FBI Caught On Camera Returning Seized Server
sunbird writes "As previously covered on Slashdot, on April 18th the FBI seized a server located in a New York colocation facility shared by May First / People Link and Riseup.net. The server, which was operated by the European Counter Network ('ECN'), the oldest independent internet service provider in Europe, was seized in relation to bomb threats sent to the University of Pittsburgh using a Mixmaster anonymous remailer hosted on the server (search warrant). The FBI's action has been criticized by the EFF. Predictably, the threats continued even after the server seizure. On April 24th, the FBI quietly returned the server, without notifying either Mayfirst / People Link or riseup, and were caught on video doing it."
So, they returned a server. Isn't that good?
Maybe I don't understand the issue here.
The footage, taken by a small surveillance camera MF/PL technologists installed after the FBI seizure of the server, is a rare glimpse of what appears to be an FBI operation.
The FBI has returned equipment? Rare indeed!
-IOVAR Web Dev Platform
Sure it was heavy handed -- in about the same way as shutting down traffic for a major accident is heavy handed. You know we have the ability to just plow that wreckage off our highways and get on with our lives but noooo the police want to find out who was at fault and make sure everyone is okay. Even though it inconveniences thousands of people every day and, predictably, the accidents keep happening despite the police officers' efforts.
Predictably, the threats continued even after the server seizure
That's gotta be the stupidest part of this summary. The idea wasn't to stop the threats but to trace them! If logging wasn't turned off on that server, the FBI would have been able to trace it. That being the only thing they could do, they did it. I mean, if I was a student or parent, I would be really upset if the FBI said "Well, we could confiscate that server and mildly interrupt e-mail service for 300 people but it will only tell us who is doing it if logging is turned on and it's probably not so we're just going to go ahead and let this all continue to happen."
... with the safety and lives of hundreds of other people at the university in mind when it happened.
Yeah, hundreds of people were inconvenienced when their e-mail was disrupted
Big bad FBI, trying to follow the only lead they have on some sick pervert who gets off to bomb threats. Shame on them! Sometimes I think law enforcement is damned if they do, damned if they don't.
My work here is dung.
On April 24th, the FBI quietly returned the server, without notifying either Mayfirst / People Link or riseup, and were caught on video doing it. what kind of no security operation are they running at this datacenter? The last place i worked , to get in the datacenter required a thumb reader, to get into the clean room, that then detected if more than one person had entered and would not let you past that door untill the other door was closed and no other people were in the clean room, and it was ALWAYS staffed to see people coming and going. For just random people to come in , take a server, then put it back later with out any one knowing is some where i would never store my server.
RTFA - they are not going to use the returned server.
in other news, the local keystone cops returned a section of highway in the middle of the night, hoping to avoid being noticed...
that particular section of highway was used by a group of bandits to threaten passer-byes.
after that section was removed at great inconvenience to everyone involved, the bandits simply moved down the highway a couple of miles...
There were no cameras when they took it. May 1st secretly installed cameras after the original theft (a seizure requires notification).
Peter predicted that you would "deliberately forget" creation 2000 years ago...
It never kept any log files or other personal identifying data, so they could probably make some serious coin auctioning it off to whoever wants to pay the most to get a first-hand look at the lastest guvernment spyware.
Let's call it what it is, Anti-Social Media.
The camera that caught the action was actually installed inside the rack, by MayFirst. You can see the FBI agent looking at it several times, so it apparently wasn't as surreptitious as MayFirst had hoped.
Thanks to the War on Drugs, it's easier to buy meth than it is to buy cold medicine!
http://ia601208.us.archive.org.nyud.net/32/items/FbiReturnsRiseupServerToMayFirstpeopleLinkCabinet/fbi-returns-seized-server.ogg
Join the Slashcott! Feb 10 thru Feb 17!
As you pointed out, this is a VERY fast turn-around ... almost like they hope that people will use it in a "business as usual" fashion ... like a honeypot?
Not even telling them that it was back so that the owners could decide if they even wanted to risk leaving it in place? VERY suspicious.
The FBI also left a dolly to move the server. Unfortunately the dolly is filled with microphones and wi-fi packet recorders. The FBI also left a fruit basket as an apology. Unfortunately the fruit is laced with mind control chemicals. The FBI also left an apology note. Unfortunately the text is interlaced with words that activate their sleeper agent inside the company.
I mean I can play the conspiracy game all day, yeah if they installed spyware on it, the FBI are pieces of shit. At least have the decency to request the compliance of the company and let them decide to help you track down a scofflaw. At least you could then tell the parents and students that this company won't comply with your investigation so your hands are tied until further leads.
I mean, come on, you think that the FBI is that savvy? You think that any two bit network or systems engineer wouldn't be able to pick up on weirdness in network traffic or processes running from/on the machine phoning home to the FBI? Any company worth its salt that accepts a server or hardware back from anybody proceeds to rebuild it from scratch. Flash or upgrade the firmware if you want! It's so hilariously convenient that law enforcement is a barrel of bumbling idiots when they're supposed to be helping us and when they're trying to help us they are seventeen steps ahead of us and already have infiltrated my underwear drawer. In this story they go straight from idiots who can't understand that logging is turned off on this server to installing honeypot software/devices in two weeks into a device they just got. Right. VERY suspicious. And let's face it, this bomb threat guy has already moved on to another remailer and he's not going to return to this remailer that he has inconvenienced.
My work here is dung.
Me too, they should get their new Business Intelligence team on it.
Try reading the Bill of Rights sometime. The FBI broke the 6th law in that document (also known as the 4th amendment) which requires obtaining a search warrant from a judge prior to entrance.
You mean something like this? The warrant that was linked to not only in the article but also the summary?
And yes sometimes the bad guy gets away.
That would be a hilarious motto for any law enforcement agency! I'd opt for "We do everything within our legal rights to catch the bad guy."
That is preferable to harassing innocent people & treating them like criminals (example: patting down their breasts and crotches)
You are confusing the FBI and TSA.
(example: randomly searching through cars)
You are confusing the FBI and ... your local law enforcement? Who require probable cause?
(example: arresting people who publish anti-war pamphlets)
The FBI might have done that in the past during Vietnam but it was probably for other trumped up bogus charges and luckily today we have the EFF/ACLU to take up those cases when that happens. Got any recent examples or really any citations at all for this entire post?
(example: rounding-up asian-Americans & tossing them in jail cause it's world war 2)
Wow, dude, that was six decades ago ... yeah it was horrible and I think it's been publicly recognized as horribly racist and is a reason for public shame to the United States. I do not think that's happening today.
(example: assassinating Americans because you SUSPECT they might be terrorists)
Again, I think you're confusing the FBI with some other agency ...
(example: strip-searching old people before they can fly)
But you repeat yourself ... that's the TSA, not FBI. The TSA definitely has no purpose and needs to be dissolved.
(example: forcing a breast-feeding mom to stand in a glass jail for an hour, rather than let her take her pumping equipment home to her newborn kid)
What the hell? Citation?
INFORM yourself of what's happening in the world.
Yep, I'm the misinformed one here, got it. Hey, since all government actions are from the same people (you cross state and federal levels several times there) why don't you go tell your local county clerk to stop murdering Afghan children? Makes about as much sense as the rest of your rambling post ...
My work here is dung.
I agree with this. Also, my girlfriend works there and I would much rather them evacuate than my girlfriend get blown up because they ignored a threat by "a 12 year old kid" that turns out to be real.
Congratulations on being taken in by yet another misleading sensationalistic summary. It is just as likely that the walked up to the facility, presented their credentials and warrant (which they had) and took the server as stipulated in the warrant. Where in any of the articles is there any indication that the FBI kicked down any doors.
The "caught on tape" phrase is also misleading in that it implies that the FBI agents were sneaking around. It is just as likely that they came to the front door, presented their credentials and stated they were returning the server. They then went into the server room and returned the server to where it belonged. Where in any of the reports is there any statement that the agents were sneaking? Sure they didn't call the server owner or the colocation company telling them what they were doing but that is very different than "sneaking around". If you watch the video you will notice that the agent in front of the rack looks directly at the camera at least three times. He didn't care there was a camera there because they were not sneaking around.
They got a warrant, took it. When done the replaced it.
Wow..yeah.. stop the presses...
Some people are trying too hard to find a reason to be angry.
The Kruger Dunning explains most post on
Anyone with a brain would go over that system with a fine-toothed comb to look for such things, and then wipe the system and restore from a known-good backup, and diff update.
Trash the server, it's the only way to be sure. In fact, since they appear to have been in the datacenter, just nuke the entire site from orbit. It's the only way to be sure.
There's no place like