Site icon AamJanata

Delhi Police Project O-Sint: Apprehensions and better OSINT alternatives

A do not disturb sign at a Gol Course emphasizing private propertyIt took me a while to figure out what the project was. O-sint? Then another source published it without the hyphen. OSint? OSINT! Far from being the code name of some newfangled Op by Delhi Police, it is a term straight out of the US_NSA penchant for alphabet soup acronyms. Right up there with SIGINT, USMIL and CONUS. Another source is of the belief that Osint stands for Open Source Intelligent system or something.

Regardless of what it stands for, some things are crystal.

  1. Cops are not going to give up on collecting intel.
  2. Nor should they. If cops don’t monitor openly available intelligence, they are fools. The surprising part is that it took such a long time, while they were ****ing about with privacy invasions.
  3. Corporate puppeteers of the government see this as a money earning opportunity, and there are talks of bids by IT companies. I suppose this will get call centerized, unless smarter people can mess it up.
  4. Fundamentally, Open Source Intelligence is publicly available information. The source of the information is public – open. Get it? Neither cops nor the supposed IT companies do, apparently, because several news reports talk about confusions about the extent to which privacy will be invaded, private websites open to members only, and such things. Clearly non-public info. I think by this point the need to invade privacy must be overwhelmingly compulsive. I don’t think any arm of sarkar can bear to not try and find out the color of your underwear.

Now here are the pitfalls. Or in other words, here is why elevated citizens of the world must attempt to wreck this project before it spends too many public funds.

So what can be done? Something clearly needs to be done and neither a Dilli Pulis approach nor a call center approach will be *effective*. I mean imagine a reply like “We are really sorry, but the person who is posting naked photos of you could not be found. Change your passwords and call us again if the problem continues, we live to serve, etc” or worse “girls want their photos admired on porn sites, but say harrassment if someone recognizes them” or something.

A better way would be to create a two step fix that is truly democratic and, actually capitalist as well. Incidentally, it makes no sense for this to be a Delhi Police project. The internet hardly knows boundaries. A national level something that collaborates with CBI/NIA or some such would be better. Or it can be autonomous.

The first step is the creation of a body that is truly familiar with the internet. A good balance of security consultants, coders, bloggers, activists (of all hues), e-commerce/banking specialists and social media ninjas will be ideal. It should be more a collective (as in everyone works hands on and has a specialization) as opposed to sarkari organization of anonymous interchangeable drones (babu-dom). Anyone whose voice doesn’t reach a few thousand people a day using the internet should not even be considered (there goes the sarkari crony-capitalist plan).

This collective must be organized to address the variety of security issues on the internet – beyond mere collecting public info (call center method). There is a need for proactive assessments, intuitive support design, assessment of complaints or observed issues, assigning to appropriate action – tracking to real life identities, including organizing brute force retaliation (deleted profiles, bocked accounts or trolling into oblivion) on the internet for entities that cannot be traced to real identities for arrest.

The other step would be to create a bounty system for what Anyonymous calls dox-ing for people whose real identities cannot be traced by regular methods. Post an online bounty to be paid to whoever can provide real identity (with evidence). If the accused is arrested, the money gets paid. If the bounty is paid in bitcoins, far superior talent is likely to be found, not to mention incentive for youth to develop serious skills, awareness and ethics for pocket money. Bounties should also be offered for discovering of online pedophiles, cyber criminals, terrorists and such. Always on the basis of actionable evidence.

Such a system would cost far less than what a corporation would bid (someone has to pay for air-conditioned buildings and every scrap of new tech). It would also engage the most skilful and optimally placed talent in tasks they specialized in, as opposed to 50 hackers backed by a revolving door team of 5000 stenographers and nice voices on phone who take a week to answer email.

Exit mobile version