EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

12.10.13

FreeBSD Lost Trust in Hardware Makers, Alleging NSA Tampering

Posted in BSD, UNIX at 3:11 pm by Dr. Roy Schestowitz

FreeBSD

Summary: FreeBSD believes that the NSA tampered with hardware-level random number generators

LINUX may have been made vulnerable by the NSA et al. [1, 2, 3, 4]. There are a lot of speculations and even active discussions about random number generation in Linux, especially as implemented in hardware (e.g. by Intel). Without sufficiently high entropy in random number generators, not only would Linux as a kernel be vulnerable; SSL and SSH too would suffer.

Some of these issues we have covered here before, noting that Red Hat works a little too closely with the NSA. Right now we are quite fascinated by the news [1,2] that FreeBSD won’t use Intel’s and Via’s hardware random number generators. Why? NSA.

In other news about FreeBSD, version 10 is approaching [3,4] after 20 years of development and it should have better graphics support [5]. Marking yet more milestones, the operating system “Is Getting Into The Magazine Business” [6], it runs in the record-breaking [7] PS4 (in some sense [8]). and it should be released some time this month [9]. FreeBSD is not the only BSD game in town (DragonFlyBSD gets some attention [10,11]), but it it the leading among the BSDs, so its voice when it comes to privacy and security issues sure counts.

Related/contextual items from the news:

  1. FreeBSD won’t use Intel & Via’s hardware random number generators, believes NSA has compromised them
  2. “We cannot trust” Intel and Via’s chip-based crypto, FreeBSD developers say

    Developers of the FreeBSD operating system will no longer allow users to trust processors manufactured by Intel and Via Technologies as the sole source of random numbers needed to generate cryptographic keys that can’t easily be cracked by government spies and other adversaries.

    The change, which will be effective in the upcoming FreeBSD version 10.0, comes three months after secret documents leaked by former National Security Agency (NSA) subcontractor Edward Snowden said the US spy agency was able to decode vast swaths of the Internet’s encrypted traffic. Among other ways, The New York Times, Pro Publica, and The Guardian reported in September, the NSA and its British counterpart defeat encryption technologies by working with chipmakers to insert backdoors, or cryptographic weaknesses, in their products.

  3. FreeBSD 10.0 Beta 4 Has Surfaced

    The final beta build ahead of the long-awaited and delayed FreeBSD 10.0 has now been made available.

  4. It Doesn’t Look Like FreeBSD 10 Will Ship This Year
  5. A Roadmap For FreeBSD Graphics Support

    The latest FreeBSD code (for 10.0) supports not only Intel KMS but also the open-source AMD Radeon driver ported from the Linux kernel. This Intel/Radeon KMS support has since trickled into DragonFlyBSD and other BSD platforms. However, not all is up to par when it comes to graphics support on FreeBSD. Here’a a road-map and test matrix with some other items still on the BSD developers’ agenda.

  6. FreeBSD Is Getting Into The Magazine Business
  7. Record Breaking Launch For PS4

    Sony’s PS4 has well and truly landed, becoming the fastest selling video game console in UK history. It overturns the 8 year record held by the original PSP and eclipses the launch week sales of both PS3 and Xbox One.

  8. It’s Official, Playstation 4 Runs FreeBSD Kernel

    Sony has just launched its PlayStation 4 console, and it seems that the rumors about being based on FreeBSD are actually true.

  9. FreeBSD 10.0 Is Still Running Behind Schedule

    There were plans originally to ship FreeBSD 10.0 as stable in November, but that isn’t going to happen. It’s not even clear if FreeBSD 10.0-RELEASE will be ready to ship before the end of the calendar year, but at least progress is being made and when the release does happen there’s a great number of new features.

  10. HAMMER2 File-System Gets Stabilization Improvements

    HAMMER2 file-system improvements have landed hot on the heels of the exciting DragonFlyBSD 3.6 release.

  11. DragonFlyBSD 3.6 Does Intel/AMD KMS, DPorts, Better SMP
Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

What Else is New


  1. Links 26/3/2017: Debian Project Leader Elections, SecureDrop and Alexandre Oliva FSF Winners

    Links for the day



  2. His Master's Voice, Jesper Kongstad, Blocks Discussion of Investigative and Disciplinary Procedures at the EPO

    The Chairman of the Administrative Council of the European Patent Organisation is actively preventing not just the dismissal of Battistelli but also discussion of Battistelli's abuses



  3. Heiko Maas and the State of Germany Viewed as Increasingly Complicit in EPO Scandals and Toxic UPC Agenda

    It is becoming hard if not impossible to interpret silence and inaction from Maas as a form of endorsement for everything the EPO has been doing, with the German delegates displaying more of that apathy which in itself constitutes a form of complicity



  4. With IP Kat Coverage of EPO Scandals Coming to an End (Officially), Techrights and The Register Remain to Cover New Developments

    One final post about the end of Merpel’s EPO coverage, which is unfortunate but understandable given the EPO’s track record attacking the media, including blogs like IP Kat, sites of patent stakeholders, and even so-called media partners



  5. Everyone, Including Patent Law Firms, Will Suffer From the Demise of the EPO

    Concerns about quality of patents granted by the EPO (EPs) are publicly raised by industry/EPO insiders, albeit in an anonymous fashion



  6. Yes, Battistelli's Ban on EPO Strikes (or Severe Limitation Thereof) is a Violation of Human Rights

    Battistelli has curtailed even the right to strike, yet anonymous cowards attempt to blame the staff (as in patent examiners) for not going out of their way to engage in 'unauthorised' strikes (entailing dismissal)



  7. Even the EPO's Administrative Council No Longer Trusts Its Chairman, Battistelli's 'Chinchilla' Jesper Kongstad

    Kongstad's protection of Battistelli, whom he is supposed to oversee, stretches to the point where national representatives (delegates) are being misinformed



  8. Thanks to Merpel, the World Knows EPO Scandals a Lot Better, But It's a Shame That IP Kat Helped UPC

    A look back at Merpel's final post about EPO scandals and the looming threat of the UPC, which UPC opportunists such as Bristows LLP still try hard to make a reality, exploiting bogus (hastily-granted) patents for endless litigation all around Europe



  9. EPO Critics Threatened by Self-Censorship, Comment Censorship, and a Growing Threat to Anonymity

    Putting in perspective the campaign for justice at the EPO, which to a large degree relies on whistleblowers and thus depends a great deal on freedom of the press, freedom of speech, and anonymity



  10. Links 25/3/2017: Maru OS 0.4, C++17 Complete

    Links for the day



  11. Judge and Justice Bashing in the United States, EPC Bashing at the EPO

    Enforcement of the law based on constitutional grounds and based on the European Patent Convention (EPC) in an age of retribution and insults -- sometimes even libel -- against judges



  12. Looking for EPO Nepotism? Forget About Jouve and Look Closely at Europatis Instead.

    Debates about the contract of Jouve with the EPO overlook the elephants in the room, which include companies that are established and run by former EPO chiefs and enjoy a relationship with the EPO



  13. Depressing EPO News: Attacks on Staff, Attacks on Life, Brain Drain, Patents on Life, Patent Trolls Come to Germany, and Spain Being Misled

    A roundup of the latest developments at the EPO combined with feedback from insiders, who are not tolerating their misguided and increasingly abusive management



  14. It Certainly Looks Like Microsoft is Already Siccing Its Patent Trolls, Including Intellectual Ventures, on Companies That Use Linux (Until They Pay 'Protection' Money)

    News about Intellectual Ventures and Finjan Holdings (Microsoft-funded patent trolls) reinforces our allegations -- not mere suspicions anymore -- that Microsoft would 'punish' companies that are not paying subscription fees (hosting) or royalties (patent tax) to Microsoft and are thus in some sense 'indebted' to Microsoft



  15. Links 24/3/2017: Microsoft Aggression, Eudyptula Challenge Status Report

    Links for the day



  16. Bernhard Rapkay, Former MEP and Rapporteur on Unitary Patent, Shoots Down UPC Hopes While UPC Hopefuls Recognise That Spain Isn't Interested Either

    Germany, the UK and Spain remain massive barriers to the UPC -- all this in spite of misleading reports and fake news which attempted to make politicians believe otherwise (for political leverage, by means of dirty lobbying contingent upon misinformation)



  17. Links 23/3/2017: Qt 5.9 Beta, Gluster Storage 3.2

    Links for the day



  18. The Administrative Council of the European Patent Organisation Has Just Buried an Innocent Judge That Battistelli Does Not Like

    An innocent judge (never proven guilty of anything, only publicly defamed with help from Team Battistelli and dubious 'intelligence' gathering) is one of the forgotten casualties of the latest meeting of the Administrative Council (AC), which has become growingly complicit rather than a mere bystander at a 'crime' scene



  19. Nepotism at the European Patent Office and Suspicious Absence of Tenders for Big Projects

    Carte blanche is a French term which now perfectly describes the symptoms encountered in the European Patent Office, more so once led by a lot of French people (Battistelli and his friends)



  20. “Terror” Patent Office Bemoans Terror, Spreads Lies

    Response to some of the latest utterances from the European Patent Office, where patently untruthful claims have rapidly become the norm



  21. China Seems to be Using Patents to Push Foreign Companies Out of China, in the Same Way It Infamously Uses Censorship

    Chinese patent policies are harming competition from abroad, e.g. Japan and the US, and US patent policy is being shaped by its higher courts, albeit not yet effectively combating the element that's destroying productive companies (besieged by patent trolls)



  22. 22,000 Blog Posts

    A special number is reached again, marking another milestone for the site



  23. The EPO is Lying to Its Own Staff About ILO and Endless (Over 2 Years) EPO Mistrials

    The creative writing skills of some spinners who work for Battistelli would have staff believe that all is fine and dandy at the EPO and ILO is dealing effectively with staff complaints about the EPO (even if several years too late)



  24. EPO’s Georg Weber Continues Horrifying Trend of EPO Promoting Software Patents in Defiance of Directive, EPC, and Common Sense

    The EPO's promotion of software patents, even out in the open, is an insult to the notion that the EPO is adhering to or is bound by the rules upon which it maintains its conditional monopoly



  25. Protectionism v Sharing: How the US Supreme Court Decides Patent Cases

    As the US Supreme Court (SCOTUS) starts delivering some decisions we take stock of what's to come regarding patents



  26. Links 22/3/2017: GNOME 3.24, Wine-Staging 2.4 Released

    Links for the day



  27. The Battistelli Regime, With Its Endless Scandals, Threatens to Crash the Unitary Patent (UPC), Stakeholders Concerned

    The disdain and the growing impatience have become a huge liability not just to Battistelli but to the European Patent Office (EPO) as a whole



  28. The Photos the EPO Absolutely Doesn't Want the Public to See: Battistelli is Building a Palace Using Stakeholders' Money

    The Office is scrambling to hide evidence of its out-of-control spendings, which will leave the EPO out of money when the backlog is eliminated by many erroneous grants (or rejections)



  29. In the US Patent System, Evolved Tricks for Bypassing Invalidations of Software Patents and Getting Them Granted by the USPTO

    A roundup of news about patents in the US and how the patent microcosm attempts to patent software in spite of Alice (high-impact SCOTUS decision from 2014)



  30. “Then They Came For Me—And There Was No One Left To Speak For Me.”

    The decreasing number of people who cover EPO scandals (partly due to fear, or Battistelli's notorious "reign of terror") and a cause for hope, as well as a call for help


CoPilotCo

RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

CoPilotCo

Recent Posts