Andrey Bezrukov and Elena Vavilova were Russian spies who operated in the USA for 20 years (this is the basis for "The Americans"); they were caught in 2010. "Compromised," is the new memoir by Peter Strzok, the FBI agent who had their case.

hmhbooks.com/shop/books/Com…

1/
As @mattblaze writes, a throwaway detail in the book resolves a longstanding cryptographic mystery: that of a Cuban "numbers station" that operated for years, including a decade where it behaved very erratically (by numbers station standards).

mattblaze.org/blog/neinnines/

2/
Some background. Numbers stations - ratio stations in which people (or synthesized voices) read out strings of random numbers - are a means of messages for use with "one-time pads," a cryptographic tool that is, in theory, unbreakable.

3/
One-time pads are collections of random numbers used to encipher messages through simple operations: adding each byte of your message to the next number on the pad. If the pad is truly random, secret and never reused, the code can't be broken.

numbers-stations.com/articles/how-t…

4/
If your spies are sent abroad with a thick one-time pad, then you can simply broadcast your messages over the entire region in which they operate, and they can use their pads to decipher the messages, while your adversaries just get random numbers

5/
Numbers stations, like the powerful shortwave transmitter in Bauta, Cuba, were used to communicate with Soviet (and, later, Russian) spies in the US in this way.

6/
Though one-time pad messages can't be deciphered, it's still possible to leak information using numbers stations. If a radio station ceases operation every time a spy travels, then your adversary can match the station's operating schedule with suspects' itineraries.

7/
To prevent this "traffic analysis" attack, the station broadcasted dummy traffic (random numbers that WEREN'T encoded messages) every single day, even if the spies were not listening that day.

8/
However, for mysterious reasons - still not understood - the dummy traffic never contained the number nine ("nueve"). That made it easy to tell the real numbers station traffic from the dummy traffic, and from there, it was possible to derive the spies' travel schedules.

9/
Even with this glaring error, it took a DECADE for the FBI to get enough timing information to make their move. That was a whole decade in which the Cuban numbers station was making this weird, stupid blunder.

10/
One-time pads are incredibly powerful, but they're also super-awkward and unforgiving. An error as simple as pad re-use can blow them up, as happened with the notorious Venona affair:

nsa.gov/news-features/…

11/
As Blaze writes, "OTPs have long been a favorite of hucksters selling supposedly 'unbreakable' crypto. Remember this story next time someone tries to sell you their super-secure one-time-pad crypto. If actual Russian spies can't use it securely, chances are neither can you."

12/
Blaze was one of the researchers who followed - and recorded! - the Cuban numbers station, and noted the mysterious and telling absence of "nueve" in some of the traffic. He's posted a recording of the station to his site:

mattblaze.org/private/17435k…

eof/

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with AFK Cory Doctorow NONCONSENSUAL BLUE TICK

AFK Cory Doctorow NONCONSENSUAL BLUE TICK Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @doctorow

Jun 28
In 2017, Equifax suffered the worst breach in history, leaking the deep, nonconsensual dossiers it had compiled on 148m Americans, 15m Britons and 19k Canadians, to form an immortal, undeletable reservoir of kompromat and readymade identity-theft:



1/ en.wikipedia.org/wiki/2017_Equi…
A Depression-era photo of a used car lot with three cars for sale. It has been hand-tinted. The sky has been replaced with a 'code waterfall' effect as seen in the credit sequences of the Wachowskis' 'Matrix' movies. All of the car headlights have been replaced with the hostile red eye of 'HAL 9000' in Kubrick's '2001: A Space Odyssey.'   Image: Cryteria (modified) https://commons.wikimedia.org/wiki/File:HAL9000.svg  CC BY 3.0 https://creativecommons.org/licenses/by/3.0/deed.en
If you'd like an essay-formatted version of this thread to read or share, here's a link to it on , my surveillance-free, ad-free, tracker-free blog:



2/pluralistic.net
pluralistic.net/2024/06/28/dea…
Equifax knew the breach was coming. It wasn't just their top execs liquidating their stock in Equifax before the announcement of the breach - it was also that they ignored *years* of increasingly urgent warnings from IT staff about the problems with their server security.

3/
Read 91 tweets
Jun 27
We're living through one of those moments when millions of people become suddenly and overwhelmingly interested in fair use, one of the subtlest and worst-understood aspects of copyright law. It's not a subject you can master by skimming a Wikipedia article!

1/ EFF's banner for the 'Unfiltered' white paper, depicting TV static overlaid with a parody of the Youtube logo and wordmark, but instead of 'Youtube' it reads 'Fair Use,' with glitched vertical and horizontal sync that distorts the logo.   Image: EFF https://www.eff.org/files/banner_library/yt-fu-1b.png  CC BY 3.0 https://creativecommons.org/licenses/by/3.0/deed.en
If you'd like an essay-formatted version of this thread to read or share, here's a link to it on , my surveillance-free, ad-free, tracker-free blog:



2/pluralistic.net
pluralistic.net/2024/06/27/nuk…
I've been talking fair use with laypeople for decades. I've met so many people with the unshakable, serene confidence of the *truly* wrong, like those who think fair use means you can always take x words from a book, or y seconds from a song, and no more.

3/
Read 104 tweets
Jun 26
EVs won't save the planet. Ultimately, the material bill for billions of individual vehicles and the unavoidable geometry of more cars-more traffic-more roads-greater distances-more cars dictate that the future of our cities and planet requires public transit - *lots* of it.

1/ A firebombed cityscape under a smoky red sky. In the foreground is a gigantic brick, most of the length of a city block, with a set of solar panels atop it.  Image: 臺灣古寫真上色 (modified) https://commons.wikimedia.org/wiki/File:Raid_on_Kagi_City_1945.jpg  Grendelkhan (modified) https://commons.wikimedia.org/wiki/File:Ground_mounted_solar_panels.gk.jpg  CC BY-SA 4.0 https://creativecommons.org/licenses/by-sa/4.0/deed.en
If you'd like an essay-formatted version of this thread to read or share, here's a link to it on , my surveillance-free, ad-free, tracker-free blog:



2/pluralistic.net
pluralistic.net/2024/06/26/unp…
But no matter how much public transit we install, there's always going to be *some* personal vehicles on the road, and not just bikes, ebikes and scooters.

3/
Read 82 tweets
Jun 24
Today's Twitter threads (a Twitter thread).

NOTE: I DID NOT BUY A BLUE TICK. IT WAS NONCONSENSUALLY ADDED TO MY ACCOUNT.

Inside: Weinersmith and Boulet's "Bea Wolf"; and more!

Archived at:

#Pluralistic

1/ pluralistic.net/2024/06/24/awe…
The Firstsecond cover for 'Bea Wolf.'
On July 14, I'm giving the closing keynote for the fifteenth Hackers On Planet Earth, in Queens, NY:



On July 20, I'm appearing at Chicago's @BookvillExiles:



2/hope.net/talks.html
exileinbookville.com/events/39808
Support me this summer on the Clarion Write-A-Thon and help raise money for the @ClarionUCSD Science Fiction and Fantasy Writers' Workshop!



3/clarionwriteathon.com/members/profil…
Read 26 tweets
Jun 17
There's a truly comforting sociopathy snuggled inside capitalism ideology: if markets are systems for identifying and rewarding virtue, ability and value, then anyone who's failing in the system is actually *unworthy*, not unlucky.

1/ A 19th century woodcut depicting a sadistically grinning jailer standing in the door of a cell of a wretched debtor's prison, in which three prisoners sit in attitudes of misery and hopelessness.
If you'd like an essay-formatted version of this thread to read or share, here's a link to it on , my surveillance-free, ad-free, tracker-free blog:



2/pluralistic.net
pluralistic.net/2024/06/17/lov…
That means the winners are not just lucky (and certainly not merely selfish), but actually *the best* and they owe nothing to their social inferiors apart from what their own charitable impulses dictate.

3/
Read 69 tweets
Jun 13
The US has the rich world's most expensive health care system, and that system delivers the worst health outcomes of any country in the rich world.

1/ A male figure with a doctor's scrub-cab and forehead mirror holds another male figure, head swaddled in bloody bandages, by his bunched collar. The doctor's arm is pulled back to punch the patient. The doctor's fist is translucent, revealing his jacket and tie. They are posed on a chalkboard background. Written on this chalkboard, in chalk handwriting font, is endless lines of cryptic medical billing-codes.
If you'd like an essay-formatted version of this thread to read or share, here's a link to it on , my surveillance-free, ad-free, tracker-free blog:



2/pluralistic.net
pluralistic.net/2024/06/13/a-p…
Also, the US is unique in relying on market forces as the primary regulator of its health care system. All of these facts are related!

3/
Read 56 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(