All the latest UK technology news, reviews and analysis

Summit: Test case exposes murky world of government data trawling

by Iain Thomson

11 Nov 2009

Be the first to comment

  • Tweet this
EFF
The EFF accuses the government of issuing illegal gagging orders

Summit-box-logoA test case fought by the Electronic Frontier Foundation (EFF) has shown the extent to which the US government is willing to bend the law in its quest for data it wants.

Indymedia is a news aggregator for left-wing and libertarian writers and on 30 January one of its volunteer administrators Kristina Clair received a grand jury subpoena from the Southern District of Indiana federal court.

The subpoena demanded all IP traffic to and from the site for a particular date, including "IP addresses, times, and any other identifying information". It also included a gagging order to prevent Indymedia from discussing the request.

The subpoena was made under the Stored Communications Act (SCA) but after Indymedia went to the EFF for help it discovered that the SCA does not allow such broad searches, or the gagging order that accompanied the request.

“In sum, without any legal authority to back up their purported gag demand, the government ordered Ms Clair not to reveal the existence of the subpoena, a subpoena that as already described was patently overbroad and invalid under the SCA,” said the EFF in its report on the matter.

“This is exactly the kind of unjustified demand of silence that creates a fog around the government's often-overreaching surveillance activities. How many other subpoena recipients have remained silent over the years in response to such bogus demands, and how many of them violated their users' privacy by handing over data that the government wasn't entitled to?”

When contacted, the government first threatened to go to court to enforce the gagging order, before backing down and dropping the subpoena. It's not clear who was responsible for the request, as the subpoena was issued before the Obama administration was fully sworn in.

The case highlights not only the government's tactics but also its ability to trawl databases in the country for information that it wants. Under US law, the government can access any information on servers within national borders.

This raises serious questions about the future of cloud services in the US. For example, with all Google's main server facilities in the US, users of Google Apps may not have the security they expect.

Visit our dedicated Summit web site for more breaking news, views, analysis and video on the topic of Information Overload.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

34%

0%

11%

55%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Application Security SME, Penetration Tester / Ethical Hacker

Application Security SME, Penetration Tester / Ethical...

Java Developer

Java Developer Thomas Cook Online is the business unit...

Contract Systems Administrator, Windows £320 per day

Contract Systems Administrator, Southampton My...

PHP Web Developer, PHP, to £30k + 30% bonus

PHP Web Developer required to join my market-leading...

To send to more than one email address, simply separate each address with a comma.