home.social

#sigint — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #sigint, aggregated by home.social.

  1. New quantum snake oil just dropped: "HNDL detection" products and services.

    In my new piece I call out "HNDL detection" market for what it is: exfiltration detection rebranded with a quantum label.

    The core physics, passive collection (fiber splitter, receive-only RF, satellite dish) generates no observable event inside the victim's network. Zero. Your firewall, IDS, EDR, SIEM, NDR, and ML behavioral analytics all operate inside a boundary the collection never crosses. There is no packet to inspect because no packet was generated. There is no behavioral anomaly because the victim's traffic is identical whether or not a copy was made.

    Every "HNDL detection" solution I've examined monitors NetFlow telemetry for outbound volume anomalies, unusual destinations, off-hours transfers, and encrypted tunnels to unexpected endpoints. That detects breaches and exfiltration. Useful, not new, and not what HNDL means.

    The article covers the physics in depth: fiber tap insertion loss (0.002 dB per tap, per US Patent 4,802,723, below OTDR noise floor), the detection boundary problem (even where physical-layer detection is theoretically possible, the entity that can detect is the infra owner, not the data owner), LO leakage as the one genuine RF edge case (Ghostbuster, MobiCom 2018: 5m reliable, 14m best case, defeated by Phantom Eavesdropping LO whitening), and the historical record (Ivy Bells, Room 641A, Tempora: every major passive tap exposed by a human, never a detector).

    Also covers the intent gap: even after a confirmed breach, no technical control can tell you the adversary plans to store data for future quantum decryption. You can confirm a theft. You cannot confirm a timeline.

    The defense is ML-KEM (FIPS 203) on your long-lived confidentiality flows. Not a dashboard.

    postquantum.com/post-quantum/c

    #infosec #cybersecurity #cryptography #PQC #postquantum #quantum #SIGINT #snakeoil

  2. New quantum snake oil just dropped: "HNDL detection" products and services.

    In my new piece I call out "HNDL detection" market for what it is: exfiltration detection rebranded with a quantum label.

    The core physics, passive collection (fiber splitter, receive-only RF, satellite dish) generates no observable event inside the victim's network. Zero. Your firewall, IDS, EDR, SIEM, NDR, and ML behavioral analytics all operate inside a boundary the collection never crosses. There is no packet to inspect because no packet was generated. There is no behavioral anomaly because the victim's traffic is identical whether or not a copy was made.

    Every "HNDL detection" solution I've examined monitors NetFlow telemetry for outbound volume anomalies, unusual destinations, off-hours transfers, and encrypted tunnels to unexpected endpoints. That detects breaches and exfiltration. Useful, not new, and not what HNDL means.

    The article covers the physics in depth: fiber tap insertion loss (0.002 dB per tap, per US Patent 4,802,723, below OTDR noise floor), the detection boundary problem (even where physical-layer detection is theoretically possible, the entity that can detect is the infra owner, not the data owner), LO leakage as the one genuine RF edge case (Ghostbuster, MobiCom 2018: 5m reliable, 14m best case, defeated by Phantom Eavesdropping LO whitening), and the historical record (Ivy Bells, Room 641A, Tempora: every major passive tap exposed by a human, never a detector).

    Also covers the intent gap: even after a confirmed breach, no technical control can tell you the adversary plans to store data for future quantum decryption. You can confirm a theft. You cannot confirm a timeline.

    The defense is ML-KEM (FIPS 203) on your long-lived confidentiality flows. Not a dashboard.

    postquantum.com/post-quantum/c

    #infosec #cybersecurity #cryptography #PQC #postquantum #quantum #SIGINT #snakeoil

  3. New quantum snake oil just dropped: "HNDL detection" products and services.

    In my new piece I call out "HNDL detection" market for what it is: exfiltration detection rebranded with a quantum label.

    The core physics, passive collection (fiber splitter, receive-only RF, satellite dish) generates no observable event inside the victim's network. Zero. Your firewall, IDS, EDR, SIEM, NDR, and ML behavioral analytics all operate inside a boundary the collection never crosses. There is no packet to inspect because no packet was generated. There is no behavioral anomaly because the victim's traffic is identical whether or not a copy was made.

    Every "HNDL detection" solution I've examined monitors NetFlow telemetry for outbound volume anomalies, unusual destinations, off-hours transfers, and encrypted tunnels to unexpected endpoints. That detects breaches and exfiltration. Useful, not new, and not what HNDL means.

    The article covers the physics in depth: fiber tap insertion loss (0.002 dB per tap, per US Patent 4,802,723, below OTDR noise floor), the detection boundary problem (even where physical-layer detection is theoretically possible, the entity that can detect is the infra owner, not the data owner), LO leakage as the one genuine RF edge case (Ghostbuster, MobiCom 2018: 5m reliable, 14m best case, defeated by Phantom Eavesdropping LO whitening), and the historical record (Ivy Bells, Room 641A, Tempora: every major passive tap exposed by a human, never a detector).

    Also covers the intent gap: even after a confirmed breach, no technical control can tell you the adversary plans to store data for future quantum decryption. You can confirm a theft. You cannot confirm a timeline.

    The defense is ML-KEM (FIPS 203) on your long-lived confidentiality flows. Not a dashboard.

    postquantum.com/post-quantum/c

    #infosec #cybersecurity #cryptography #PQC #postquantum #quantum #SIGINT #snakeoil

  4. New quantum snake oil just dropped: "HNDL detection" products and services.

    In my new piece I call out "HNDL detection" market for what it is: exfiltration detection rebranded with a quantum label.

    The core physics, passive collection (fiber splitter, receive-only RF, satellite dish) generates no observable event inside the victim's network. Zero. Your firewall, IDS, EDR, SIEM, NDR, and ML behavioral analytics all operate inside a boundary the collection never crosses. There is no packet to inspect because no packet was generated. There is no behavioral anomaly because the victim's traffic is identical whether or not a copy was made.

    Every "HNDL detection" solution I've examined monitors NetFlow telemetry for outbound volume anomalies, unusual destinations, off-hours transfers, and encrypted tunnels to unexpected endpoints. That detects breaches and exfiltration. Useful, not new, and not what HNDL means.

    The article covers the physics in depth: fiber tap insertion loss (0.002 dB per tap, per US Patent 4,802,723, below OTDR noise floor), the detection boundary problem (even where physical-layer detection is theoretically possible, the entity that can detect is the infra owner, not the data owner), LO leakage as the one genuine RF edge case (Ghostbuster, MobiCom 2018: 5m reliable, 14m best case, defeated by Phantom Eavesdropping LO whitening), and the historical record (Ivy Bells, Room 641A, Tempora: every major passive tap exposed by a human, never a detector).

    Also covers the intent gap: even after a confirmed breach, no technical control can tell you the adversary plans to store data for future quantum decryption. You can confirm a theft. You cannot confirm a timeline.

    The defense is ML-KEM (FIPS 203) on your long-lived confidentiality flows. Not a dashboard.

    postquantum.com/post-quantum/c

    #infosec #cybersecurity #cryptography #PQC #postquantum #quantum #SIGINT #snakeoil

  5. New quantum snake oil just dropped: "HNDL detection" products and services.

    In my new piece I call out "HNDL detection" market for what it is: exfiltration detection rebranded with a quantum label.

    The core physics, passive collection (fiber splitter, receive-only RF, satellite dish) generates no observable event inside the victim's network. Zero. Your firewall, IDS, EDR, SIEM, NDR, and ML behavioral analytics all operate inside a boundary the collection never crosses. There is no packet to inspect because no packet was generated. There is no behavioral anomaly because the victim's traffic is identical whether or not a copy was made.

    Every "HNDL detection" solution I've examined monitors NetFlow telemetry for outbound volume anomalies, unusual destinations, off-hours transfers, and encrypted tunnels to unexpected endpoints. That detects breaches and exfiltration. Useful, not new, and not what HNDL means.

    The article covers the physics in depth: fiber tap insertion loss (0.002 dB per tap, per US Patent 4,802,723, below OTDR noise floor), the detection boundary problem (even where physical-layer detection is theoretically possible, the entity that can detect is the infra owner, not the data owner), LO leakage as the one genuine RF edge case (Ghostbuster, MobiCom 2018: 5m reliable, 14m best case, defeated by Phantom Eavesdropping LO whitening), and the historical record (Ivy Bells, Room 641A, Tempora: every major passive tap exposed by a human, never a detector).

    Also covers the intent gap: even after a confirmed breach, no technical control can tell you the adversary plans to store data for future quantum decryption. You can confirm a theft. You cannot confirm a timeline.

    The defense is ML-KEM (FIPS 203) on your long-lived confidentiality flows. Not a dashboard.

    postquantum.com/post-quantum/c

    #infosec #cybersecurity #cryptography #PQC #postquantum #quantum #SIGINT #snakeoil

  6. @gorplop good one - it is online somewhere, it may be in a backup or in the firmware #sigint

    maybe just call support US Support: +1-800-Anritsu (1-800-267-4878)

  7. @gorplop good one - it is online somewhere, it may be in a backup or in the firmware #sigint

    maybe just call support US Support: +1-800-Anritsu (1-800-267-4878)

  8. @gorplop good one - it is online somewhere, it may be in a backup or in the firmware #sigint

    maybe just call support US Support: +1-800-Anritsu (1-800-267-4878)

  9. @gorplop good one - it is online somewhere, it may be in a backup or in the firmware #sigint

    maybe just call support US Support: +1-800-Anritsu (1-800-267-4878)

  10. 1/2
    Der #NomenNescioClub, der für die #Russki #SIGINT Sause verantwortlich ist, hat übrigens jetzt ein Logo. Ab Samstag gibts auch Sticker. Alles courtesy

    pixelcat.at

  11. 1/2
    Der #NomenNescioClub, der für die #Russki #SIGINT Sause verantwortlich ist, hat übrigens jetzt ein Logo. Ab Samstag gibts auch Sticker. Alles courtesy

    pixelcat.at

  12. 1/2
    Der #NomenNescioClub, der für die #Russki #SIGINT Sause verantwortlich ist, hat übrigens jetzt ein Logo. Ab Samstag gibts auch Sticker. Alles courtesy

    pixelcat.at

  13. 1/2
    Der #NomenNescioClub, der für die #Russki #SIGINT Sause verantwortlich ist, hat übrigens jetzt ein Logo. Ab Samstag gibts auch Sticker. Alles courtesy

    pixelcat.at

  14. 1/2
    Der #NomenNescioClub, der für die #Russki #SIGINT Sause verantwortlich ist, hat übrigens jetzt ein Logo. Ab Samstag gibts auch Sticker. Alles courtesy

    pixelcat.at

  15. 2/2...to the work at hand. Process tends to keep us "in the box" , while an exploratory mindset considers a more general care and feeding of ideas that might be otherwise off the shell. How would we otherwise make connections between things like
    #Information , #Entropy and #BlackHoles, and how the heck are those related to #Cryptography or #SIGINT ? The idea of "staying in your lane" should be anathema in multidisciplinary settings. Be the sponge

  16. 2/2...to the work at hand. Process tends to keep us "in the box" , while an exploratory mindset considers a more general care and feeding of ideas that might be otherwise off the shell. How would we otherwise make connections between things like
    #Information , #Entropy and #BlackHoles, and how the heck are those related to #Cryptography or #SIGINT ? The idea of "staying in your lane" should be anathema in multidisciplinary settings. Be the sponge

  17. 2/2...to the work at hand. Process tends to keep us "in the box" , while an exploratory mindset considers a more general care and feeding of ideas that might be otherwise off the shell. How would we otherwise make connections between things like
    #Information , #Entropy and #BlackHoles, and how the heck are those related to #Cryptography or #SIGINT ? The idea of "staying in your lane" should be anathema in multidisciplinary settings. Be the sponge

  18. This FABULOUS... missed it, but an artist transmitted a message from space (on an ESA spaceprobe) for people to receive and decode on Earth, as a simulated SETI message. h/t @michael_w_busch

    "...The project consists in transmitting a simulated extraterrestrial message as part of a live performance, using an ESA spacecraft as celestial source. The objective of the project is to involve the world-wide Search for Extraterrestrial Intelligence community, professionals from different fields and the broader public, in the reception, decoding and interpretation of the message. ..."

    asignin.space/about/

    #hamradio #signals #sigint #space

  19. This FABULOUS... missed it, but an artist transmitted a message from space (on an ESA spaceprobe) for people to receive and decode on Earth, as a simulated SETI message. h/t @michael_w_busch

    "...The project consists in transmitting a simulated extraterrestrial message as part of a live performance, using an ESA spacecraft as celestial source. The objective of the project is to involve the world-wide Search for Extraterrestrial Intelligence community, professionals from different fields and the broader public, in the reception, decoding and interpretation of the message. ..."

    asignin.space/about/

    #hamradio #signals #sigint #space

  20. This FABULOUS... missed it, but an artist transmitted a message from space (on an ESA spaceprobe) for people to receive and decode on Earth, as a simulated SETI message. h/t @michael_w_busch

    "...The project consists in transmitting a simulated extraterrestrial message as part of a live performance, using an ESA spacecraft as celestial source. The objective of the project is to involve the world-wide Search for Extraterrestrial Intelligence community, professionals from different fields and the broader public, in the reception, decoding and interpretation of the message. ..."

    asignin.space/about/

    #hamradio #signals #sigint #space

  21. This FABULOUS... missed it, but an artist transmitted a message from space (on an ESA spaceprobe) for people to receive and decode on Earth, as a simulated SETI message. h/t @michael_w_busch

    "...The project consists in transmitting a simulated extraterrestrial message as part of a live performance, using an ESA spacecraft as celestial source. The objective of the project is to involve the world-wide Search for Extraterrestrial Intelligence community, professionals from different fields and the broader public, in the reception, decoding and interpretation of the message. ..."

    asignin.space/about/

    #hamradio #signals #sigint #space

  22. This FABULOUS... missed it, but an artist transmitted a message from space (on an ESA spaceprobe) for people to receive and decode on Earth, as a simulated SETI message. h/t @michael_w_busch

    "...The project consists in transmitting a simulated extraterrestrial message as part of a live performance, using an ESA spacecraft as celestial source. The objective of the project is to involve the world-wide Search for Extraterrestrial Intelligence community, professionals from different fields and the broader public, in the reception, decoding and interpretation of the message. ..."

    asignin.space/about/

    #hamradio #signals #sigint #space

  23. Update US Airforce:

    Es gab offenbar zwei solche Vorfälle. Die beiden #SIGINT-Turboprops waren mit anderen Callsigns unterwegs, als sie bei Air Control angemeldet waren. Angeblich zu einem NATO-Routinetraining nach Rumänien. Da liegt die Vermutung schon nahe, dass ihre eigentliche Destination weiter östlich war und sie deshalb die kürzeste Route nehmen mussten.

    Das sind einmotorige Turboprops, die relativ langsam fliegen können, ideal um Funksignale am Boden zu mappen.

  24. Update US Airforce:

    Es gab offenbar zwei solche Vorfälle. Die beiden #SIGINT-Turboprops waren mit anderen Callsigns unterwegs, als sie bei Air Control angemeldet waren. Angeblich zu einem NATO-Routinetraining nach Rumänien. Da liegt die Vermutung schon nahe, dass ihre eigentliche Destination weiter östlich war und sie deshalb die kürzeste Route nehmen mussten.

    Das sind einmotorige Turboprops, die relativ langsam fliegen können, ideal um Funksignale am Boden zu mappen.

  25. Update US Airforce:

    Es gab offenbar zwei solche Vorfälle. Die beiden #SIGINT-Turboprops waren mit anderen Callsigns unterwegs, als sie bei Air Control angemeldet waren. Angeblich zu einem NATO-Routinetraining nach Rumänien. Da liegt die Vermutung schon nahe, dass ihre eigentliche Destination weiter östlich war und sie deshalb die kürzeste Route nehmen mussten.

    Das sind einmotorige Turboprops, die relativ langsam fliegen können, ideal um Funksignale am Boden zu mappen.

  26. Update US Airforce:

    Es gab offenbar zwei solche Vorfälle. Die beiden #SIGINT-Turboprops waren mit anderen Callsigns unterwegs, als sie bei Air Control angemeldet waren. Angeblich zu einem NATO-Routinetraining nach Rumänien. Da liegt die Vermutung schon nahe, dass ihre eigentliche Destination weiter östlich war und sie deshalb die kürzeste Route nehmen mussten.

    Das sind einmotorige Turboprops, die relativ langsam fliegen können, ideal um Funksignale am Boden zu mappen.

  27. Update US Airforce:

    Es gab offenbar zwei solche Vorfälle. Die beiden #SIGINT-Turboprops waren mit anderen Callsigns unterwegs, als sie bei Air Control angemeldet waren. Angeblich zu einem NATO-Routinetraining nach Rumänien. Da liegt die Vermutung schon nahe, dass ihre eigentliche Destination weiter östlich war und sie deshalb die kürzeste Route nehmen mussten.

    Das sind einmotorige Turboprops, die relativ langsam fliegen können, ideal um Funksignale am Boden zu mappen.

  28. Gestern haben schon wieder zwei Piloten der US Airforce geglaubt, sie könnten ohne Anmeldung über unseren Airspace drüberbrettern.
    Weit sinds mit ihren #SIGINT-Mühlen ned gekommen. Überm Toten Gebirge hieß es "identifizieren, dann schleichts euch."

    twz.com/air/u-s-air-force-spec

  29. Gestern haben schon wieder zwei Piloten der US Airforce geglaubt, sie könnten ohne Anmeldung über unseren Airspace drüberbrettern.
    Weit sinds mit ihren #SIGINT-Mühlen ned gekommen. Überm Toten Gebirge hieß es "identifizieren, dann schleichts euch."

    twz.com/air/u-s-air-force-spec

  30. Gestern haben schon wieder zwei Piloten der US Airforce geglaubt, sie könnten ohne Anmeldung über unseren Airspace drüberbrettern.
    Weit sinds mit ihren #SIGINT-Mühlen ned gekommen. Überm Toten Gebirge hieß es "identifizieren, dann schleichts euch."

    twz.com/air/u-s-air-force-spec

  31. Gestern haben schon wieder zwei Piloten der US Airforce geglaubt, sie könnten ohne Anmeldung über unseren Airspace drüberbrettern.
    Weit sinds mit ihren #SIGINT-Mühlen ned gekommen. Überm Toten Gebirge hieß es "identifizieren, dann schleichts euch."

    twz.com/air/u-s-air-force-spec

  32. Gestern haben schon wieder zwei Piloten der US Airforce geglaubt, sie könnten ohne Anmeldung über unseren Airspace drüberbrettern.
    Weit sinds mit ihren #SIGINT-Mühlen ned gekommen. Überm Toten Gebirge hieß es "identifizieren, dann schleichts euch."

    twz.com/air/u-s-air-force-spec

  33. Die russische Botschaft in Wien hat laut Außenministerin Beate Meinl-Reisinger (NEOS) mehrere Antennen von ihrem Dach entfernen lassen, die offenbar zu Spionagezwecken genutzt wurden.

    Angeblich wurden 3 #SIGINT Schüsseln demontiert. In 1220 gibt es rund 20. Auf der Afrika-Relaisstation in 1030 weitere 6. Und das Kulturinstitut hamma noch ned amal angeschaut. Das ist mehr ein symbolischer Akt gewesen, aber immerhin eine Premiere:

    Австрия говорила открытым текстом

    orf.at/av/video/onDemandVideoN

  34. Die russische Botschaft in Wien hat laut Außenministerin Beate Meinl-Reisinger (NEOS) mehrere Antennen von ihrem Dach entfernen lassen, die offenbar zu Spionagezwecken genutzt wurden.

    Angeblich wurden 3 #SIGINT Schüsseln demontiert. In 1220 gibt es rund 20. Auf der Afrika-Relaisstation in 1030 weitere 6. Und das Kulturinstitut hamma noch ned amal angeschaut. Das ist mehr ein symbolischer Akt gewesen, aber immerhin eine Premiere:

    Австрия говорила открытым текстом

    orf.at/av/video/onDemandVideoN

  35. Die russische Botschaft in Wien hat laut Außenministerin Beate Meinl-Reisinger (NEOS) mehrere Antennen von ihrem Dach entfernen lassen, die offenbar zu Spionagezwecken genutzt wurden.

    Angeblich wurden 3 #SIGINT Schüsseln demontiert. In 1220 gibt es rund 20. Auf der Afrika-Relaisstation in 1030 weitere 6. Und das Kulturinstitut hamma noch ned amal angeschaut. Das ist mehr ein symbolischer Akt gewesen, aber immerhin eine Premiere:

    Австрия говорила открытым текстом

    orf.at/av/video/onDemandVideoN