#ITAR

Kiara TaylorKiara07
2025-06-18

In this episode, we explore how cybersecurity and compliance intersect in the high-stakes world of aerospace and defense. From zero-trust frameworks to ITAR, DFARS, and CMMC mandates, learn what it takes to secure mission-critical data and stay ahead of evolving cyber threats. Perfect for security pros, IT leads, and defense contractors.

pca.st/7nnkve1t

McDonald_69McDonald_69
2025-04-21

Defence companies boast Trump-proof weapons are free of US parts

The first question firms now face when trying to export their weapons is whether they rely on American technology.

thetimes.com/uk/defence/articl

Naveednaveed360
2025-04-21

Shipping containers will be erected at sites across the to produce explosives, used in 155mm rounds for Army guns and other weapons. thetimes.com/uk/defence/articl

2025-03-01

@lari "Jos hävittäjässä on #ITAR -alaisia osia, sen vienti voi vaatia Yhdysvaltain hyväksynnän.

Jos kone on täysin eurooppalainen (kuten #Rafale), myynti ei ole riippuvainen Yhdysvalloista."
chatgpt.com/share/67c2ea8c-3a2

Kevin Karhan :verified:kkarhan@infosec.space
2025-02-21

@erebion @pixelschubsi @inaruck Ja, weil das Teil soviele #Govware - #Backdoors hat dass es als unsicher gelten muss!

  • Sonst wär's gem. #ITAR illegal...
Kevin Karhan :verified:kkarhan@infosec.space
2025-02-21

@erebion @inaruck es gibt soviele Gründe weshalb Mensch nicht @signalapp vertrauen sollte.

Aber um es nochnal klar zu erklären:

Nur echte #Dezentralisierung wie bei #XMPP+#OMEMO kann #Datenschutz, #Informationssicherheit und #Vertraulichkeit sicherstellen.

Die strukturellen Probleme von Signal machen es angesichts einer #gleichgeschaltet|en #USA ein absolut unnötiges #Risiko, denn ich garantiere @Mer__edith wird für keine*n User*in lebenslange #Beugehaft riskieren!

Und #Signal ist sehr wohl in der Lage #Govware - #Backdoors zu integrieren, denn sonst wären die wegen #ITAR bereits geknastet worden, weil diese #Nutzer*innen aus #Kuba, #Nordkorea und #Russland haben!

Kevin Karhan :verified:kkarhan@infosec.space
2025-01-31
Kevin Karhan :verified:kkarhan@infosec.space
2025-01-23

@lucasmz @Avitus @david_chisnall the benefit of #XMPP+#OMEMO is that there are several providers, including free options...

All #PII incl. #PhoneNumbers can and will be abused by existing governments and if users don't pay, then they are the product and their data is the one to be sold.

After all, you have the same cost problem with phone numbers. Even if one doesn't pay per line/number and never pay for calls and texts, they still have to top it up to extent validity.

  • And again: It's way easier for a government to demand an ID for a #SIM that works in networks around their country (i.e. #Turkey demands registration on a per-#IMEI - basis *with #ID) than to tunnel XMPP+OMEMO through @torproject over #EDGEland-speed #2G networks.

Plus you relying an unfixably insecure #Telephony makes a system inherently unsafer than it needs to be...

  • This is how people get caught!

Also #Signal is able and willing to use said PII to restrict and ban users and if I were some dissident in Cuba or North Korea or even just Eritrea or Yemen I'd not rely on non-enforcement of #OFAC / #USML / #ITAR since Signal can obviously distinguish & identify accounts by virgue if their #PhoneNumber!

  • Always think "How can this be weaponized against someone?" when it comes to #privacy!
Kevin Karhan :verified:kkarhan@infosec.space
2025-01-21

@anelki cuz if #Signal and/or #WhatsApp actually had good encryption, they'd be shutdown due to #NonCompliance with #CloudAct and their staff would be jailed for #ITAR violations...

  • Then again even if WhatsApp technically does #E2EE that doesn't mean it has to be good or secure.

If I use RSA-128 to generate the keys for AES-256 then it's technically E2EE but even the worst-equipped police force can read the comms basically in realtime!

Do NOT Fear|🇺🇸🇺🇦🐊🦉🌊💙jdrch.github.io@bsky.brid.gy
2024-11-12
Kevin Karhan :verified:kkarhan@infosec.space
2024-09-16

@mysk that's because #Apple has introduced varios #Govware - #Backdoors in their products.

GripNewsGripNews
2024-05-05

🌗 美國準備將AUKUS國家豁免ITAR限制
➤ AUKUS防務合作的新發展
naval-technology.com/news/us-p
美國政府宣佈準備將澳洲和英國豁免國際武器貿易規則(ITAR),以推進三國間的 defence integration。這項措施將有助於減少許多軍事商品和技術項目的授權要求。
+ 這項措施顯示了美國政府的決心推進AUKUS防務合作,並將有助於澳洲和英國發展其軍事能力。
+ 這項措施也可能會影響其他國家,包括日本和韓國等,這些國家也在尋求與美國和AUKUS國家進行 defence cooperation。

Kevin Karhan :verified:kkarhan@infosec.space
2024-04-09

@cody The fact that #GAFAMs and other #Corporations that commited illegal #Espionage (#PRISM) and/or imtegrated #Govware #Backdoors (i.e. #DUAL_EC_DRBG) ain't #denylisted by @bsi for useage and/or procurement by the German Government and Public Institutions and banned from their premises and networks is undue leniency.

Or would @Bundesregierung literally expect anything but a blanket ban against entire German companies if they were to ship some #ITAR / #Wassenaar / #NPT "compliance check" in their systems when sold to the USA?

Not to mention the #NonCompliance of #Windows, #MicrosoftOffice, #Office365 / #Mcirosoft365, #GoogleDocs, etc. with #GDPR & #BDSG due to #CloudAct...

Kevin Karhan :verified:kkarhan@infosec.space
2024-04-07

@PC_Fluesterer Und wenn nicht wird wie im #Cyberfaschismis dann halt der "#Export" per #ITAR verboten, weil #SSL und #PGP sind pöse sicher... ^

Merke: Wenn's in den #RICS (#Russland, #Indien, "V.R." #China, #SaudiArabien) legal ist und aus den #USA exportiert wurde, dann nur weil's #Malware ist oder anderweitig dienlich ist.

Grundsätzlich haben alle entsprechenden #Govware-Integraten bei mir 3x solange #Hausverbot wie es dauert bis diese sich entschuldingen bzw. 2x solange wie's dauert bis die das Problem systemisch fixen.

Egal of #PRISM, #DUAL_EC_DRBG, oder was auch immer...

New Space Economynse@newspaceeconomy.ca
2024-03-25

Understanding ITAR Compliance for Space Products and Services

#Business #Defense #Government #ITAR #Launch #LaunchVehicles #Policy #Satellites #SpaceExploration #SpaceIndustry #SpaceSector #Spacecraft #Startups #UnitedStates #EditorSPicks #PolicyLawAndRegulation #SocioEconomic #SpaceEconomy

https://newspaceeconomy.ca/2024/03/24/understanding-itar-compliance-for-space-products-and-services/

Kevin Karhan :verified:kkarhan@infosec.space
2024-03-06

@agreenberg #FACT: You still need to give your #PhoneNumber to @signalapp@mastodon.world which in turn is not only able but entirely willing to #geoblock their #services in part or whole based off it.

And since #Signal is a #proprietary & #centralized #SingleVendor & #SingleProvider Service frok the #USA, it's subject to it's #Cyberfacism ranging from #CloudAct to #ITAR...

Consider using @monocles 's #monoclesChat as #Client and #XMPP+#OMEMO as truly decentralized and #E2EE solution instead.

They'll never ask for your phone number and the #monocles account can be bought and used completely anonymously using #Monero and @torproject / #Tor...

Signal is not your friend and as long as they'll violate basic principles of #GDPR & #BDSG by even requesting a #PhoneNumber they're inherently bad and should be regarded as a #Honeypot!!!

---

And to anyone who defends Signal or any other #Messenger from collecting #PhoneNumbers:

FUCK OFF, YOU KNOW THAT'S NOT EXCUSEABLE!!!

2023-11-28

“Now that #China 🇨🇳 is a major #SpacePower, I suspect the long-term result – assuming the #US 🇺🇸 does not change its attitude – will be more #ITAR-free products developed in places like #Europe 🇪🇺 and the #UAE 🇦🇪, and ultimately the rest of the world 🌏 depending less on buying US #space products.” scmp.com/news/china/science/ar

Kevin Karhan :verified:kkarhan@mstdn.social
2023-11-09

@quincy @thomasjorgensen @lobingera @glynmoody in fact didn't they try countless times to force shit that noone wants onto people, from #Passkeys to removing the #URL to "#WebIntegrityFramework" aka. mandatory #ads that one can't disable...

Let's not forget #Google - like all #GAFAMs - was a #PRISM collaborator, is subject to #CliudAct and #ITAR and thus not only capable but able and willing beyond the legally mandated minimums to do so.

DON'T TRUST GOOGLE - or anyone!

Kevin Karhan :verified:kkarhan@mstdn.social
2023-10-19

@knittingknots2 Propably in line with #WassenaarArrangement and #ITAR...

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst