Feeds

Don’t waste time hiding NBN POI locations

‘Natsec’ too big for its boots?

High performance access to file storage

Mobiles, electricity secrets

Mobile infrastructure is another problem. Australia’s regulations are clear on this: every licensed radio transmitter is recorded in a public database administered by the ACMA. You can buy a copy of it, if you want, load it into a database, display it on a map.

If you’re bidding for the Square Kilometer Array, radio information is important: it lets you prove that a joint called Murchison in Western Australia is, in radio terms, nice and quiet (on the basis of radio silence, Australia had it hands-down over South Africa, but I’m not privy to the deliberations so I don’t know what other considerations held sway).

And Murchison was, while remote, within tolerable reach of fibre networks, which could only be known if the networks could be mapped.

Even data centres, some of which are treated as secrets by some people, leave footprints all over the place. I know journalists who have signed non-disclosure agreements before they visit facilities whose every important move – construction and extensive fit-outs – has been documented by local councils in the form of development approvals. So the journalist, self-bound by a signature, finds him- or herself forever forbidden from discussing public information.

Let’s look again at the NBN Co POIs.

The information is bound to leak, because in the end, it will be known to thousands of individuals. If, in a fit of national security paranoia, someone decides that it should not be in a convenient Telstra exchange (location not only known but emblazoned on every building), but in the data centre next door, that will become known.

The industry won’t be able to function without knowing the POI locations. It’s utterly fantastic to imagine that the information won’t leak.

I’ve focused on telecommunications infrastructure, because that's the world I'm most familiar with, but similar questions apply to other “infrastructure of national importance”.

Take the electricity grid. At a superficial level, it might seem that the location of high-voltage grid facilities should be a national secret. Except: people piloting aircraft or helicopters need to know where powerlines are. Otherwise, they’ll fly into them anytime visual navigation isn't possible. Even with maps, powerline accidents are depressingly common.

National security types are apt to chase every rabbit down every burrow – which is great for expanding their budget, personnel and powers, but does precious little to protect us from real threats. ®

Bootnote: ZDNet journalist Josh Taylor dug out the "national security" quote from the joint parliamentary committee hearing on the NBN last night, here. The ACCC professes to have "particularly strong views" on. ®

High performance access to file storage

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
OpenSSL Heartbleed: Bloody nose for open-source bleeding hearts
Bloke behind the cockup says not enough people are helping crucial crypto project
Web data BLEEDOUT: Users to feel the pain as Heartbleed bug revealed
Vendors and ISPs have work to do updating firmware - if it's possible to fix this
One year on: diplomatic fail as Chinese APT gangs get back to work
Mandiant says past 12 months shows Beijing won't call off its hackers
Call of Duty 'fragged using OpenSSL's Heartbleed exploit'
So it begins ... or maybe not, says one analyst
Heartbleed exploit, inoculation, both released
File under 'this is going to hurt you more than it hurts me'
Experian subsidiary faces MEGA-PROBE for 'selling consumer data to fraudster'
US attorneys general roll up sleeves, snap on gloves
Bad PUPPY: Undead Windows XP deposits fresh scamware on lawn
Installing random interwebs shiz will bork your zombie box
prev story

Whitepapers

Mainstay ROI - Does application security pay?
In this whitepaper learn how you and your enterprise might benefit from better software security.
Five 3D headsets to be won!
We were so impressed by the Durovis Dive headset we’ve asked the company to give some away to Reg readers.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Mobile application security study
Download this report to see the alarming realities regarding the sheer number of applications vulnerable to attack, as well as the most common and easily addressable vulnerability errors.