Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
NSAs Big Surprise: Govt Agency Is Actually Doing Its Job
Newest First  |  Oldest First  |  Threaded View
<<   <   Page 2 / 2
tjensen846
50%
50%
tjensen846,
User Rank: Apprentice
4/4/2014 | 11:14:27 AM
George III
No doubt there were colonists who believed that King George III was "doing what [he] believed to be in the best interests of the country, as well as what is morally and legally right." 

But they were wrong too.
DOUG01
0%
100%
DOUG01,
User Rank: Apprentice
4/4/2014 | 10:23:09 AM
Missing the obvious
In addition to the excellent points already posted, you've overlooked the obvious.  People who are upset with Target have protested by not buying from Target.  Target revenue is down some 40% since the credit card theft.  When people vote with their money, the effect is immediate.  People cannot quit buying from NSA, so there is no alternative but to protest and contact their government representatives as the author suggests.  When people vote at the polling place, or contact their senator/representative, they do not get immediate action, partly because they don't have enough money individually to influence congress. Their influence is very small unless the congressman is flooded with millions of phone calls and emails.  This requires massive organization, which most individuals do not have time for.  Even with a massive campaign that influenced members of congress, change would take months or years.  The only group who could have an immediate effect on congress is the large corporations who donate huge sums of money to finance congressional election campaigns.  If  big business was really upset, they could easlily and rapidly initiate change in NSA policy by threatening to withhold election campaign funds or threaten to suppport another candidate.
GeoffreyL842
100%
0%
GeoffreyL842,
User Rank: Apprentice
4/4/2014 | 10:03:38 AM
False dichotomy
>Nor does there seem to be any public outrage toward the criminals

>who stole the credit cards from Target or who committed similar thefts...

This is an example of several logical fallacies.  The first is FALSE DICHOTOMY-- what you are presenting is not an either/or choice.  The worse one, though, "ARGUMENT BY IRRELEVANCY" (commonly known as "Red Herring").  Basically, you're trying to distract people from their quite reasonable objections to the NSA by bringing up a completely different subject.  Your argument boils down to "look, here's something else!  Squirrel!"

A third, somewhat more subtle logic flaw here is categorization error (commonly called "apples and oranges.")  The Target Hackers don't claim to be working for the government that (in principle) I elected, nor do they claim to be doing their bad things with a claim that they are benefitting me, nor are they subject to public pressure.  They are criminals. Are you are putting forth the premise the NSA are criminals, and thus the NSA and the Target Hackers are in a common category, but the Target Hackers are WORSE criminals? 
geriatric
100%
0%
geriatric,
User Rank: Moderator
4/4/2014 | 8:26:14 AM
Not Doing the Job You Think
Your argument falls flat when one looks at the Boston Marathon bombing. There was an abundance of evidence to raise enough red flags on the perps. The NSA didn't see them for one simple reason - that's not who they're looking for.
<<   <   Page 2 / 2


NSA Appoints Rob Joyce as Cyber Director
Dark Reading Staff 1/15/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win an Amazon Gift Card! Click Here
Latest Comment: I like the old version of Google assistant much better.
Current Issue
2020: The Year in Security
Download this Tech Digest for a look at the biggest security stories that - so far - have shaped a very strange and stressful year.
Flash Poll
Assessing Cybersecurity Risk in Today's Enterprises
Assessing Cybersecurity Risk in Today's Enterprises
COVID-19 has created a new IT paradigm in the enterprise -- and a new level of cybersecurity risk. This report offers a look at how enterprises are assessing and managing cyber-risk under the new normal.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-8567
PUBLISHED: 2021-01-21
Kubernetes Secrets Store CSI Driver Vault Plugin prior to v0.0.6, Azure Plugin prior to v0.0.10, and GCP Plugin prior to v0.2.0 allow an attacker who can create specially-crafted SecretProviderClass objects to write to arbitrary file paths on the host filesystem, including /var/lib/kubelet/pods.
CVE-2020-8568
PUBLISHED: 2021-01-21
Kubernetes Secrets Store CSI Driver versions v0.0.15 and v0.0.16 allow an attacker who can modify a SecretProviderClassPodStatus/Status resource the ability to write content to the host filesystem and sync file contents to Kubernetes Secrets. This includes paths under var/lib/kubelet/pods that conta...
CVE-2020-8569
PUBLISHED: 2021-01-21
Kubernetes CSI snapshot-controller prior to v2.1.3 and v3.0.2 could panic when processing a VolumeSnapshot custom resource when: - The VolumeSnapshot referenced a non-existing PersistentVolumeClaim and the VolumeSnapshot did not reference any VolumeSnapshotClass. - The snapshot-controller crashes, ...
CVE-2020-8570
PUBLISHED: 2021-01-21
Kubernetes Java client libraries in version 10.0.0 and versions prior to 9.0.1 allow writes to paths outside of the current directory when copying multiple files from a remote pod which sends a maliciously crafted archive. This can potentially overwrite any files on the system of the process executi...
CVE-2020-8554
PUBLISHED: 2021-01-21
Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.externalIPs field, to intercept traffic to that IP address. Additionally, an attacker who is able to patch the status (which is considered a privileged operation and should not typicall...