Go Back   IceInSpace > General Astronomy > General Chat
Register FAQ Calendar Today's Posts Search

Reply
 
Thread Tools Rate Thread
  #241  
Old 09-08-2016, 08:17 PM
doppler's Avatar
doppler (Rick)
Registered User

doppler is offline
 
Join Date: Nov 2012
Location: Mackay
Posts: 1,691
Having trouble logging on LOL its going to be a long night.

http://www.news.com.au/national/frus...698075cec306b2
Reply With Quote
  #242  
Old 09-08-2016, 08:39 PM
AndrewJ
Watch me post!

AndrewJ is offline
 
Join Date: Mar 2006
Location: Melbourne
Posts: 1,905
Gday Markus
Quote:
Their reassuring cries of 'we've never been hacked before'
Dunno there. IIRC, one tech security person being interviewed today indicated that the ABS use the same/similar backroom database admins as the BOM. Not sure if thats true, but the BOM was hacked badly earlier and the govt tried desperately to cover that up ( to no avail )

These statistical flunkeys just arent competent to hold this level of data at present. All they see is what "they" can get from it, not what the side effects will be for the common sods when they lose control of the data.

Andrew
Reply With Quote
  #243  
Old 09-08-2016, 09:12 PM
Kunama
...

Kunama is offline
 
Join Date: Sep 2012
Posts: 3,588
Hope you guys are getting those entries in in the Census Lotto..... I submitted mine a couple of days ago..... Spent this evening instead at the JPL/NASA Juno and Dawn Mission briefings at the ANU. A fantastic evening with briefings by JPL Deputy Director James and JUNO Principal Investigator Dr. Scott Bolton among others.... even managed to chat with Dr Bolton about the Galilean moons' footprints in the polar auroras on Jupiter....

Beats worrying about the Census......
Reply With Quote
  #244  
Old 09-08-2016, 09:34 PM
GrahamL's Avatar
GrahamL
pro lumen

GrahamL is offline
 
Join Date: Jun 2006
Location: ballina
Posts: 3,265
what census ?
Reply With Quote
  #245  
Old 09-08-2016, 09:36 PM
Wavytone
Registered User

Wavytone is offline
 
Join Date: Jul 2008
Location: Killara, Sydney
Posts: 4,147
AndrewJ,

It's worse. Heres what a security consultant wrote http://www.smh.com.au/comment/why-i-...08-gqnapp.html

Now, as for a little digging, it turns out
- the URL resolves to two IP addresses in Canada, so that data isn't kept on-shore;
- the TLS tunnel ends offshore at IBM in the US, so the PATRIOT act applies and whatever ABS says about security is balderdash as the US agencies already have it, and... worse...
- the data is stored PLAIN TEXT - its not encrypted, so the US didn't even have to work for it;
- the software is javascript, by IBM, who didn't even make any attempt to secure it - the source code is accessible as plain text implying the whole thing has probably been hacked anyway by bots submitting bogus data;

- if you watch the video clips from ABS they do not offer any assurance at all concerning privacy. The privacy act 2014 didn't get a mention, and there's no clearly stated intent to respect privacy. There's lots of soft mumbo jumbo waffle, but they do not come out cleanly and say your identity will be protected.

Which means ABS HAS NO INTENTION of keeping it private.

Now... why would they want enough data to uniquely identify you ? They intend to offer the data to any prepared to buy the data to match you to whatever databases those organisations have. Including potential identity thieves.

By the way, your birth date and postcode will identify 90% of the population uniquely so please give you age in years, not birthdate.

I'm going to be Mr Householder Householder.
Unit number blank and I'm swapping the last two digits of the postcode, oops a typo your honour.
What I do at work ? Answer phone calls and write emails, perfectly correct and utterly useless..

I'm waiting to see if they attempt to send a fine to "Householder".
Reply With Quote
  #246  
Old 09-08-2016, 09:38 PM
AndrewJ
Watch me post!

AndrewJ is offline
 
Join Date: Mar 2006
Location: Melbourne
Posts: 1,905
Gday Matt
Quote:
Hope you guys are getting those entries in in the Census Lotto
Cant. They haven't sent me my paperwork :-)
I wonder how many of the braindead sock puppet managers from the govt and the ABS will be on the telly tomorrow to explain how/why their "150% tested" systems werent able to cope.
And you trust these people with your data in the new digital age.
They are babes in the woods being fattened for slaughter.

Andrew
Reply With Quote
  #247  
Old 09-08-2016, 09:48 PM
AndrewJ
Watch me post!

AndrewJ is offline
 
Join Date: Mar 2006
Location: Melbourne
Posts: 1,905
Gday Wavytone
Quote:
the TLS tunnel ends offshore at IBM in the US, so the PATRIOT act applies
Also the Five eyes agreement.

Andrew
Reply With Quote
  #248  
Old 09-08-2016, 09:53 PM
xelasnave's Avatar
xelasnave
Gravity does not Suck

xelasnave is offline
 
Join Date: Mar 2005
Location: Tabulam
Posts: 17,003
I can not believe the data is not kept in Australia.
And that folk don't think that is wrong.
Reply With Quote
  #249  
Old 09-08-2016, 10:18 PM
marc4darkskies's Avatar
marc4darkskies (Marcus)
Billions and Billions ...

marc4darkskies is offline
 
Join Date: Mar 2007
Location: Quialigo, NSW
Posts: 3,143
Census?? What Census?! I haven't received anything ... and if they did send me something and it was addressed to "The Householder" then it went straight in the bin!
Reply With Quote
  #250  
Old 09-08-2016, 10:30 PM
lazjen's Avatar
lazjen (Chris)
PI cult member

lazjen is offline
 
Join Date: Dec 2012
Location: Flaxton, Qld
Posts: 2,078
Just tried the site. Still seems to be having "difficulties". Yes, these people can be trusted with our data.
Reply With Quote
  #251  
Old 09-08-2016, 10:47 PM
glend (Glen)
Registered User

glend is offline
 
Join Date: Jun 2013
Location: Lake Macquarie
Posts: 7,121
Quote:
Originally Posted by Wavytone View Post
AndrewJ,

It's worse. Heres what a security consultant wrote http://www.smh.com.au/comment/why-i-...08-gqnapp.html

Now, as for a little digging, it turns out
- the URL resolves to two IP addresses in Canada, so that data isn't kept on-shore;
- the TLS tunnel ends offshore at IBM in the US, so the PATRIOT act applies and whatever ABS says about security is balderdash as the US agencies already have it, and... worse...
- the data is stored PLAIN TEXT - its not encrypted, so the US didn't even have to work for it;
- the software is javascript, by IBM, who didn't even make any attempt to secure it - the source code is accessible as plain text implying the whole thing has probably been hacked anyway by bots submitting bogus data;

- if you watch the video clips from ABS they do not offer any assurance at all concerning privacy. The privacy act 2014 didn't get a mention, and there's no clearly stated intent to respect privacy. There's lots of soft mumbo jumbo waffle, but they do not come out cleanly and say your identity will be protected.

Which means ABS HAS NO INTENTION of keeping it private.

Now... why would they want enough data to uniquely identify you ? They intend to offer the data to any prepared to buy the data to match you to whatever databases those organisations have. Including potential identity thieves.

By the way, your birth date and postcode will identify 90% of the population uniquely so please give you age in years, not birthdate.

I'm going to be Mr Householder Householder.
Unit number blank and I'm swapping the last two digits of the postcode, oops a typo your honour.
What I do at work ? Answer phone calls and write emails, perfectly correct and utterly useless..

I'm waiting to see if they attempt to send a fine to "Householder".
Wavy your making some pretty serious accusations concerning the exposure of our data to foreign agencies. Has the ABS not stated where the data is being stored and when that happens? They claim names and addresses are stripped out and stored separately (and encrypted I believe). How is it that our forms can be going in the clear overseas? Is that what your claiming? If you can prove that I imagine there will be numerous lawyers lining up to prosecute the ABS/Govt for miseading the public.
Reply With Quote
  #252  
Old 09-08-2016, 10:49 PM
julianh72 (Julian)
Registered User

julianh72 is offline
 
Join Date: Jan 2014
Location: Kelvin Grove
Posts: 1,301
Quote:
Originally Posted by lazjen View Post
Just tried the site. Still seems to be having "difficulties". Yes, these people can be trusted with our data.
It's probably the ABS's response to people's concerns about data retention issues - your personal details are perfectly safe if you can't upload them to the ABS servers!

Reply With Quote
  #253  
Old 09-08-2016, 10:57 PM
AndrewJ
Watch me post!

AndrewJ is offline
 
Join Date: Mar 2006
Location: Melbourne
Posts: 1,905
Gday Glen
Quote:
Has the ABS not stated where the data is being stored
Not really, and how could you prove it, as it is all "secret".
Funny how they need to know everything about you, but you cant know anything about them??????????
I dont believe anything they say unless it can be independently verified, and so far, that has not been possible.
Maybe after tonights debacle, a bit of determined digging may reveal whats really going on, but im sure its not what they are telling us.

Andrew

If you see a politician and their mouth is moving, what is going on
1) They are eating free food
2) They are lying
Reply With Quote
  #254  
Old 09-08-2016, 11:05 PM
multiweb's Avatar
multiweb (Marc)
ze frogginator

multiweb is offline
 
Join Date: Oct 2007
Location: Sydney
Posts: 22,080
Plenty of time to fill in your forms.

http://www.abc.net.au/news/2016-08-0...survey/7711744
Reply With Quote
  #255  
Old 09-08-2016, 11:31 PM
doppler's Avatar
doppler (Rick)
Registered User

doppler is offline
 
Join Date: Nov 2012
Location: Mackay
Posts: 1,691
Hopefully everyone at Australia post is honest all that personal info in mail addressed to the ABS would be easy pickings for someone looking to do a bit of identity theft.
Reply With Quote
  #256  
Old 09-08-2016, 11:34 PM
glend (Glen)
Registered User

glend is offline
 
Join Date: Jun 2013
Location: Lake Macquarie
Posts: 7,121
Can you 'edit' a form already submitted? Say I wanted to 'correct' something? Like removing my name.
Reply With Quote
  #257  
Old 09-08-2016, 11:52 PM
PCH's Avatar
PCH (Paul)
Registered User

PCH is offline
 
Join Date: Feb 2007
Location: Perth WA
Posts: 2,313
Quote:
Originally Posted by glend View Post
Can you 'edit' a form already submitted? Say I wanted to 'correct' something? Like removing my name.
No alterations once you hit 'submit'.
Reply With Quote
  #258  
Old 10-08-2016, 06:47 AM
Stonius's Avatar
Stonius (Markus)
Registered User

Stonius is offline
 
Join Date: Mar 2015
Location: Melbourne
Posts: 1,508
Quote:
Originally Posted by Stonius View Post
Their reassuring cries of 'we've never been hacked before' is just a red rag to a bull in some communities.

Markus

...aaaand, what did I just say?
Census website 'attacked by overseas hackers' http://ab.co/2b0MfvV - via @abcnews
Reply With Quote
  #259  
Old 10-08-2016, 07:10 AM
doppler's Avatar
doppler (Rick)
Registered User

doppler is offline
 
Join Date: Nov 2012
Location: Mackay
Posts: 1,691
Quote:
Originally Posted by Stonius View Post
...aaaand, what did I just say?
Census website 'attacked by overseas hackers' http://ab.co/2b0MfvV - via @abcnews
The last line is reassuring.... Not

"We have steps in place to counter attacks, [but] this one, there was one breach that did actually get through via a third party … and believe that we've plugged that gap," he said.
Reply With Quote
  #260  
Old 10-08-2016, 07:22 AM
el_draco (Rom)
Politically incorrect.

el_draco is offline
 
Join Date: Apr 2009
Location: Tasmania (South end)
Posts: 2,315
Message to kalish



Seems like a understatement but.... Told ya So!!!!

I'll provide the platter and we'll have two sets of googlies please, kalish's and the minister who said it was completely safe!
Reply With Quote
Reply

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT +10. The time is now 05:44 AM.

Powered by vBulletin Version 3.8.7 | Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Advertisement
Astrophotography Prize
Advertisement
Bintel
Advertisement