dangers of prism

27
PRISM What the hell is it

Upload: keithrozario

Post on 29-Nov-2014

427 views

Category:

Technology


1 download

DESCRIPTION

What the PRISM program really is, and why there's nothing much you can do about it

TRANSCRIPT

Page 1: Dangers of prism

PRISMWhat the hell is it

Page 2: Dangers of prism

Some backgroundLittle intro to the internet

Page 3: Dangers of prism

This is your internet connection

Client Web Server

Page 4: Dangers of prism

Client

Client Web Server

Page 5: Dangers of prism

Connection

Client Web Server

Page 6: Dangers of prism

Web Server

Client Web Server

Page 7: Dangers of prism

For anonymity and privacy you need to secure all 3:

Secure your Client

Secure your connection

Secure your Web server

Page 8: Dangers of prism

Client

If someone manages to install spyware on your machine they can see everything you do on your client

So it’s your job to make sure there’s no spyware on your client

You are responsible to secure this, and you can--because you own it

Client Web Server

Page 9: Dangers of prism

Connection

Someone performing a wire-tap can see everything you do online

If you want to remain secure you can encrypt the data flow

SSL connection to the Web Server or VPN would resolve this

Client Web Server

Page 10: Dangers of prism

Web Server

Client Web Server

• Your Web server in most cases stores a huge amount of data on you

• But you don’t own it and can’t control the security of it

• However, Google and Facebook have better security than you

Page 11: Dangers of prism

If I secure them all…am I safe?

Even if you secure them all…

Client Web Server

Page 12: Dangers of prism

The NSA has figured out…

The internet is Public

And the NSA has tapped the Public Internet just before the likes of Google, Facebook, Microsoft…

While most of the data is encrypted, some of it isn’t.

Page 13: Dangers of prism

What is PRISMHow it works

Page 14: Dangers of prism

So what did they do?

Client Web Server

Your email exiting Gmail is not encrypted… so they tapped it.

Page 15: Dangers of prism

And they stored it…

Prism

NSA datacenter

Page 16: Dangers of prism

And there’s more

Email

Photos

Chats

File transfers

Login activity

Social media Profiles

Page 17: Dangers of prism

All stored here

And stored for eternity

Could include encrypted data (for decryption when future computing power allows it)

Unfortunately, we don’t know anything for sure.

They have HUGE storage capacity and no qualms about storing data for non-Americans…i.e. 80% of the users of these services

Page 18: Dangers of prism

Why is it called PRISMBecause a PRISM splits light

Page 19: Dangers of prism

Why is it called PRISM?

Client Web Server

• Your internet connection is Fibre-Optic

• Which means the signal is light

• To split light…you use a PRISM

Page 20: Dangers of prism

Why is it called PRISM?

Client Web Server

Prism

• Light split between the webserver you want to access and;

• The NSA Datacenter

Page 21: Dangers of prism

Why is it called Prism?

Prism

NSA datacenter

Prism

Page 22: Dangers of prism

Does TOR protect you?

Client Web Server

NO! TOR doesn’t help

Page 23: Dangers of prism

Does VPN protect you?

Client Web Server

VPN doesn’t help either

Page 24: Dangers of prism

YES!You should be worried

Page 25: Dangers of prism

Nothing muchYou can do about it

Page 26: Dangers of prism

Thanks toSteve Gibson for his AMAZING Analysis on Twit Security

https://www.youtube.com/watch?v=fX8CSMPiTs4

https://www.grc.com/

Page 27: Dangers of prism

Byekeithrozario.com