Egregoros

Signal feed

Timeline

Post

Remote status

Context

6
@n_dimension Apple does one unique MAC address per SSID unless it's an insecure/open network, and then it rotates your MAC address once every 14 days. It doesn't constantly change like people assume because that would be a great way to kill a poorly configured DHCP server with too small of a pool and too long lease expiration.

Android requires developer mode setting to make it always change, otherwise it only changes once per 24 hours or when the lease expires on an open network with no captive portal. Even deleting the SSID and re-adding it doesn't roll you a new MAC; it keeps the MAC address you used for that SSID forever unless you factory reset your phone

There probably are some slight variations on this behavior depending on vendor, but you wouldn't want to constantly have your MAC change.

and neither of these features even existed in 2013 --

For Android it was 2017, for Apple it was 2014

:tipshat:
@stark @n_dimension yes, that's exactly the point. He was violating the ToS of JSTOR.

Aaron felt that all of these research papers behind paywalls / university logins should be public domain. So he was downloading a copy of everything to publish it openly. Which was very much illegal as he did not own the rights to that research.

Was much of this research at least partially funded with taxpayer dollars and should be open to the public? Yeah, and that would be nice, but that's not how things are. We've got to pass laws to change that. You can't just steal and publish the data and expect the entire system will throw up their hands and accept this as the new norm.

I am very sympathetic to Snowden for uncovering crimes against Americans and getting us that classified information. Government should not be able to hide crimes against its own citizens as classified information.

Absolutely zero sympathy for Aaron for trying to be a hero though.

https://swartz-report.mit.edu/docs/report-to-the-president.pdf
@feld @n_dimension @stark Swartz was scraping so fast it was causing availability problems for on-campus legitimate users, that was how he got caught and a big factor in why they went after him. If you think about it it's very similar to (legitimate) complaints about aggressive AI scrapers knocking out sites and raising maintenance costs.