住宅代理服务器是国家安全威胁
Residential Proxies Are a National Security Threat

原始链接: https://jacob.gold/posts/residential-proxies-are-a-national-security-threat/

美国住宅代理(将恶意互联网流量通过毫无戒心的家庭网络进行路由)是垃圾信息、社交媒体操纵和网络攻击的重要推手。这些代理通常通过被入侵的智能电视、免费VPN或恶意软件实现,由于其源自合法的家庭IP地址,平台方难以将其封锁。 这造成了系统性的安全漏洞。虽然“威胁情报”公司通过追踪这些IP牟利,但他们几乎没有动力去解决这一问题。此外,该问题还构成了实质性的国家安全风险,助长了外国影响力行动、身份盗窃和僵尸网络活动。 为缓解这一问题,政府应将这些代理网络视为严重威胁。此外,大型互联网服务提供商(ISP)必须承担起责任,监测可疑流量并提醒设备被入侵的客户。归根结底,解决住宅代理问题对于维护安全、健康的互联网基础设施至关重要。

近期的一场 Hacker News 讨论对“住宅代理构成‘国家安全威胁’”这一论断提出了质疑。这场辩论围绕 Jacob Gold 的一篇博文展开,该博文主张互联网服务提供商(ISP)应监测并标记来自客户 IP 地址的可疑流量。 评论者对这种说法普遍持怀疑态度。尽管一些人承认住宅代理常被用于非法活动——《暗网日记》(Darknet Diaries)第 172 期节目曾重点讨论过这一话题——但批评者认为,将其贴上“国家安全威胁”的标签过于夸大且缺乏依据。 此次讨论凸显了针对该提议方案在隐私和政策方面的重大担忧。怀疑论者警告称,赋予 ISP 监管“可疑活动”的权力,实质上会将它们变成国内监控工具。此外,参与者还质疑这种监管的可行性和合法性,并指出文中所述的恶意行为在《计算机欺诈与滥用法案》(CFAA)等现有法律下本已属于非法,且提议的监测手段可能与“230 条款”等保护措施产生冲突。
相关文章

原文

US residential proxies are the bane of the internet. They’re the major source of social media manipulation and spam. A residential proxy runs someone else’s traffic through a real home internet connection, so it looks like a normal person on Comcast or AT&T. Almost no one intentionally runs one on behalf of bad actors, they’ve been tricked or hacked. Usually it’s one of a few things:

  • A free VPN app reselling your bandwidth.
  • A proxy SDK buried in some free game.
  • Malware on a computer, router, or smart TV.

LG recently moved to ban proxy apps from its smart TVs after researchers found that over 42% of its apps could covertly turn your TV into a proxy.

Internet services (including social media apps) can dramatically reduce abuse by blocking entire IP ranges based on country of origin, organization, or type (hosting providers). But a company can’t block US residential IPs if it would also cut off many of their real users. This is why bad actors love US residential proxies, their abuse comes from the same addresses as genuine users.

There’s a whole industry of “threat intelligence” companies that track IPs and sell this information for a lot of money. It’s readily available if you pay for it (and they could just report abuse to internet providers), but there are obviously perverse incentives here, since significantly reducing the problem would reduce their value.

The US government (probably the NSA) should be cracking down hard on US residential proxy networks. They’re a genuine national security threat:

  • Actual data and identity loss of American citizens.
  • Malware that can record video and audio from infected devices.
  • Infrastructure for foreign covert influence campaigns.
  • Botnets used in hacking and DoS attacks.

At the very least, major American ISPs (Comcast, AT&T) should detect clearly suspicious activity coming from customer IPs and warn them to scan their computers, check their TV apps, and find whatever is turning their internet into a proxy. It’s very bad for the customers too, it slows things down and gets their IP banned.

None of this is unique to the US. Every country should be doing the same as part of running a healthy and secure internet of its own.

联系我们 contact @ memedata.com