Showing posts with label records. Show all posts
Showing posts with label records. Show all posts

Thursday, 18 July 2013

Lawmakers: NSA phone records collection violated law


The U.S. National Security Agency and Department of Justice exceeded their legal authority to conduct surveillance when collecting the telephone records of millions of U.S. residents, several U.S. lawmakers said Wednesday.

Several members of the U.S. House of Representatives Judiciary Committee, both Republicans and Democrats, ripped into representatives of the DOJ and the U.S. intelligence community for their collection of U.S. phone call records, saying the bulk collection violates Patriot Act restrictions that limit surveillance to information relevant to an antiterrorism investigation.

Representative John Conyers Jr., a Michigan Democrat, called on the agencies to stop the data- collection program.
“We never, at any point in this debate, have approved the type of unchecked, sweeping surveillance of United States citizens employed by our government,” he said during a hearing on the NSA. “If the government cannot provide a clear, public explanation for how its program is consistent with the statute, it must stop collecting this information immediately.”

Other committee members said they will look for ways to amend the Patriot Act to stop the NSA’s collection of U.S. telephone records. Even without more immediate changes in the law, Congress isn’t likely to reauthorize the business-records collection provision in the Patriot Act when it expires in late 2015, unless the NSA scales back its surveillance, said Representative Jim Sensenbrenner, a Wisconsin Republican and author of the original Patriot Act.

“Unless you realize you’ve got a problem, that [provision] is not going to be renewed,” Sensenbrenner told NSA and DOJ officials. “There are not the votes in the House of Representatives ... and then you’re going to lose the business-record access provision of the Patriot Act entirely. It’s got to be changed, and you have to change how you operate .... otherwise in a year-and-a-half, you’re not going to have it anymore.”
The bulk collection of U.S. phone records has made “a mockery” of the Patriot Act’s relevancy limits, Sensenbrenner said.
Several lawmakers questioned how the NSA and DOJ could view all U.S. phone records as relevant to a terrorism investigation.
“The problem, obviously, from what we’re hearing is that everything in the world is relevant,” said Representative Jerrold Nadler, a New York Democrat. “You’re disregarding the statute entirely.”
The bulk collection of U.S. phone records is necessary for later searches, said James Cole, deputy attorney general at the DOJ. The phone records and a related Internet communications surveillance program have helped U.S. authorities in dozens of terrorism cases, officials said.

“If you’re looking for the needle in the haystack, you have to have the entire haystack to look through, but we’re not allowed to look through that haystack willy-nilly,” Cole said.

DOJ and NSA officials defended the phone records collection program, saying the bulk collection of phone records is allowed in the Patriot Act. The collection does not violate the U.S. Constitution’s Fourth Amendment, protecting U.S. residents against unreasonable searches and seizures, because, in 1979, the U.S. Supreme Court ruled that telephone records aren’t private information that require a court-ordered warrant, Cole said.

The Foreign Intelligence Surveillance Court and Congress both have significant oversight of the NSA surveillance programs, Cole said.

The phone records are protected because analysts never access the vast majority of them, said John Inglis, the NSA’s deputy director. In 2012, NSA analysts ran queries on fewer than 300 telephone numbers, officials have said, and analysts need to show to agency officials that those queries are relevant to a terrorism investigation before accessing the numbers, he said.
During the hearing, lawmakers raised few concerns about the PRISM program, in which the NSA collects the content of email and other Internet communications sent by people not believed to be U.S. citizens. Former NSA contractor Edward Snowden revealed both the phone records collection and the Prism program in news stories published in early June.
“Our primary responsibility at the National Security Agency ... is to defend the nation,” Inglis said. “These programs are a core part of those efforts. We use them to protect Americans and our allies and partners worldwide.”

While officials defended the surveillance court’s review of the collection requests, several lawmakers suggested the court is a rubber stamp. Since the court was established in 1979, U.S. agencies have made nearly 34,000 surveillance requests to the court, and 490 of those were amended at the court’s request, said Representative Hakeem Jeffries, a New York Democrat. In that time, the court rejected just 11 requests, he said.

Those statistics don’t capture significant negotiations in many cases between the court and the NSA and DOJ before the judges grant the orders, said Robert Litt, general counsel for the U.S. Office of the Director of National Intelligence.

Several lawmakers called on the agencies to release more information about the surveillance programs and better explain to the public why the programs are necessary.

“We try very hard to keep in mind both the protection of national security and the privacy and constitutional rights of Americans,” Litt said. “We think we’ve struck that balance in the right place, but if the people in the Congress determine we’ve struck that balance in the wrong place, that’s a discussion we need to have.” 

Sunday, 7 July 2013

Backlash occurs in Japan over sales of train e-ticket records

A privacy debate has erupted in Japan over a new service from a major rail operator that sells private e-ticket records as marketing data.

This week East Japan Railway (JR East), the country's largest rail company, has begun offering for sale the anonymized histories of millions of its passengers. The data is gleaned from its Suica train pass system, which is Japan's most popular with 43 million users, roughly equivalent to a third of the national population.

JR East and Hitachi, which will handle the technical aspects of the service, announced it last week via a terse news release that initially drew little attention. But this is the first time Suica information has been sold to third parties, and the news was soon highlighted by prominent bloggers, triggering a discussion that has now spread to Twitter and other online forums.

"Even if there is a proper way to use this (data), it must be done with the approval of society," wrote Hiromitsu Takagi, a professor and prominent commentator on data privacy, on his Twitter account.

Some were less reserved, with many calling the new service "revolting."

"Personally, rather than being revolted, I just don't have confidence in the ability of JR East and Hitachi to manage the data," wrote another commentator.

The Japanese debate is unfolding as the rest of the world reacts to revelations about surveillance programs of the U.S. National Security Agency. The tale of former NSA contractor Edward Snowden, who released details of the surveillance, has been closely followed by the media in Japan, where many are hesitant to publicize their private details online.

JR East's service provides details for passengers that use specific stations, such as their sex, the date and time they used the service, and the amount they spent. The company and Hitachi are adamant that no laws are being broken, and JR East says the Suica user contract gives it rights to the passenger data.

"There is no way to determine the identity of specific individuals from the data, so we feel there is no privacy issue," said Takashi Yamaguchi, a JR East spokesman.

Hitachi is marketing the service as an example of its prowess at handling "Big Data" a foreign buzzword for using powerful servers to crunch through large amounts of information that has recently caught on in Japan. The cheapest price for the service is $50,000, which provides passenger data on ten stations for a year. New data is added to the system monthly.

"This is statistical data," said Hisahiro Sakai, a spokesman for Hitachi. "We will aim to sell it to station tenants, or companies that are thinking of starting businesses in stations, as well as real estate companies and advertisers that want information about specific stations."

JR East was already facing criticism over a newly installed entrance at a busy station in the eastern part of Tokyo. The gates at the "nonowa" entrance only work with Suica or compatible touch cards, so travelers with traditional tickets or passes must take another route.

"No one without an IC Card gets in?" asked the Asahi Shimbun, one of Japan's largest newspapers, in the headline of an article that said many locals consider the entrance to be a form of discrimination.
IDGNSA passenger uses a touch card to enter a train station in Osaka, Japan.
Another train organization was forced to change its policies after an embarrassing leak last year. An employee of Tokyo Metro, which runs the city's subway system, disclosed the "Pasmo" train pass history of a female passenger, forcing the company to cancel a service that allowed users to view their histories online.

Suica, launched in 2001, uses NFC technology developed by Sony. Initially offered as train passes that had to be periodically recharged, the technology is now built into credit cards, mobile phones, and even USB readers that can be plugged into PCs for home shopping. Payment can now be made in many convenient stores and restaurants, as well as taxi cabs and vending machines.

In March, the most popular regional electronic train pass systems in use throughout Japan signed agreements so that they could all be used interchangeably. The data sold by JR East currently covers only users of its own Suica system.

JR East is the largest of Japan's seven overland railway companies, formed when a nationwide rail system run by the government was broken up in 1987. JR East's domain covers about half of Japan's main island, including the crowded Tokyo capital and surrounding metropolis. It runs everything from daily commuters to the bullet trains that operate on its territory, all of which are compatible with Suica.

Follow me on Twitter @sajilpl

Friday, 28 June 2013

EFF sues FBI over facial-recognition records

The Electronic Frontier Foundation has filed a lawsuit to force the U.S. Federal Bureau of Investigation to turn over records about a facial-recognition database it is building.

 

The EFF, in a lawsuit filed Wednesday in U.S. District Court for the Northern District of California, asked the judge to require the FBI to respond to the civil liberties group's Freedom of Information Act requests about the agency's Next Generation Identification (NGI) biometrics database, scheduled to launch in 2014.

 

The new database is described as "bigger, faster and better" than the agency's current Integrated Automated Fingerprint Identification System, the EFF said in court documents. The new database will create a unique "face print" for each person included, the EFF said.

 

"Governmental use of face recognition -- and the potential for misuse -- raises many privacy concerns," EFF's lawyers wrote in court documents. Facial recognition allows identification of people in public and can be used to track people in public settings and on social networking sites, the EFF's lawyers wrote.

 

EFF also raised concerns about the accuracy of facial recognition, saying it depends on the quality of photographs.

 

"NGI will result in a massive expansion of government data collection for both criminal and noncriminal purposes," EFF staff attorney Jennifer Lynch said in a statement. "Biometrics programs present critical threats to civil liberties and privacy. Face-recognition technology is among the most alarming new developments, because Americans cannot easily take precautions against the covert, remote, and mass capture of their images."

 

The EFF's FOIA requests, filed in June and July of 2012, seek information about agreements and discussions between the FBI and state agencies regarding the face-recognition program, as well as records addressing the reliability of facial-recognition technology. The EFF also wants to see documentation about the FBI's plan to merge civilian and criminal records in a single repository.

 

The group also wants the FBI to disclose the number of facial-recognition records currently in its database.

 

An FBI spokeswoman declined to comment on the lawsuit.

 

Follow me on Twitter @sajilpl

Thursday, 27 June 2013

EFF sues FBI over facial-recognition records

The Electronic Frontier Foundation has filed a lawsuit to force the U.S. Federal Bureau of Investigation to turn over records about a facial-recognition database it is building.

 

The EFF, in a lawsuit filed Wednesday in U.S. District Court for the Northern District of California, asked the judge to require the FBI to respond to the civil liberties group's Freedom of Information Act requests about the agency's Next Generation Identification (NGI) biometrics database, scheduled to launch in 2014.

 

The new database is described as "bigger, faster and better" than the agency's current Integrated Automated Fingerprint Identification System, the EFF said in court documents. The new database will create a unique "face print" for each person included, the EFF said.

 

"Governmental use of face recognition—and the potential for misuse—raises many privacy concerns," EFF's lawyers wrote in court documents. Facial recognition allows identification of people in public and can be used to track people in public settings and on social networking sites, the EFF's lawyers wrote.

EFF also raised concerns about the accuracy of facial recognition, saying it depends on the quality of photographs.

 

"NGI will result in a massive expansion of government data collection for both criminal and noncriminal purposes," EFF staff attorney Jennifer Lynch said in a statement. "Biometrics programs present critical threats to civil liberties and privacy. Face-recognition technology is among the most alarming new developments, because Americans cannot easily take precautions against the covert, remote, and mass capture of their images."

 

The EFF's FOIA requests, filed in June and July of 2012, seek information about agreements and discussions between the FBI and state agencies regarding the face-recognition program, as well as records addressing the reliability of facial-recognition technology. The EFF also wants to see documentation about the FBI's plan to merge civilian and criminal records in a single repository.

 

The group also wants the FBI to disclose the number of facial-recognition records currently in its database.

 

An FBI spokeswoman declined to comment on the lawsuit.

 

Follow me on Twitter @sajilpl

Report: NSA collected US email records, Internet use for years

The U.S. National Security Agency collected the email and Internet use records of some U.S. residents for about a decade following the 9/11 terrorist attacks, according to documents published Thursday by the U.K. newspaper the Guardian.

 

The NSA's collection of email and Internet use metadata was authorized by former President George W. Bush after 9/11 and continued for two years under President Barack Obama, according to the Guardian's report.

 

The Guardian published two secret documents on the so-called Stellar Wind collection program, a March 2009 NSA inspector general's report on the program and a November 2007 U.S. Department of Justice memo defending the collection.

 

The inspector general's report says the White House, including members of then-Vice President Dick Cheney's staff, pushed the NSA to collect more information on U.S. residents in the days following the terrorist attacks. When General Michael Hayden, the NSA's director at the time, said he didn't believe the NSA had the authority to collect U.S. communications, the White House granted the NSA additional authority.

 

Shawn Turner, spokesman for the U.S. Office of the Director of National Intelligence, said the program stopped in 2011. "The Internet metadata collection program authorized by the FISA court was discontinued in 2011 for operational and resource reasons and has not been restarted," he said by email. "The program was discontinued by the executive branch as the result of an interagency review."

 

The new revelations of NSA surveillance on U.S. residents follow news reports earlier this month that the NSA is currently collecting all telephone records from Verizon Communications. The agency is also collecting email and Internet communications from nine Web companies, including Google, Microsoft and Apple, with some U.S. communications swept up along with foreign targets, according to news reports.

 

The NSA inspector general's report says 92 percent of the targets in the collection program from 2001 to 2007 were email addresses and phone calls outside the U.S. There were just over 3,000 targets in the U.S. during that time frame, according to the report.

 

The 2007 DOJ memo, from Assistant Attorney General Kenneth Wainstein, defended the program, saying it doesn't violate the U.S. Constitution's Fourth Amendment protecting U.S. residents against unreasonable searches and seizures.

 

"We conclude that a person has no such expectation, however, in dialing, routing, addressing, or signaling information that does not concern the substance, purport, or meaning of communications," Wainstein wrote. "We note that the analysis of information legally within the possession of the Government is likely neither a 'search' nor a 'seizure' within the meaning of the Fourth Amendment."

 

The NSA's collection of telephone and Internet communications metadata included "routing, addressing, and signaling information that does not concern the substance" of the underlying communications, wrote Wainstein, now in private practice.

 

Wainstein didn't immediately respond to a request for a comment on the memo he authored. The DOJ memo came in response to an NSA request seeking to clarify that it had authorization to collect Internet metadata from U.S. residents.

 

NSA critics have said that the collection of metadata, including the recipients of phone calls and email and the time of the calls and emails, can tell a great deal about a person and is a privacy violation.

 

The NSA U.S. collections are "pretty outrageous," digital rights activist Sina Khanifar said in an email. "Anyone who claims that the NSA's surveillance hasn't been in violation of our Fourth Amendment rights is going to have a much harder time making that argument in light of this news."

 

Khanifar helped launch the website StopWatching.us two weeks ago, and the site has collected more than 512,000 signatures of people calling on the U.S. government to stop spying on them.

 

Grant Gross covers technology and telecom policy in the U.S. government for The IDG News Service. Follow Grant on Twitter at GrantGross. Grant's e-mail address is grant_gross@idg.com.

 

Follow me on Twitter @sajilpl

Wednesday, 26 June 2013

Box Office Preview: 'Man of Steel' Breaks Records in Asia, Lands in U.S. Thursday Night

Man of Steel General Zod Shannon Close Up - H 2013

Warner Bros. and Legendary Pictures' much-anticipated Man of Steel is already off to a record-breaking start in Southeast Asia, where the superhero tentpole scored the biggest opening day of all time in the Philippines and the biggest opening day for a Warners film in Taiwan.

PHOTOS: Superman Turns 75: The Man of Steel's Legacy in Pictures

Man of Steel, directed by Zack Snyder and produced by Christopher Nolan, begins rolling out at the North American box office Thursday night before playing everywhere on Friday. Box-office observers expect the $225 million film to open in the $85 million-to-$100 million range, although Warners is being more conservative and projecting an $80 million bow.

Overseas, Man of Steel is opening day-and-date in 24 markets, landing first in the Philippines and Taiwan, where it earned $1.7 million and $794,742, respectively. Among other major markets, it opens in the U.K. and Mexico on Friday. The following weekend, the tentpole opens in 26 additional markets, including China, France, Germany, Italy, Russia and Spain.

British actor Henry Cavill stars as Clark Kent, aka Superman, in the origin tale, which sees his character trying to hide his superpowers and live a normal life on Earth. Amy Adams stars as Lois Lane, and Michael Shannon takes on the role of the menacing General Zod.

PHOTOS: Henry Cavill's Career: From 'Tudors' Nobility to 'Man of Steel' Superhero

David S. Goyer penned the script based on a story by he and Nolan. Warners and Legendary turned to Nolan as a producer on the project after he successfully revived the Batman franchise with his Dark Knight trilogy. In the summer of 2005, Nolan's Batman Begins opened to $48.7 million and had incredible staying power.

Seth Rogen and Evan Goldberg's This Is the End, the weekend's other new offering, debuted Wednesday in order to get a jump on Man of Steel. The Sony comedy is overperforming so far, posting an opening-day gross of $7.8 million and putting it on course for a five-day debut in the low- to mid-$30 million range.

VIDEO: 'Man of Steel's' Henry Cavill on Fame: 'Going to Starbucks Is Now a Thing of the Past'

Marking the directorial debut of Rogen and Goldberg, This Is the End stars Rogen opposite Jonah Hill, James Franco, Jay Baruchel, Danny McBride, Craig Robinson, Michael Cera and Emma Watson.

In the raunchy comedy, the actors -- all playing fictional versions of themselves -- are attending a star-studded party at Franco's house when the apocalypse begins and they're forced to work together to survive. The feature is based on a short film created by Rogen and Baruchel in 2007 titled Jay and Seth vs. The Apocalypse. Rogen and Goldberg also co-wrote the scripts for Superbad, The Green Hornet and The Watch.

New entires at the specialty box office include Sofia Coppola's The Bling Ring, which A24 Films opens in five theaters, and The Weinstein Co.'s documentary 20 Feet From Stardom.

Twitter: @sajilpl