The title of the actual article seems to be completely wrong. It doesn't look like he shared any private keys.
User The_Raging_Goat on reddit explains what is bad about his posts though:
"All but one of those IP addresses on that post are reserved as private - meaning they are only used for internal addressing. Many brands of commercially available routers will also hand out these same 10.1.x.x IP addresses to your computer, and is functionally identical to the 192.168.x.x IP range. Basically 10.1.x.x will never be used as public IPs that any ISP can issue, so if you ever see that, it's not revealing anything at all. Unless you have the boundary IP address...
Which it appears possible he publicly handed out. The one IP address that isn't a private IP address, 23.24.145.45 is a static IP address issued by Comcast Business, and that IP range covers Colorado Springs and Denver. Given what they are talking about (VPN), it's likely that IP address is the entry-point into Platte River Network's Colorado based location. Now, that's not necessarily hard to figure out for someone trying to get into that network, IPs aren't exactly private information.
However, that's not the bad part. He confirms that very easily compromised protocols are open to his boundary (which he conveniently provided). That is dangerous, and speaks to his incompetence, and the general incompetence of the company he works for (PRN)."
I'm someone who thinks HRC deserves to be prosecuted. And yet I agree with parent: this reddit post didn't give away the IP address of HRC's email box. It does give away a number of attack vectors, though, and provides details of the hardware security appliances that were used to protect her private email.
Hard to believe that a Russia or a China, with all the patience and resources in the world, was unable to crack HRC's email –– especially with goons complaining on reddit about shortcuts around the 2FA.
6 comments
[ 0.36 ms ] story [ 81.7 ms ] threadUser The_Raging_Goat on reddit explains what is bad about his posts though:
"All but one of those IP addresses on that post are reserved as private - meaning they are only used for internal addressing. Many brands of commercially available routers will also hand out these same 10.1.x.x IP addresses to your computer, and is functionally identical to the 192.168.x.x IP range. Basically 10.1.x.x will never be used as public IPs that any ISP can issue, so if you ever see that, it's not revealing anything at all. Unless you have the boundary IP address...
Which it appears possible he publicly handed out. The one IP address that isn't a private IP address, 23.24.145.45 is a static IP address issued by Comcast Business, and that IP range covers Colorado Springs and Denver. Given what they are talking about (VPN), it's likely that IP address is the entry-point into Platte River Network's Colorado based location. Now, that's not necessarily hard to figure out for someone trying to get into that network, IPs aren't exactly private information.
However, that's not the bad part. He confirms that very easily compromised protocols are open to his boundary (which he conveniently provided). That is dangerous, and speaks to his incompetence, and the general incompetence of the company he works for (PRN)."
Hard to believe that a Russia or a China, with all the patience and resources in the world, was unable to crack HRC's email –– especially with goons complaining on reddit about shortcuts around the 2FA.
A) have a goon like this guy set up an e-mail server for you (and goons are the rule here, not the exception), or
B) let Google / Microsoft / Amazon / Yahoo / etc. handle it and use your information however they see fit.
God help you if you are not a bonafide hard-core mailserver nerd!
*Read: I'd be subject to FOIA requests.