• 0 Posts
  • 18 Comments
Joined 1 year ago
cake
Cake day: June 14th, 2023

help-circle






  • That makes it sound as if using a foreign VPN can keep you totally anonymous. It can’t. The NSA has authority to also operate in other countries. They can and surely do MITM any traffic going from the U.S. to another country. They can and probably do social engineer or zero day compromise a Mullvad VPN engineer’s credentials. Again, there is precedent for this. Not so much for piracy, but for sure for the very bad guys. They can keep your data forever and use it if they decide piracy is being very bad.

    You are right that there is no precedent for the NSA going after piracy - and I’m definitely not even talking about piracy specifically here. But I do think everyone should know they are not as anonymous as they think they are any time they use the internet.


  • The NSA has unlimited legal power in this context. They can legally go to any US VPN, copy all traffic onto their massive servers, and use it as they want. They probably already do this, although that claim is unverifiable. That traffic contains your IP address and the websites you’ve viewed, clear data of torrents you’ve downloaded, etc. Mullvad, being outside its jurisdiction, is possibly safer, but presumably since they operate servers in the United States at least those could be sniffed. There is precedent for all of this.

    While it’s unlikely for you to specifically be targeted, my point is that you can never be truly anonymous on the internet.



  • That sentiment isn’t so much about piracy, but general security. Do keep in mind that the NSA can easily sniff your VPN traffic, even through logless Mullvad in theory, and access your account information to correlate and deanonymize you via subpoena. This is done routinely, and there are thousands of illegal subpoenas done yearly with no repercussion. Fortunately it seems the NSA is only going after heinous criminals, but that could also change. To be truly NSA safe is nearly impossible - did you know your password can be determined by a simple audio recording of you typing it? The NSA has frequently snuck into private residence to install keyloggers as well. What will a VPN matter in such a case?

    So a VPN might prevent a DCMA notice from your ISP, but if the NSA starts caring about piracy y’all are out of luck.