logoalt Hacker News

esseph • yesterday at 11:13 PM • 1 reply • view on HN

> Please. I control which DNS server I use.

Which is easily sniffable, re-routable, and spoofable unless using DoH/DoT. Those lookups are plaintext. Keep in mind I'm talking about your cloud endpoint.

> It is not relevant to the matter at hand.

Metadata is relevant enough for the US government to drone strike, and relevant enough to issue a collection warrant if one were... desired.

> You're confusing bulk data collection with selective court-ordered data collection.

This is both bafflingly naive and dangerously arrogant.

Just one example, look up FISA Section 702. It does not require a traditional warrant to intercept data. To further this avenue for you, look up the 2024 congressional expansion of Section 702 (via RISAA). This was explicitly done to allow a much broader scope of classification and forced compliance with US intelligence, with extremely limited oversight, and a far reach (they were getting audit fatigue from submitting 702 requests, so why not just do the search and collection and have the courts deal with it later if it's a Real Problem(tm)). This collection doesn't just apply to the datacenter providers, landlords, etc now, it also applies to hardware vendors.


Replies

OutOfHere • today at 7:48 AM

Nothing you say is a valid excuse for complete surrender which is what you're preaching. A responsible person will endeavor in the direction of maximum resistance via maximum encryption. I would rather serve requests at 1/10th the performance than volunteer user data to Cloudflare and the government.