Does having TLS everywhere make this much harder?
Back in the real world, you can also passively fingerprint TLS handshakes to characterise the client device. Most of these proxy networks masquerade as "normal" clients, but if the type and variety of device fingerprints for an IP suddenly changes, that's a signal too.
Is there incentive for them to? If anything, you might be paying extra for the data use and not even know it, right? They would lose money
Even if no one goes to jail, the NSA could make residential proxies much harder to operate in the US simply by detecting them and reporting them to ISPs. It would be good for ISPs to then validate the reports properly, give warnings, etc.
Second, everybody screamed loudly when they were cracking down on file sharing traffic. You're saying spying on the citizens is ok when it's for this little reason over here, but not this one over there. It doesn't track.
Not to mention most ISP abuse mailboxes are automated these days because they are flooded with LLM-generated reports from "security" grifters.
The tech industry flooding the market with countless IoS (Internet of Shit) devices didn't help. This has moved way beyond accidentally installing spyware on your PC. People are intentionally bugging their homes with these devices.
I understand the FCC is trying to crack down on this stuff - starting with routers - but of course that gets pushback too. You can't win.
ISPs already deal with abuse reports like this, the system just isn't being operated comptently.
You actually think the actors that went to the trouble to surreptitiously set this infrastructure up are going to share it with everyone for free?
They are intentionally made hard to detect and access is sold to the highest bidder.
Most ISP abuse reports are routinely ignored. They might as well be a dead letter box.
Okay, I was being imprecise. These residential proxies aren't "open proxies" in the traditional sense, but they're usually "open" to anyone willing to pay a small amount of money to use them.
> Most ISP abuse reports are routinely ignored. They might as well be a dead letter box.
This is where regulation might play a role, or at least a change in attitude. Companies shouldn't be allowed to pollute the internet in this way when they can easily prevent it.