scy, (edited )
@scy@chaos.social avatar

Interesting. Apparently, both #Hetzner's and #Linode's German datacenters were used to #MitM connections to jabber.ru servers hosted there. There's a detailed postmortem here:
https://notes.valdikss.org.ru/jabber.ru-mitm/

I'd take these allegations with a grain of salt. But I must say that MitM'ing with a #LetsEncrypt certificate and then forgetting to renew it, leading to discovery, sounds like the most German law enforcement thing ever.

via https://devco.social/@ripienaar/111268338360338392

#Germany #Russia #jabberRU #jabber_ru

scy,
@scy@chaos.social avatar

A very good (but also pretty long) post on how this attack could have possibly been detected and probably been mitigated:
https://www.devever.net/~hl/xmpp-incident

via https://chaos.social/@lasagne/111273031750419721

#Hetzner #Linode #MitM

matthegap,
@matthegap@chaos.social avatar

@scy Could be an oversight, could also very well be intentional on Hetzner's side to subvert an imprecise wiretapping order ("they only forced us to setup and run the mitm host, not to update it")

scy,
@scy@chaos.social avatar

@matthegap Hm. Valid point actually.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • Germany
  • DreamBathrooms
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • mdbf
  • normalnudes
  • megavids
  • osvaldo12
  • tester
  • GTA5RPClips
  • cubers
  • everett
  • tacticalgear
  • ethstaker
  • provamag3
  • anitta
  • Leos
  • cisconetworking
  • JUstTest
  • lostlight
  • All magazines