Domain: firstlook.org
Stories and comments across the archive that link to firstlook.org.
Stories · 64
-
The NSA Is Recording Every Cell Phone Call In the Bahamas
Advocatus Diaboli (1627651) writes "The National Security Agency is secretly intercepting, recording, and archiving the audio of virtually every cell phone conversation on the island nation of the Bahamas. According to documents provided by NSA whistleblower Edward Snowden, the surveillance is part of a top-secret system – code-named SOMALGET – that was implemented without the knowledge or consent of the Bahamian government. Instead, the agency appears to have used access legally obtained in cooperation with the U.S. Drug Enforcement Administration to open a backdoor to the country's cellular telephone network, enabling it to covertly record and store the 'full-take audio' of every mobile call made to, from and within the Bahamas – and to replay those calls for up to a month." -
British Spy Chiefs Secretly Begged To Play In NSA's Data Pools
Advocatus Diaboli (1627651) writes "Britain's electronic surveillance agency, Government Communications Headquarters, has long presented its collaboration with the National Security Agency's massive electronic spying efforts as proportionate, carefully monitored, and well within the bounds of privacy laws. But according to a top-secret document in the archive of material provided to The Intercept by NSA whistleblower Edward Snowden, GCHQ secretly coveted the NSA's vast troves of private communications and sought 'unsupervised access' to its data as recently as last year – essentially begging to feast at the NSA's table while insisting that it only nibbles on the occasional crumb." -
More On the "Cuban Twitter" Scam
We mentioned a few days ago the USAID-funded SMS social network that was connecting Cubans against the wishes of the Cuban government. Now Glen Greenwald's The Intercept has more on this kind of back-channel government intervention via what he characterizes as "the Internet propaganda bucket." Advocatus Diaboli (1627651) writes with an excerpt: "These ideas–discussions of how to exploit the internet, specifically social media, to surreptitiously disseminate viewpoints friendly to western interests and spread false or damaging information about targets–appear repeatedly throughout the archive of materials provided by NSA whistleblower Edward Snowden. Documents prepared by NSA and its British counterpart GCHQ–and previously published by The Intercept as well as some by NBC News–detailed several of those programs, including a unit devoted in part to "discrediting" the agency's enemies with false information spread online.
The documents in the archive show that the British are particularly aggressive and eager in this regard, and formally shared their methods with their U.S. counterparts. One previously undisclosed top-secret document–prepared by GCHQ for the 2010 annual "SIGDEV" gathering of the "Five Eyes" surveillance alliance comprising the UK, Canada, New Zealand, Australia, and the U.S.–explicitly discusses ways to exploit Twitter, Facebook, YouTube, and other social media as secret platforms for propaganda." -
More On the "Cuban Twitter" Scam
We mentioned a few days ago the USAID-funded SMS social network that was connecting Cubans against the wishes of the Cuban government. Now Glen Greenwald's The Intercept has more on this kind of back-channel government intervention via what he characterizes as "the Internet propaganda bucket." Advocatus Diaboli (1627651) writes with an excerpt: "These ideas–discussions of how to exploit the internet, specifically social media, to surreptitiously disseminate viewpoints friendly to western interests and spread false or damaging information about targets–appear repeatedly throughout the archive of materials provided by NSA whistleblower Edward Snowden. Documents prepared by NSA and its British counterpart GCHQ–and previously published by The Intercept as well as some by NBC News–detailed several of those programs, including a unit devoted in part to "discrediting" the agency's enemies with false information spread online.
The documents in the archive show that the British are particularly aggressive and eager in this regard, and formally shared their methods with their U.S. counterparts. One previously undisclosed top-secret document–prepared by GCHQ for the 2010 annual "SIGDEV" gathering of the "Five Eyes" surveillance alliance comprising the UK, Canada, New Zealand, Australia, and the U.S.–explicitly discusses ways to exploit Twitter, Facebook, YouTube, and other social media as secret platforms for propaganda." -
GCHQ and NSA Targeted World Leaders, Private German Companies
Advocatus Diaboli sends this news from Der Spiegel: "Documents show that Britain's GCHQ intelligence service infiltrated German Internet firms and America's NSA obtained a court order to spy on Germany and collected information about the chancellor in a special database. Is it time for the country to open a formal espionage investigation? ... A secret NSA document dealing with high-ranking targets has provided further indications that Merkel was a target. The document is a presentation from the NSA's Center for Content Extraction, whose multiple tasks include the automated analysis of all types of text data. The lists appear to contain 122 country leaders. Twelve names are listed as an example, including Merkel's." -
Fake PGP Keys For Crypto Developers Found
IamTheRealMike (537420) writes "In recent months fake PGP keys have been found for at least two developers on well known crypto projects: Erinn Clark, a Tor developer and Gavin Andresen, the maintainer of Bitcoin. In both cases, these PGP keys are used to sign the downloads for popular pieces of crypto software. PGP keys are supposed to be verified through the web of trust, but in practice it's very hard to find a trust path between two strangers on the internet: one reply to Erinn's mail stated that despite there being 30 signatures [attached to] her key, [the respondent] couldn't find any trust paths to her. It's also very unclear whether anyone would notice a key substitution attack like this. This leaves three questions: who is doing this, why, and what can be done about it? An obvious candidate would be intelligence agencies, who may be trying to serve certain people with backdoored binaries via their QUANTUMTHEORY man-in-the-middle system. As to what can be done about it, switching from PGP to X.509 code signing would be an obvious candidate. Both Mac and Windows support it, obtaining a forged certificate is much harder than simply uploading a fake PGP key, and whilst X.509 certs can be issued in secret until Google's Certificate Transparency system is fully deployed, finding one would be strong evidence that an issuing CA had been compromised: something that seems plausible but for which we currently lack any evidence. Additionally, bad certificates can be revoked when found whereas beyond making blog posts, not much can be done about the fake PGP keys." -
Inside NSA's Efforts To Hunt Sysadmins
An anonymous reader writes "The Snowden revelations continue, with The Intercept releasing an NSA document titled 'I hunt sys admins' (PDF on Cryptome). The document details NSA plans to break into systems administrators' computers in order to gain access to the networks they control. The Intercept has a detailed analysis of the leaked document. Quoting: 'The classified posts reveal how the NSA official aspired to create a database that would function as an international hit list of sys admins to potentially target. Yet the document makes clear that the admins are not suspected of any criminal activity – they are targeted only because they control access to networks the agency wants to infiltrate. "Who better to target than the person that already has the ‘keys to the kingdom’?" one of the posts says.'" -
How the NSA Plans To Infect 'Millions' of Computers With Malware
Advocatus Diaboli sends news from The Intercept about leaked documents which show that the NSA is significantly expanding its efforts to build an automated system to compromise computers remotely. From the article: "The implants being deployed were once reserved for a few hundred hard-to-reach targets, whose communications could not be monitored through traditional wiretaps. But the documents analyzed by The Intercept show how the NSA has aggressively accelerated its hacking initiatives in the past decade by computerizing some processes previously handled by humans. The automated system – codenamed TURBINE – is designed to 'allow the current implant network to scale to large size (millions of implants) by creating a system that does automated control implants by groups instead of individually.' In a top-secret presentation, dated August 2009, the NSA describes a pre-programmed part of the covert infrastructure called the 'Expert System,' which is designed to operate 'like the brain.' The system manages the applications and functions of the implants and 'decides' what tools they need to best extract data from infected machines." -
The NSA Has an Advice Columnist
First time accepted submitter DTentilhao writes "On Friday, Glenn Greenwald's new website The Intercept published a number of internal NSA documents that didn't necessarily reveal any great state secrets, but instead cast some light on the NSA's office culture. Those documents, leaked by former security contractor Edward Snowden, were actually from an advice column series, written by a 20-year veteran of NSA management under the pen name 'Zelda.'" Here's the Intercept report. -
NSA and GHCQ Employing Shills To Poison Web Forum Discourse
Advocatus Diaboli writes with this excerpt from an article by Glenn Greenwald on the pervasiveness of shills poisoning web forums: "One of the many pressing stories that remains to be told from the Snowden archive is how western intelligence agencies are attempting to manipulate and control online discourse with extreme tactics of deception and reputation-destruction. It's time to tell a chunk of that story, complete with the relevant documents.. ... Among the core self-identified purposes of JTRIG are two tactics: (1) to inject all sorts of false material onto the Internet in order to destroy the reputation of its targets; and (2) to use social sciences and other techniques to manipulate online discourse and activism to generate outcomes it considers desirable. To see how extremist these programs are, just consider the tactics they boast of using to achieve those ends: 'false flag operations' (posting material to the Internet and falsely attributing it to someone else), fake victim blog posts (pretending to be a victim of the individual whose reputation they want to destroy), and posting 'negative information' on various forums." I guess Cryptome was right. Check out the the training materials provided to future forum spies. -
NSA and GHCQ Employing Shills To Poison Web Forum Discourse
Advocatus Diaboli writes with this excerpt from an article by Glenn Greenwald on the pervasiveness of shills poisoning web forums: "One of the many pressing stories that remains to be told from the Snowden archive is how western intelligence agencies are attempting to manipulate and control online discourse with extreme tactics of deception and reputation-destruction. It's time to tell a chunk of that story, complete with the relevant documents.. ... Among the core self-identified purposes of JTRIG are two tactics: (1) to inject all sorts of false material onto the Internet in order to destroy the reputation of its targets; and (2) to use social sciences and other techniques to manipulate online discourse and activism to generate outcomes it considers desirable. To see how extremist these programs are, just consider the tactics they boast of using to achieve those ends: 'false flag operations' (posting material to the Internet and falsely attributing it to someone else), fake victim blog posts (pretending to be a victim of the individual whose reputation they want to destroy), and posting 'negative information' on various forums." I guess Cryptome was right. Check out the the training materials provided to future forum spies. -
EFF Reports GHCQ and NSA Keeping Tabs On Wikileaks Visitors and Reporters
sandbagger writes in with a story about U.S. and British government interest and involvement with journalists visiting the Wikileaks website. "The Intercept recently published an article and supporting documents indicating that the NSA and its British counterpart GCHQ surveilled and even sought to have other countries prosecute the investigative journalism website WikiLeaks. GCHQ also surveilled the millions of people who merely read the WikiLeaks website. The article clarifies the lengths that these two spy organizations go to track their targets and confirms, once again, that they do not confine themselves to spying on to those accused of terrorism. One document contains a summary of an internal discussion in which officials from two NSA offices discuss whether to categorize WikiLeaks as a "malicious foreign actor" for surveillance targeting purposes. This would be an important categorization because agents have significantly more authority to engage in surveillance of malicious foreign actors." -
High Court Rules Detention of David Miranda Was Lawful
Alain Williams writes with news that last year's detention of David Miranda and seizure of files destined for Glenn Greenwald has been ruled lawful. From the article: "The nine-hour detention ... of an ex-Guardian journalist's partner has been ruled lawful. ... At the High Court, Mr Miranda claimed his detention under anti-terrorism laws was unlawful and breached human rights. But judges said it was a 'proportionate measure in the circumstances' and in the interests of national security. ... In his ruling, Lord Justice Laws said: 'The claimant was not a journalist; the stolen GCHQ intelligence material he was carrying was not "journalistic material," or if it was, only in the weakest sense.'" Naturally, an appeal is planned. -
Death By Metadata: The NSA's Secret Role In the US Drone Strike Program
Hugh Pickens DOT Com writes "Glenn Greenwald reports at his new independent news site 'The Intercept' that according to a former drone operator for the military's Joint Special Operations Command (JSOC), the NSA often identifies targets based on controversial metadata analysis and cell-phone tracking technologies. In one tactic, the NSA 'geolocates' the SIM card or handset of a suspected terrorist's mobile phone, enabling the CIA and U.S. military to conduct night raids and drone strikes to kill or capture the individual in possession of the device. The technology has been responsible for taking out terrorists and networks of people facilitating improvised explosive device attacks against US forces in Afghanistan. But he also states that innocent people have 'absolutely' been killed as a result of the NSA's increasing reliance on the surveillance tactic. One problem is that targets are increasingly aware of the NSA's reliance on geolocating, and have moved to thwart the tactic. Some have as many as 16 different SIM cards associated with their identity within the High Value Target system while other top Taliban leaders, knowing of the NSA's targeting method, have purposely and randomly distributed SIM cards among their units in order to elude their trackers. As a result, even when the agency correctly identifies and targets a SIM card belonging to a terror suspect, the phone may actually be carried by someone else, who is then killed in a strike. The Bureau of Investigative Journalism, which uses a conservative methodology to track drone strikes, estimates that at least 2,400 people in Pakistan, Yemen and Somalia have been killed by unmanned aerial assaults under the Obama administration. Greenwald's source says he has come to believe that the drone program amounts to little more than death by unreliable metadata. 'People get hung up that there's a targeted list of people. It's really like we're targeting a cell phone. We're not going after people – we're going after their phones, in the hopes that the person on the other end of that missile is the bad guy.' Whether or not Obama is fully aware of the errors built into the program of targeted assassination, he and his top advisers have repeatedly made clear that the president himself directly oversees the drone operation and takes full responsibility for it."