Skip to main content

Be concerned.....and alarmed


CISPA.   Not heard of it?    Better that you do for what is now under consideration in the USA will soon-enough spread to other countries if it becomes law in America.

Electronic Frontier Foundation explains:

"CISPA stands for The Cyber Intelligence Sharing and Protection Act, a cybersecurity bill written by Rep. Mike Rogers (R-MI) and Dutch Ruppersberger (D-MD) (H.R. 3523). The bill purports to allow companies and the federal government to share information to prevent or defend from cyberattacks. However, the bill expressly authorizes monitoring of our private communications, and is written so broadly that it allows companies to hand over large swaths of personal information to the government with no judicial oversight—effectively creating a “cybersecurity” loophole in all existing privacy laws.  Because the bill is so hotly debated now, unofficial proposed amendments are also being circulated and the actual bill language is in flux.

Under CISPA, can a private company read my emails?

Yes.  Under CISPA, any company can “use cybersecurity systems to identify and obtain cyber threat information to protect the rights and property” of the company. This phrase is being interpreted to mean monitoring your communications—including the contents of email or private messages on Facebook.

Right now, well-established laws, like the Wiretap Act and the Electronic Communications Privacy Act, prevent companies from routinely monitoring your private communications.  Communications service providers may only engage in reasonable monitoring that balances the providers' needs to protect their rights and property with their subscribers' right to privacy in their communications.  And these laws expressly allow lawsuits against companies that go too far.  CISPA destroys these protections by declaring that any provision in CISPA is effective “notwithstanding any other law” and by creating a broad immunity for companies against both civil and criminal liability.  This means companies can bypass all existing laws, as long as they claim a vague “cybersecurity” purpose.

What would allow a company to read my emails?

CISPA has such an expansive definition of "cybersecurity threat information" that many ordinary activities could qualify. CISPA is not specific, but similar definitions in two Senate bills provide clues as to what these activities could be. Basic privacy practices that EFF recommends—like using an anonymizing service like Tor or even encrypting your emails—could be considered an indicator of a “threat” under the Senate bills. As we have stated previously, the bills’ definitions “implicate far more than what security experts would reasonably consider to be cybersecurity threat indicators—things like port scans, DDoS traffic, and the like.”

A more detailed explanation about what could constitute a “cybersecurity purpose” or “cyber security threat indicator” in the various cybersecurity bills can be read here.

Under CISPA, can a company hand my communications over to the government without a warrant?

Yes. After collecting your communications, companies can then voluntarily hand them over to the government with no warrant or judicial oversight whatsoever as long is the communications have what the companies interpret to be “cyber threat information” in them. Once the government has your communications, they can read them too.

Under CISPA, what can I do if a company improperly hands over private information to the government?

Almost nothing. CISPA would affirmatively prevent users from suing a company if they hand over their private information to the government in virtually all cases. A broad immunity provision in the proposed amendments gives companies complete protection from user lawsuits unless information was given to the government:

(I) intentionally to achieve a wrongful purpose;
(II) knowingly without legal or factual justification; and
(III) in disregard of a known or obvious risk that is so great as to make it highly probably that the harm of the act or omission will outweigh the benefit.


Comments

Popular posts from this blog

The Pentagon's eye-popping spending....and waste!

Only a gigantic bureaucracy could get away with spending of such dimensions - and the amazing waste involved in part of that ginormous spend.   Think US Pentagon..... "From spending $150 million on private villas for a handful of personnel in Afghanistan to blowing $2.7 billion on an air surveillance balloon that doesn’t work, the latest revelations of waste at the Pentagon are just the most recent howlers in a long line of similar stories stretching back at least five decades.  Other hot-off-the-presses examples would include the Army’s purchase of helicopter gears worth $500 each for $8,000 each and the accumulation of billions of dollars' worth of weapons components that will never be used. And then there’s the one that would have to be everyone’s favorite Pentagon waste story: the spending of $50,000 to investigate the bomb-detecting capabilities of African elephants. (And here’s a shock: they didn’t turn out to be that great!) The elephant research, of course, represe...

Video: Israel demolishing a Bedouin village

From Mondoweiss - Israel's supposed "most moral army in the world", the IDF, engaged in immoral, and according to international law, illegal action.... "Israeli forces have demolished every home in the Bedouin village of Khirbet Taha in the northern West Bank district of Nablus during three separate demolitions since the start of the year. Unlike most Bedouin villages, the residents in Khirbet Taha own their own land. However that land falls in Area C, territory in the occupied West Bank under full Israeli control. The village’s only school was also destroyed, leaving children to study in a dilapidated 100-year-old mosque — the only structure left standing in the village. According the United Nations, Israel has demolished half as many Palestinian buildings in the first few months of 2016, as they had in all of 2015. In February alone, the UN found that more Palestinians homes were destroyed than any other month since 2009, when the organization began its docum...

What does a no-fly zone actually mean?

As some countries consider imposing a no-fly zone in relation to Libya, the pertinent question must be what does that mean and entail? FP provides the answers: "It depends on the circumstances. There are two primary types of no-fly zones imposed by air forces. The first is imposed by one military over another, while the two sides are at war. In practice, this type of no-fly zone amounts to a warning from one side that it will engage the other's aircraft if they are spotted in a given territory. The second type, more applicable to the situation in Libya, is when an outside power possessing overwhelming air superiority restricts flights over a given country in order to discourage an internal conflict or humanitarian crisis. This is a relatively recent tactic, which was used most famously in Bosnia and Iraq during the 1990s. No-fly zones are often a compromise in situations where the international community is demanding a response to ongoing violence, but full military interven...