General Discussion
Related: Editorials & Other Articles, Issue Forums, Alliance Forums, Region Forums"Minutes before Trump left office, millions of the Pentagon's dormant IP addresses sprang to life"
WaPo: After decades of not using a huge chunk of the Internet, the Pentagon has given control of millions of computer addresses to a previously unknown company in an effort to identify possible cyber vulnerabilities and threatshttps://www.washingtonpost.com/technology/2021/04/24/pentagon-internet-address-mystery/
Very intriguing event that raised a bunch of questions, but the short form is apparently in that headline. The Pentagon owns billions of dollars worth of unused IP addresses, and an internal agency released them through an unknown company (trumpishly, little more than a mail drop in an obscure building) to see and analyze them for whatever nefarious activity they drew and uncovered. At first it was thought someone (such as in the T admin) sold them, but that's now denied. Interestingly activated minutes before Biden was sworn in, I was relieved to learn it was not a "the last guy" theft/hostile action.
The company, Global Resource Systems LLC, kept adding to its zone of control. Soon it had claimed 56 million IP addresses owned by the Pentagon. Three months later, the total was nearly 175 million. Thats almost 6 percent of a coveted traditional section of Internet real estate called IPv4 where such large chunks are worth billions of dollars on the open market. The entities controlling the largest swaths of the Internet generally are telecommunications giants whose names are familiar: AT&T, China Telecom, Verizon. But now at the top of the list was Global Resource Systems a company founded only in September that has no publicly reported federal contracts and no obvious public-facing website.
The only announcement of Global Resources Systems management of Pentagon addresses happened in the obscure world of Border Gateway Protocol (BGP) the messaging system that tells Internet companies how to route traffic across the world. There, messages began to arrive telling network administrators that IP addresses assigned to the Pentagon but long dormant could now accept traffic but it should be routed to Global Resource Systems. ...
The theories were many. Did someone at the Defense Department sell off part of the militarys vast collection of sought-after IP addresses as Trump left office? Had the Pentagon finally acted on demands to unload the billions of dollars worth of IP address space the military has been sitting on, largely unused, for decades? An answer, of sorts, came Friday.
The change is the handiwork of an elite Pentagon unit known as the Defense Digital Service, which reports directly to the secretary of defense. The DDS bills itself as a SWAT team of nerds tasked with solving emergency problems for the department and conducting experimental work to make big technological leaps for the military. ... Brett Goldstein, the DDSs director, said in a statement that his unit had authorized a pilot effort publicizing the IP space owned by the Pentagon. This pilot will assess, evaluate and prevent unauthorized use of DoD IP address space, Goldstein said. Additionally, this pilot may identify potential vulnerabilities. Goldstein described the project as one of the Defense Departments many efforts focused on continually improving our cyber posture and defense in response to advanced persistent threats. We are partnering throughout DoD to ensure potential vulnerabilities are mitigated. ...
What is clear, however, is the Global Resource Systems announcements directed a fire hose of Internet traffic toward the Defense Department addresses. Madory said his monitoring showed the broad movements of Internet traffic began immediately after the IP addresses were announced Jan. 20. ... The data may provide information about how malicious actors operate online and could reveal exploitable weaknesses in computer systems. In addition, several Chinese companies use network numbering systems that resemble the U.S. militarys IP addresses in their internal systems, Madory said. By announcing the address space through Global Resource Systems, that could cause some of that information to be routed to systems controlled by the U.S. military.
Botany
(70,634 posts)Last edited Sat Apr 24, 2021, 01:20 PM - Edit history (1)
Did Trump or somebody connected to him make money on this "deal?"
Did this help Putin or Russia?
Hortensis
(58,785 posts)It's a Pentagon cyber security group doing their job, just more visibly (to the cyber community) and spectacularly than usual.
Trumpists would call these part of the deep state that got in the way of their own nefarious scheming.
BGBD
(3,282 posts)Unleashing what Trump had held back to keep Putin protected.
msfiddlestix
(7,288 posts)Interesting story. Of course my first instinctive reaction laid in the world of T / Putin infiltration at the very core of our national defense systems. for very corrupt and dangerous purposes.
It's very difficult for me to not be concerned about infiltration among the higher ranking officers eg. Mike Flynn, his brother, et. al) within our military, pentagon and intelligence agencies.
But since it seemed to sort of explode into action minutes before T left office, it sort of keeps my fears along that line of concern a bit at bay. So many things revealed from January 6th regarding paramilitary tactical and strategical elements,,, etc etc etc.
dalton99a
(81,667 posts)2naSalit
(86,889 posts)I think that a lot of our resources were secretly sold off by that gang of thieves.
CrispyQ
(36,552 posts)I don't believe the Con will ever see a day in jail & Jared will never be investigated.
wyn borkins
(1,109 posts)Most sadly, I agree with you [especially about his "Biggest Grift in the History of Mankind"]; however, I also sense that both Fox Mulder and Dana Scully are still working on it (the truth that is...maybe?).
Hortensis
(58,785 posts)The mystery lived for a few months while our military security did their thing, now it's figured out.
2naSalit
(86,889 posts)And I see what you mean. In that case, I hope it will help with a restoration of sorts. I wonder at the full capability of this operation.
Midnightwalk
(3,131 posts)Sounds like expose some ips and see who comes sniffing and how. See where they get to and where they come from.
The sniffers could learn some useful things too, but that would expose vulnerabilities to fix if we detect that. Itll be interesting to see what story comes out in the future.
Hortensis
(58,785 posts)underpants
(182,987 posts)Ill read the full thing later. I have yard work to do before the rain comes.
speak easy
(9,344 posts)Most of them are dormant.
bucolic_frolic
(43,442 posts)This entire 5 years has been a war, after all, between private interests and public interests - the government.
Hortensis
(58,785 posts)Trump left office is unexplained in the article. I'm left wondering in my ignorance if that was intended to help encourage cyber enemies to suspect the corrupt, traitorous T administration was somehow behind it.
But it was not.
I know this is not the usual for this forum. But it's a rather dramatic event, and I figur3ed people would be intrigued and encouraged to know this Pentagon unit was there all along. They triggered this action close to noon on January 20, but it was undoubtedly planned and authorized by patriots well before.
speak easy
(9,344 posts)Yes, I still believe this can happen.
Beastly Boy
(9,534 posts)The fact the operation took place minutes, and not days, before the inauguration, leads me to speculate that the timing was designed to prevent any trump loyalists from gaining advanced knowledge of the operation and being able to do something about it. At the same time, the operation took place before noon on Jan 20, an obvious marker to suspend any nefarious activity by a number of potential adversaries who may have felt safe from inquiries during the Trump administration. It appears that DoD was exercising its due, albeit unprecedented in scope, diligence in maintaining the country's national security.
Being that the whole operation appears to have been aimed at redirecting the flow of global internet traffic into channels under DoD's control, in an unprecedented volume and at a strategic point in time, I would speculate it was designed to catch, analyze, filter and expose any number of clandestine internet activities. The obvious one, given the timing, is the vast network of Russia's cyber war activities. Other potential targets may include China, N. Korea, Iran, Israel and other sovereign players, international players like Islamic terrorist networks, right wing extremists and white supremacists, and narco-terrorists, to name a few, all in a single wide-cast net.
oldsoftie
(12,651 posts)As I read it anyway.
trump would squash any major investigation on Russia that he knew of.
calimary
(81,560 posts)Seems a reasonable guess.
Hortensis
(58,785 posts)keithbvadu2
(37,000 posts)It's only natural to suspect Trump of self-dealing.
A HERETIC I AM
(24,380 posts)Global Resource Systems sounds like a front if I ever heard one.
Air America in different garb for a different task.
msfiddlestix
(7,288 posts)to a T. Maybe that was on purpose? I guess we'll eventually learn of it.
But for the moment, I'm going to accept Hortense's analysis, just on the "principle of hope our Military and Intelligence community are not completely infiltrated by Putin's moles, because we know an unknown number of them are. If we haven't learned anything else from T 's time in office, we all know this much.
Hortensis
(58,785 posts)what amount to Putin's agents elected and appointed to the highest offices, and no doubt there are other infiltrators various places, but we've also seen honorable inside professionals fighting them (and bringing far more competence and commitment to what they do than the typical voter).
Technically, even though other nations have caught up in a lot of ways, and have victories here and there, in spite of the weaknesses of democracy frequently putting corrupt incompetents in power, we also know we still have some of the best capabilities on the planet.
So we should not be surprised to see indications of it now and then, even though their work mostly needs to be kept secret. In this case, techies everywhere started seeing and wondering what was happening immediately, journalists and security firms got on it, etc, so we get to learn about a technothriller event in real life.
LaMouffette
(2,042 posts)the former guy's bumbling crime syndicate of ineptitude and corruption.
dlk
(11,597 posts)Its worrisome to think about the time bombs hes left behind.
ancianita
(36,201 posts)Maybe it doesn't matter where it's located, but for me, just its being in Florida feels weird.
Hortensis
(58,785 posts)Or New Jersey. Maybe that's where the nerd SWAT team got the idea.
burrowowl
(17,654 posts)Captain Zero
(6,845 posts)It's like Trump DOD releasing something because they were headed out the door. It's like Putin rang up and said oh don't forget before you go, all that stuff we want. A company from Florida working under the Trump Admin releases a huge swath of heretofore government property?
Oh we will explain it to Biden like we were trying to catch someone in the interim between the admins, wink-wink, that's the ticket. Meanwhile Trump's at Mara Loco and who knows how many bank transfers have processed to his LLCs in Wilbur Ross's Cyprus bank.
BobTheSubgenius
(11,573 posts)In and of itself, an IP address means almost nothing in the 'real world.' Once they are hosted on a server, they are on their way to being something, but are still more or less like a title deed to a piece of property that may one day rise out of the ocean in the form of a volcanic island...or a plot in the Sea of Tranquility. A name, address and perhaps a concept.
So what goes on with these billions of dollars worth of addresses?
Hortensis
(58,785 posts)The WaPo's behind a firewall if you've used up your free-access articles this month, but others will undoubtedly be writing about this and we can all learn more about the various things they'd doing.
BobTheSubgenius
(11,573 posts)I envision a sort of register, taking the meta data from each "visit" and analyzing trends. I'm sure they have software that automates the launch of a sort of 'bare bones" web site.
But if that was their aim, you wouldn't think public knowledge of the program would be something they would want at all.
NQAS
(10,749 posts)No, it never fucking ends.
Wanna bet Global Resource Systems traces back to Russia?
Also, wanna bet no one is going to be held responsible?
Biden needs to create a new agency whose sole objective is to investigate everything about the trump administration. FBI, DHS, DoD, DIA, CIA, and so many more. Not one single Republican permitted to be hired.
This is going to go on forever. This will be like the never-ending highway projects we see across the country, that we joke about being passed on in wills to future generations of highway builders.
Hortensis
(58,785 posts)allow me to copy the whole article, but I thought I posted enough to make it clear what the investigative journalists and tech experts at the WaPo believe they've confirmed.
Also to be heartened by indications that our experts are hunting them also. We're not just a bunch of helpless weaklings being put upon by big, bad Putin and Xi, and the scary orange clown.
NQAS
(10,749 posts)I came away with more questions than the article answered. My brief post was not intended to exacerbate anxiety - daily life throws up enough shit as it is - but was simply stating what I think is reality check.
Ari Melber had a post on YouTube noting that Citizen Trump is facing 29 lawsuits. Sure, many of those are personal matters, but others address all sorts of criminal activity and corruption. The insurrection investigation and trials will throw up more trump-involved or trump-directed criminal behavior. To assume that there will be more is not anxiety or fear-mongering, or conspiracy theorizing. It is the reality that comes from watching one man deliver 30,573 lies.
So, no, we're not done.
Hortensis
(58,785 posts)You've got that right. It's never done. While others fight continually, our own part comes again in 2022 and 2024.
BobTheSubgenius
(11,573 posts)Something to ease you into retirement, and very little is expected, it seems.
Eugene
(61,974 posts)The military hopes to assess, evaluate and prevent unauthorized use of DoD IP address space, said a statement issued Friday by Brett Goldstein, chief of the Pentagons Defense Digital Service, which is running the project. It also hopes to identify potential vulnerabilities as part of efforts to defend against cyber-intrusions by global adversaries, who are consistently infiltrating U.S. networks, sometimes operating from unused internet address blocks.
The statement did not specify whether the pilot project would involve outside contractors.
The Pentagon periodically contends with unauthorized squatting on its space, in part because there has been a shortage of first-generation internet addresses since 2011; they now sell at auction for upwards of $25 each.
Madory said advertising the address space will make it easier to chase off squatters and allow the U.S. military to collect a massive amount of background internet traffic for threat intelligence.
https://apnews.com/article/technology-business-government-and-politics-b26ab809d1e9fdb53314f56299399949
FrankChurchDem
(12,690 posts)Russians have briefly corrupted bgp traffic before to siphon traffic for intelligence analysis. This move is similar in intent but not as provocative as dod is entitled to broadcast bgp for those blocks. There are some super excited super nerd spies somewhere in the Virginia area tonight.
Hekate
(90,956 posts)Atticus
(15,124 posts)this last-minute "happening" for a couple days an did not know how to feel about it.
I agree with your characterization: these were the "White Hat Guys" who pulled this off for reasons we all support.
Thanks.