Apple Inc. Updated +Created
Video 1.
The Mapple Store and Steve Mobs from The Simpsons
. Source.
https://raw.githubusercontent.com/cirosantilli/media/master/Yahoo_CIA_website_article.png
Figure 1.
"Seriously a dumb question" Quora answer by Chris from the US Navy
.
CIA 2010 covert communication websites / Overview of Ciro Santilli's investigation Updated +Created
Ciro Santilli hard heard about the 2018 Yahoo article around 2020 while studying for his China campaign because the websites had been used to take down the Chinese CIA network in China. He even asked on Quora about it, but there were no publicly known domains at the time to serve as a starting point. Chris, Electrical Engineer and former Avionics Tech in the US Navy, even replied suggesting that obviously the CIA is so competent that it would never ever have its sites leaked like that:
Seriously a dumb question.
Figure 1.
"Seriously a dumb question" Quora answer by Chris from the US Navy
. Source.
In 2023, one year after the Reuters article had been published, Ciro Santilli was killing some time on YouTube when he saw a curious video: Video 1. "Compromised Comms by Darknet Diaries (2023)". As soon as he understood what it was about and that it was likely related to the previously undisclosed websites that he was interested in, he went on to read the Reuters article that the podcast pointed him to.
Being a half-arsed web developer himself, Ciro knows that the attack surface of a website is about the size of Texas, and the potential for fingerprinting is off the charts with so many bits and pieces sticking out. And given that there were at least 885 of them, surely we should be able to find a few more than nine, right?
In particular, it is fun how these websites provide to anyone "live" examples of the USA spying on its own allies in the form of Wayback Machine archives.
Given all of this, Ciro knew he had to try and find some of the domains himself using the newly available information! It was an irresistible real-life capture the flag.
Chris, get fucked.
Video 1.
Compromised Comms by Darknet Diaries (2023)
Source.
It was the YouTube suggestion for this video that made Ciro Santilli aware of the Reuters article almost one year after its publication, which kickstarted his research on the topic.
Full podcast transcript: darknetdiaries.com/transcript/75/
Ciro Santilli pinged the Podcast's host Jack Rhysider on Twitter and he ACK'ed which is cool, though he was skeptical about the strength of the fingerprints found, and didn't reply when clarification was offered. Perhaps the material is just not impactful enough for him to produce any new content based on it. Or also perhaps it comes too close to sources and methods for his own good as a presumably American citizen.
The first step was to try and obtain the domain names of all nine websites that Reuters had highlighted as they had only given two domains explicitly.
Thankfully however, either by carelessness or intentionally, this was easy to do by inspecting the address of the screenshots provided. For example, one of the URLs was:
https://www.reuters.com/investigates/special-report/assets/usa-spies-iran/screencap-activegaminginfo.com.jpg?v=192516290922
which corresponds to activegaminginfo.com.
Figure 2.
Inspecting the Reuters article HTML source code
. Source. The Reuters article only gave one URL explicitly: iraniangoals.com. But most others could be found by inspecting the HTML of the screenshots provided, except for the Carson website.
Once we had this, we were then able to inspect the websites on the Wayback Machine to better understand possible fingerprints such as their communication mechanism.
The next step was to use our knowledge of the sequential IP flaw to look for more neighbor websites to the nine we knew of.
This was not so easy to do because the websites are down and so it requires historical data. But for our luck we found viewdns.info which allowed for 200 free historical queries (and they seem to have since removed this hard limit and moved to only throttling), leading to the discovery or some or our own new domains!
This gave us a larger website sample size in the order of the tens, which allowed us to better grasp more of the possible different styles of website and have a much better idea of what a good fingerprint would look like.
Figure 3.
viewdns.info activegameinfo.com domain to IP
. Source.
Figure 4.
viewdns.info aroundthemiddleeast.com IP to domain
. Source.
The next major and difficult step would be to find new IP ranges.
This was and still is a hacky heuristic process for us, but we've had the most success with the following methods:
Figure 5.
DNS Census 2013 website
. Source. This source provided valuable historical domain to IP data. It was likely extracted with an illegal botnet. Data excerpt from the CSVs:
amazon.com,2012-02-01T21:33:36,72.21.194.1
amazon.com,2012-02-01T21:33:36,72.21.211.176
amazon.com,2013-10-02T19:03:39,72.21.194.212
amazon.com,2013-10-02T19:03:39,72.21.215.232
amazon.com.au,2012-02-10T08:03:38,207.171.166.22
amazon.com.au,2012-02-10T08:03:38,72.21.206.80
google.com,2012-01-28T05:33:40,74.125.159.103
google.com,2012-01-28T05:33:40,74.125.159.104
google.com,2013-10-02T19:02:35,74.125.239.41
google.com,2013-10-02T19:02:35,74.125.239.46
Figure 6.
The four communication mechanisms used by the CIA websites
. Java Applets, Adobe Flash, JavaScript and HTTPS
Figure 7.
Expired domain names by day 2011
. Source. The scraping of expired domain trackers to Github was one of the positive outcomes of this project.
Finally, at the very end of our pipeline, we were left with a a few hundred domains, and we just manually inspected them one by one as far as patience would allow it to confirm or discard the.
Figure 8.
You can never have enough Wayback Machine tabs open
. This is how the end of the fingerprint pipeline looks like: as many tabs as you have the patience to go through one by one!
Ciro Santilli's bad old event memory Updated +Created
Ciro Santilli has a bad memory for events that happened a medium time ago, for example in order of months/years. Especially if they are one-off things that have no relation to anything else.
For example, Ciro never remembers which places he travelled to just once, and who was in each trip! He has images of several places he travelled to in his head, and would recognize them, but he just doesn't know where they were!
Another example, Ciro was looking at the carpet at their house, and asked where it came from. His wife replied immeidately: from Bercy shopping quarter in Paris about 10 years ago, and you took it on your back for a long walk until we could find the bus back home because we were concerned it wouldn't fit in the train!
The same goes for scenes from movies and passages from music, which explains why Ciro's art consumption focuses on innovative discrete "what happened" and "general gist" ideas, rather than, analog details such as colors and shapes.
Going back even further in time, Ciro starts to forget the less close friends he had, because the events start to fade away.
Paradoxically however, Ciro believes that this bad memory is one of his greatest strengths and key defining characteristics, because it leads Ciro to want to write down every interesting thing he learns, which motivated OurBigBook.com and his Stack Overflow contributions and his related Ciro Santilli's documentation superpowers.
It also somewhat leads Ciro to like physics and mathematics, because in these fields you "can deduce everything" from very few base principles, so if you forget them, it does not matter that much as you can re-deduce stuff over and over. Which is somewhat where the high flying bird attitude comes from. It is hard to go deep when you have to re-prove everything every time. But the upside is that anything that sticks, does so because it has a broad net to stick to, and therefore allows Ciro to make unusual and unexpected connections that others might not.
Ciro believes that there are two types of people, and most notably software engineers, which are basically data wranglers: those with bad memory and those with good memory.
Those with bad memory, tend to focus on automating and improving their processes a lot. They take much longer to do one-off specific deep knowledge tasks however.
The downside of the good memory ones is that sooner or later they will find tasks that no matter how much memory they have, they cannot solve without automation, and they will fail at those.
Also, good memory people don't enable others to join the project efficiently as much.
This dichotomy also explains why Ciro sucks at code reviews, but is rather the person who runs the interesting patches by himself and finds some critical problems that the more theoretical code reviewers missed.
If Ciro had become a scientist, he would without doubt be an experimentalist, just like in this reality he is a GDB/runtime person rather than a "static source analysis" person. Those who have bad memory prefer to just run experiments over and over and observe system state at runtime.
Other effects of having a bad memory include:
  • code duplication, or a constant fear of it at least, because Ciro forgets that some functionality exists already
  • meeting aversion, because everything that is not recorded will fade away
  • passion for backward design, because by the time a piece of knowledge learnt in school might be useful (and 99.99% won't), it will have been long forgotten
Related: jakobschwichtenberg.com/about/ from Jakob Schwichtenberg:
I'm a physicist and I try to write down things during my own learning process.
In some sense, one of the biggest benefits I have over other people in physics is that I'm certainly not the smartest guy! I usually can't grasp complex issues very easily. So I have to break down complex ideas into smaller chunks to understand it myself. This means, whenever I describe something to others, everyone understands, because it's broken down into such simple terms.
On C2 wiki, therefore it cannot be wrong wiki.c2.com/?QuasiGreatTeacher:
Some people have learning disabilities, [... bullshit ...]. A lot of classic spiritual texts have been produced this way. Basically, the stupidest but most dogged disciple, if he has a neurotic habit of writing things down, will make the best teacher for the third and subsequent generations.
EPUB Updated +Created
This is a good thing. It basically contains an entire website, with HTML and assets inside a single ZIP, and a little bit of metadata.
It is incomprehensible why browsers don't just implement it as they already have all the web part, and also ZIP stuff:
The situation is so sad. Ubuntu 21.04 doesn't come with a reader installed by default:
How computers work? Updated +Created
A computer is a highly layered system, and so you have to decide which layers you are the most interested in studying.
Although the layer are somewhat independent, they also sometimes interact, and when that happens it usually hurts your brain. E.g., if compilers were perfect, no one optimizing software would have to know anything about microarchitecture. But if you want to go hardcore enough, you might have to learn some lower layer.
It must also be said that like in any industry, certain layers are hidden in commercial secrecy mysteries making it harder to actually learn them. In computing, the lower level you go, the more closed source things tend to become.
But as you climb down into the abyss of low level hardcoreness, don't forget that making usefulness is more important than being hardcore: Figure 1. "xkcd 378: Real Programmers".
Here's a summary from low-level to high-level:
Figure 1.
xkcd 378: Real Programmers
. Source.
Video 1.
How low can you go video by Ciro Santilli (2017)
Source. In this infamous video Ciro has summarized the computer hierarchy.
Local symmetry Updated +Created
Appears to be a synonym for: gauge symmetry.
A local symmetry is a transformation that you apply a different transformation for each point, instead of a single transformation for every point.
TODO what's the point of a local symmetry?
Bibliography:
MacOS Updated +Created
Nice looking and expensive operating system by Apple. Ciro Santilli believes that:
Molecular Sciences Course of the University of São Paulo Updated +Created
A fantastic sounding full time 4-year course that any student could transfer to called that teaches various natural science topics, notably mathematics, physics, chemistry and molecular biology.
Many past students Ciro talked to however share a common frustration with the course: in the first 2 years at least, the "basic cycle", you have infinitely many courses, and no time to study, and no choice of what to study, it is only in the latter 2 years (the advanced cycle) that you get the choices.
Also, if you get low grades in a single subject, your out. And exams are useless of course.
Here's a Quora question in Portuguese about the course: pt.quora.com/Como-funciona-o-tal-do-curso-secreto-da-USP, the only decent answer so far being: pt.quora.com/Como-funciona-o-tal-do-curso-secreto-da-USP/answer/Victor-Soares-31. Very disappointing to hear.
On the advanced cycle, you have a lot of academic freedom. You are basically supposed to pick a research project with an advisor and go for it, with a small amount of mandatory course hours. Ciro was told in 2022 that you can even have advisors from other universities or industry, and that it is perfectly feasible to take courses in another university and validate the course hours later on. Fantastic!!!
Students from the entire University of São Paulo can apply to transfer to it only after joining the university, with the guarantee that they can go back to their original courses if they don't adapt to the new course, which is great!
Not doing it is one of Ciro Santilli's regrets in life, see also: don't be a pussy.
Around 2007, they were in a really shady building of the University, but when Ciro checked in 2021, they had apparently moved to a shiny new entrepreneurship-focused building. Fantastic news!!!
This place has one of the best changes of spawning the first Brazilian Nobel Prize or unicorn.
One of the Brazilians who came to École Polytechnique together with Ciro was from this course. The fact that he is one of the most intelligent people Ciro knows gave further credit to that course in his eyes.
OurBigBook.com / Alternatives Updated +Created
These are websites that offer somewhat overlapping services, many of which served inspirations, and why we think something different is needed to achieve our goals.
Notably, OurBigBook is the result of Ciro Santilli's experiences with:
OurBigBook could be seen as a cross between those three websites.
Quick mentions:
Static website-only alternatives:
OurBigBook.com / Existing data sources Updated +Created
Some possible/not possible sources that could be used to manually bootstrap content:
Lecture note upload website:
Perl (programming language) Updated +Created
TODO why did Python kill it? They are very similar and existed at similar times, and possibly Perl was more popular early on.
Perl likely killed Tcl.
Ron Maimon Updated +Created
Figure 1.
Ron Maimon's Physics Stack Exchange profile picture
. Source.
Ron is mostly known for simultaneously:
Ron seems to share a few philosophies which Ciro greatly agrees with as part of Cirism, which together with his knowledge of physics, make Ciro greatly respect Ron. Such philosophies include:
However he also subscribes to some theories which Ciro Santilli considers conspiracy theories, e.g. his ideas about the Boston Marathon bombing that got him banned from Quora (a ban which Ciro strongly opposes due to freedom of speech concerns!), but the physics might be sound, Ciro Santilli does not know enough physics to judge, but it often feels that what he says makes sense.
chat.stackexchange.com/transcript/message/7104585#7104585 mentions that he was at Cornell University and did all but dissertation, but he mentions that he was still self-taught:
Eugene Seidel: On your personal info page you write that you are not a physics Ph.D. but does that mean you were a physics undergrad in college then went to grad school and finished ABD... or are you entirely self taught?
Ron Maimon: ABD. I am self- taught though, I only went to school for accreditation. I had a thesis worth of work at the time I left grad-school,
Eugene Seidel: ok thanks
Ron Maimon: I was just kind of sickened by academic stuff that was going on--- large extra dimensions were popular then.
Eric Walker: Anyway, thanks Ron -- I'll get back to you with more questions soon, I'm sure.
Ron Maimon: Also I was at Cornell, my advisor left for Cincinnatti, and I was not in very good standing there (I was kind of a jerk, as I still am). Some friends wanted to start a biotech company called "Gene Network Sciences", and I joined them.
This is corroborated e.g. at: web.archive.org/web/20201226171231/http://pages.physics.cornell.edu/~gtoombes/Student_Index.html (original pages.physics.cornell.edu/~gtoombes/Student_Index.html down as of 2023).
Bibliography:
  • gmachine1729.livejournal.com/161418.html Ron Maimon answers about physics and math on Quora (part 1) by Sheng Li (2020) contains a selection of some amazing Ron Maimon posts
  • www.reddit.com/r/RonMaimon/ someone made a Reddit for him. Less than 100 users as of 2022, but has potential.
  • some Quora threads about him, oh the irony:
    • www.quora.com/Is-Ron-Maimon-actually-a-pioneer-or-a-jest
    • www.quora.com/Are-Ron-Maimons-answers-on-mathematics-physics-and-computer-science-factually-correct
    • www.quora.com/What-do-people-think-of-Ron-Maimons-paper-Computational-Theory-of-Biological-Function-I
    • www.quora.com/Who-is-Ron-Maimon/answer/Ron-Maimon
      I'm a physics grad school drop-out working in theoretical biology but I still do physics when I get a chance, but not right now because I am in a middle of a project to understand the properties of a certain virus as completely as possible.
      Also in a comment he explains something to a now deleted comment, presumably asking why he dropped out of grad school, and gives a lot more insight:
      It's a complicated boring story.
      I dropped out mainly to do biology with friends at a startup, because I figured out how you're supposed to do theory in biology, but also I truly believe it was next to impossible for me to get a degree without selling out, and I would rather be shot than write a paper with an idea I don't believe.
      My grad school phase was a disaster. I first worked for Eric Siggia, but I got away because he had me do something boring and safe, I figured I have only a limited number of years before I turn 30 and my brain rots, and I wasn't going to sell out and do second-rate stuff. I found a young guy at the department doing interesting things (Siggia was also doing interesting things, like RNA interactions, he just wouldn't assign any of them to ME), this was Philip Argyres, and got him to take me. Argyres wanted me to work on large-extra dimensions (this was 1998), but I made it clear to him that I would rather be boiled in oil. I worked a little bit on a crappy experimental setup that didn't work at all, because I didn't know enough about electromagnetic screening nor about how to set up experiment. But EVERYONE LOVED IT! This is also how I knew it was shit. Good work is when everyone hates it. But I learned Lifschitz's ideas for quantum electrodynamics in media from this project.
      Me and every competent young person in high-energy physics knew large extra dimensions was a fraud on the day it came out, and I had no intention of doing anything except killing the theory. Once Wikipedia appeared, I did my best to kill it by exposing it's charlatanry on the page for large extra dimension. That was in 2005 (after getting fired from the company), and from this point onward large-extra-dimensions lost steam. But I can't tell how much of this was my doing.
      Argyres liked N=2 theory, and we did something minor in N=2 SUSY models around 2000, but I was bogged down here, because I was trying to do Nicolai map for these, and it ALMOST worked for years, but it never quite worked. But I knew from the moduli interpretation and Seiberg-Witten solution that it must work. If I live long enough, I'll figure it out, I am still sure it isn't hard. But this was the link to statistical stochastic models, the work I was doing with Jennifer Schwarz, and I wanted to link up the two bodies of work (they naturally do through Nicolai map).
      But I had my own discovery, the first real discovery I made, in 1999, this thing that I called the mass-charge inequality, what Vafa and Motl called "the weakest-force principle" when they discovered it in 2006. It was swampland, and Vafa hadn't yet begun swampland. My advisor didn't believe my result was correct, because he saw me say many stupid things before this. So he wouldn't write it or develop it with me (but I had read about Veltman telling 'tHooft he couldn't publish the beta-function, I knew Argyres was wrong about this)
      Anyway, Argyres left for Cincinnatti in 2000, and I joined the company then. I was in the company until january 2005. Then they fired me, which was ok, by then it was a miserable hell-hole full of business types.
      I discovered Wikipedia, and started killing large extra dimensions. I wanted to finish my thesis, and some people agreed to help me do this, but I had told myself "no thesis until you get the Nicolai map sorted out" and I never did. I worked with Chris Henley a little bit, who wanted me to do some stuff for him, and I discovered an interesting model for high-Tc, but Henley said it was out of fasion, and nobody would care, even though I knew it was the key to the phenomenon (still unpublished, but soon).
      This was 2008-2009, and I became obsessed with cold fusion, so Henley dropped me, as I had clearly gone crazy. I developed the theory of cold fusion during the last weeks of working for Henley. Then I dropped out for good.
      Honestly, by the time I was gone, I realized that the internet would make a degree counterproductive, because I knew I had better internet writing skills than any of the old people, I was a Usenet person. Online, the degrees and accreditation were actually a hinderance. So by this point, I secretly preferred not to have a PhD, because I knew I was good at physics, and I could attack from the outside and win. It's not too hard if you know the technical material.
      The only problem is that I was unemployed and isolated in Ithaca for about 7 years after having gone through my first productive phase. But I developed the cold-fusion ideas in this period, I learned a lot of mathematics, and I developed a ton of biology ideas that are mostly unpublished, but will be published soon. It astonished people that I could have no degree and be unemployed and have such a sky-high ego. The reason is that I could evaluate my own stuff, and I liked it!
Backlinks:
Video 1.
Ron Maimon interview with Jeff Meverson (2014)
Source. Ripped from Jeff's "Quoracast": player.fm/series/quoracast-podcast/ron-maimon-truther Ron mentions he was an early-Usenet user. Key points: