Comment The Real Villains are Not NSA and MI6 (Score 1) 256
Why is everyone so worried about NSA and MI6? Chances are the stuff you post publicly would be enough to send a squad of soldiers to your door if the government was so inclined.
The real problem is the private parties that plant malware on your computer or hack sites to get passwords and credit card numbers. And encryption isn't worth much. I read an article about someone who had a huge hash table and just used a brute force approach to generate passwords and see what matched the hash table. Pass phrases? He just pulled clumps of text out of common books. At the end he had about a billion hashes. His purpose was to decrypt a huge cache of leaked e-mails, but you can see how bad guys could exploit the technique. If they have the hashing algorithm and the hash table, making your personal password more secure is like hiding under a desk during a bank robbery and hoping they don't find you.
So what to do? Well, we could absolutely prohibit private monitoring of any computer, prohibit emplacement of software on any computer without specific permission of the user, prohibit possession of SSN's and credit card numbers without specific and narrowly drafted authorization. We could require O/S's to allow blocking of all external software installation. We could require computers to keep software in separate read-only memory, and I mean ONLY - make it physically impossible to write to that space from the CPU.
And while we do have laws that do some of those things, they're full of back doors and exceptions. Not mandated by the NSA. No, mandated by advertisers and software vendors. How can they see if you're using a paid version if they can't get into your computer? How can they gather those precious demographics without installing stuff on your computer? How can they tell if you're running AdBlock? How can they feed you those popups? These are the people who are keeping computers insecure and vulnerable to exploits, not the NSA. For all the hoo-hah over the NSA, nobody has really been able to produce a real victim, but millions of people are victims of identity theft every year, thanks to the built-in vulnerabilities mandated by advertisers and vendors.