postnews.google.com!google-groups.googlegroups.com!not-for-mail
Newsgroups: alt.privacy.anon-server
Date: Fri, 24 Sep 2021 02:39:05 -0700 (PDT)
In-Reply-To: <20210924.014539.eba3cfa4@mix2.remailer.xyz>
Injection-Info: google-groups.googlegroups.com; posting-host=196.244.191.182; posting-account=fR_wFgoAAABSagZELuJBww_NWsvipzWC
NNTP-Posting-Host: 196.244.191.182
References: <b7223bd3-4bf6-49e4-bcdf-d0a4a4da21d4n@googlegroups.com> <20210924.014539.eba3cfa4@mix2.remailer.xyz>
User-Agent: G2/1.0
MIME-Version: 1.0
Message-ID: <c13b8e63-b8c1-42dd-b9f9-96a5fcab554an@googlegroups.com>
Subject: Re: Yamn Question: Tagging Attacks
From: spam.tra...@gmail.com (Stefan Claas)
Injection-Date: Fri, 24 Sep 2021 09:39:05 +0000
Content-Type: text/plain; charset="UTF-8"
 by: Stefan Claas - Fri, 24 Sep 2021 09:39 UTC

On Friday, September 24, 2021 at 1:45:41 AM UTC+2, anonymous wrote:
> On 22 Sep 2021, Stefan Claas <spam.tra...@gmail.com> posted

> > I tried out the following with GnuPG. I added one visible (should
> be
> > hidden, like a space character) byte to the end of the checksum in
> > an armored message and GnuPG does not give a checksum error.
> >
> > So, when Bob encrypts offline and transfers to his compromised
> > computer third parties would know that he send the anonymous
> > and encrypted message and not Alice.
> I alluded to this as it applies to photos in an Apple thread.
> I can take a totally innocent photo and make it appear as an
> undesired / illegal pic in a few seconds. I am certain that I am
> not the only one possessing this knowledge. It was acquired from
> a support element of an OEM with a vast population of storage
> across the planet. There is no doubt that this knowledge is being
> abused.

Interesting. I read a while ago that it is possibel with ransomware
to encrypt all images on a Canon DSLR, so that the owner of such
a camera can no longer access his photos.

Regards
Stefan

Re: Yamn Question: Tagging Attacks

<20210924.133111.7f08eb2f@mix1.remailer.xyz>

  copy mid

https://news.novabbs.com/computers/article-flat.php?id=9750&group=alt.privacy.anon-server#9750

  copy link   Newsgroups: alt.privacy.anon-server
Message-Id: <20210924.133111.7f08eb2f@mix1.remailer.xyz>
Subject: Re: Yamn Question: Tagging Attacks
Content-Transfer-Encoding: 7bit
Mime-Version: 1.0
Content-Type: text/plain; charset=UTF-8; format=flowed
From: nore...@mix1.remailer.xyz (Yamn Remailer)
Date: Fri, 24 Sep 2021 13:31:11 +0200
References: <b7223bd3-4bf6-49e4-bcdf-d0a4a4da21d4n@googlegroups.com>
<20210924.014539.eba3cfa4@mix2.remailer.xyz>
Newsgroups: alt.privacy.anon-server
Path: i2pn2.org!i2pn.org!weretis.net!feeder6.news.weretis.net!4.us.feeder.erje.net!2.eu.feeder.erje.net!feeder.erje.net!news.uzoreto.com!alphared!sewer!news.dizum.net!not-for-mail
Organization: dizum.com - The Internet Problem Provider
X-Abuse: abuse@dizum.com
Injection-Info: sewer.dizum.com - 2001::1/128
 by: Yamn Remailer - Fri, 24 Sep 2021 11:31 UTC

On 9/23/2021 6:45 PM, anonymous wrote:

> I alluded to this as it applies to photos in an Apple thread.
> I can take a totally innocent photo and make it appear as an
> undesired / illegal pic in a few seconds. I am certain that I am
> not the only one possessing this knowledge. It was acquired from
> a support element of an OEM with a vast population of storage
> across the planet. There is no doubt that this knowledge is being
> abused.
>

These are all great and important issues.

But they have nothing to do with the original issue of tagging
attacks and Mixmaster.

Re: Yamn Question: Tagging Attacks

<20210924.155347.a8a1f83d@yamn.paranoici.org>

  copy mid

https://news.novabbs.com/computers/article-flat.php?id=9751&group=alt.privacy.anon-server#9751

  copy link   Newsgroups: alt.privacy.anon-server
From: nob...@yamn.paranoici.org (Anonymous)
Date: Fri, 24 Sep 2021 15:53:47 +0200
Content-Type: text/plain; charset=UTF-8; format=flowed
Message-Id: <20210924.155347.a8a1f83d@yamn.paranoici.org>
References: <20210917.230115.0f335f6a@mix2.remailer.xyz>
<d1276c10-15ef-413e-b42c-dc1532f744b1n@googlegroups.com>
<c60e2f66-e407-4bda-a356-eeb78521f5a0n@googlegroups.com>
<b7223bd3-4bf6-49e4-bcdf-d0a4a4da21d4n@googlegroups.com>
<20210922.131249.e1214ce8@yamn.paranoici.org>
<89487d10-5b15-40c1-87d1-9d9b97c687f6n@googlegroups.com>
<slrnskofs2.p19.elvis-85792@notatla.org.uk>
Subject: Re: Yamn Question: Tagging Attacks
Mime-Version: 1.0
Content-Transfer-Encoding: 7bit
Newsgroups: alt.privacy.anon-server
Path: i2pn2.org!i2pn.org!weretis.net!feeder8.news.weretis.net!sewer!news.dizum.net!not-for-mail
Organization: dizum.com - The Internet Problem Provider
X-Abuse: abuse@dizum.com
Injection-Info: sewer.dizum.com - 2001::1/128
 by: Anonymous - Fri, 24 Sep 2021 13:53 UTC

On 9/23/2021 3:49 AM, elvis-85792@notatla.org.uk wrote:

> On 2021-09-22, Stefan Claas <spam.trap.usenet@gmail.com> wrote:
>
>> In short this would mean (fo me) that if Bob's online computer is compromised,
>> let's say with a trojan specialized in adding such a tag, he can create his message
>
> This is not what Ritter (and Zax and me) mean by tagging attacks which can be
> carried out by remailers cheating by altering messages that pass through.
>

Thank you.

As I understand tagging, a malicious operator can inject malformed code
in a Mixmaster message that can potentially enable tracking of that
message? Is that correct?

Or can the actual contents of the message be potentially be altered?

Re: Yamn Question: Tagging Attacks

<1bfc6e2a-4540-4251-b3cd-2408742a72c8n@googlegroups.com>

  copy mid

https://news.novabbs.com/computers/article-flat.php?id=9752&group=alt.privacy.anon-server#9752

  copy link   Newsgroups: alt.privacy.anon-server
X-Received: by 2002:a05:6214:3a9:: with SMTP id m9mr9944112qvy.22.1632494075025;
Fri, 24 Sep 2021 07:34:35 -0700 (PDT)
X-Received: by 2002:ac8:15a:: with SMTP id f26mr4336631qtg.417.1632494074825;
Fri, 24 Sep 2021 07:34:34 -0700 (PDT)
Path: i2pn2.org!i2pn.org!weretis.net!feeder6.news.weretis.net!news.misty.com!border2.nntp.dca1.giganews.com!nntp.giganews.com!news-out.google.com!nntp.google.com!postnews.google.com!google-groups.googlegroups.com!not-for-mail
Newsgroups: alt.privacy.anon-server
Date: Fri, 24 Sep 2021 07:34:34 -0700 (PDT)
In-Reply-To: <20210924.155347.a8a1f83d@yamn.paranoici.org>
Injection-Info: google-groups.googlegroups.com; posting-host=196.244.191.198; posting-account=fR_wFgoAAABSagZELuJBww_NWsvipzWC
NNTP-Posting-Host: 196.244.191.198
References: <20210917.230115.0f335f6a@mix2.remailer.xyz> <d1276c10-15ef-413e-b42c-dc1532f744b1n@googlegroups.com>
<c60e2f66-e407-4bda-a356-eeb78521f5a0n@googlegroups.com> <b7223bd3-4bf6-49e4-bcdf-d0a4a4da21d4n@googlegroups.com>
<20210922.131249.e1214ce8@yamn.paranoici.org> <89487d10-5b15-40c1-87d1-9d9b97c687f6n@googlegroups.com>
<slrnskofs2.p19.elvis-85792@notatla.org.uk> <20210924.155347.a8a1f83d@yamn.paranoici.org>
User-Agent: G2/1.0
MIME-Version: 1.0
Message-ID: <1bfc6e2a-4540-4251-b3cd-2408742a72c8n@googlegroups.com>
Subject: Re: Yamn Question: Tagging Attacks
From: spam.tra...@gmail.com (Stefan Claas)
Injection-Date: Fri, 24 Sep 2021 14:34:35 +0000
Content-Type: text/plain; charset="UTF-8"
Lines: 17
 by: Stefan Claas - Fri, 24 Sep 2021 14:34 UTC

On Friday, September 24, 2021 at 3:53:49 PM UTC+2, Anonymous wrote:
> On 9/23/2021 3:49 AM, elvis...@notatla.org.uk wrote:
> > On 2021-09-22, Stefan Claas <spam.tra...@gmail.com> wrote:
> >
> >> In short this would mean (fo me) that if Bob's online computer is compromised,
> >> let's say with a trojan specialized in adding such a tag, he can create his message
> >
> > This is not what Ritter (and Zax and me) mean by tagging attacks which can be
> > carried out by remailers cheating by altering messages that pass through.

Hi elvis,

I am fully aware of this and only liked to point out what else is possible.

BTW. since you use an X-NA Header I cannot reply directly to you.

Regards
Stefan


computers / alt.privacy.anon-server / Re: Yamn Question: Tagging Attacks

Pages:12
server_pubkey.txt

rocksolid light 0.9.81
clearnet tor