Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News Editorials & Other Articles General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

YouDig

(2,280 posts)
25. OK, so Guccifer's explanation of how he got in is bogus.
Thu May 5, 2016, 10:51 AM
May 2016

The outdated email software has absolutely nothing to do with the Guccifer story, because Guccifer didn't claim he hacked the email server, he claimed that he hacked in through an open port, but somehow declined to specify which port and how he got access through it.

Running outdated software is obviously not ideal, but it doesn't make it "easy" to hack by any means. Like I said in the OP, even if client-server communications are unencrypted, to sniff packets or spoof you actually have to control a node in between the client and the server. I don't know if it had any protection against brute-force attacks or not, but brute-force attacks definitely leave traces in logs, and there were no traces found in the logs.

And the bottom line is, email is insecure. It's arguable whether a private server, even running outdated software, is less secure than gmail or .gov, for a lot of reasons. Most hacks aren't spoofing or anything technical, they are social engineering, bad passwords, etc. With a large administered system, there are a lot more ways in. There are a lot more IT people to convince to reset your password. And then there are Edward Snowdens, who it is really hard to protect against in a big organization.

The biggest leaks of classified information we've seen, Snowden and Manning, didn't arise from weak encryption software or outdated certificates, they were simply due to humans who had access. So I think, all things considered, her emails were likely more secure on that home server than on .gov.

Recommendations

0 members have recommended this reply (displayed in chronological order):

I don't put much stock in it. cherokeeprogressive May 2016 #1
I look at the main issue being Sid's was hacked and then her server could be tracked. mmonk May 2016 #2
He hacked his e-mail address. As the OP states that's different than hacking a server. DemocratSinceBirth May 2016 #3
You didn't need to hack Sid's email to get Hillary's email address. YouDig May 2016 #5
I doubt many thought that email address was SoS official business. mmonk May 2016 #8
Any lie about Hillary Clinton will be plausible enough to those deep enough into derangement. IamMab May 2016 #4
It really is derangement on their part. LiberalFighter May 2016 #39
Kick! mcar May 2016 #6
K'n'R ucrdem May 2016 #7
Sigh. Go to the "Smoking Gun" website and search for Guccifer. IdaBriggs May 2016 #9
The internet is full of RW noise. ucrdem May 2016 #10
Is that from the "data is for losers" playbook? Lol! nt IdaBriggs May 2016 #12
That one's been reissued as "Shining Path to Victory." nt ucrdem May 2016 #16
Screenshots of Sid Blumnethal's emails, yes. YouDig May 2016 #11
Guess you'll just have to wait for the FBI report to explain. IdaBriggs May 2016 #14
The extradited him because he is a wanted criminal in the US. YouDig May 2016 #15
For hacking NWCorona May 2016 #18
Yes, for hacking, via social engineering. Hacking other people, not Hillary. YouDig May 2016 #19
A bit. Why what's up? NWCorona May 2016 #20
Just curious if, for example, you understand that "scanning open ports" like Guccifer claimed YouDig May 2016 #21
Of course it doesn't NWCorona May 2016 #22
OK, so Guccifer's explanation of how he got in is bogus. YouDig May 2016 #25
Um pinebox May 2016 #32
Yes, that's what I said. He's a social engineerinig hacker who hit some high-profile YouDig May 2016 #33
I see it as both personally pinebox May 2016 #35
Who was already in jail in Romania. IdaBriggs May 2016 #24
What you have is a conspiracy theory, with no evidence. YouDig May 2016 #26
I believe the term will end up being IdaBriggs May 2016 #30
"I'm not a lawyer but I've watched enough Law & Order..." YouDig May 2016 #31
Probably extradited to establish probable cause unc70 May 2016 #23
Actually, it was because he hacked several high-level US officials. YouDig May 2016 #27
Your OP argued he did not hack Clinton unc70 May 2016 #28
You're right. Because he didn't. YouDig May 2016 #29
Hacked or not, Clinton still has troubles unc70 May 2016 #37
Thanks. Kick. lamp_shade May 2016 #13
K&R! stonecutter357 May 2016 #17
k&r obamanut2012 May 2016 #34
Great post. And I love how you shred the bullshit within this thread as well. SunSeeker May 2016 #36
Thank you for the post! Very informative! Lucinda May 2016 #38
There are a lot of things wrong with what you are saying. bobbobbins01 May 2016 #40
Brute forcing only works in movies, or if you're the NSA. YouDig May 2016 #41
You don't really know what you're talking about. bobbobbins01 May 2016 #42
Hilarious, coming from someone talking about brute forcing through SSH. YouDig May 2016 #43
Latest Discussions»Retired Forums»2016 Postmortem»Some of the many dumb thi...»Reply #25