Cybersecurity

Our world runs on computers and the Internet. We use them for everything, from communicating with long-lost classmates to managing our bank accounts to buying anything from cars to diapers. The effort to keep these systems secure is known as cybersecurity. Unfortunately, all too often, simple, effective cybersecurity steps are not taken, like changing passwords routinely or updating and patching holes in software. Even when they are, sophisticated hackers can sometimes get around these defenses. The government is using this threat to try to expand its power and permit companies to funnel our sensitive, personal online information to it. Learn more >>

The Patriot Act, Cyber-Edition

By Josh Bell, Media Strategist, ACLU at 5:22pm

This week marks 10 years since the Patriot Act was signed into law by President George W. Bush. The ACLU is hosting a blog series that will address some of the sweeping changes to surveillance laws over the past decade. To learn more about the Patriot Act, visit www.aclu.org/patriot.

Congress is currently considering new cybersecurity measures, including some proposed by the Obama administration. But the plans threaten to make the same mistakes as the Patriot Act, which has its 10th anniversary this Wednesday.

Happy Cybersecurity Awareness Month!

By Michelle Richardson, Legislative Counsel, ACLU Washington Legislative Office at 5:50pm

We would like to educate you about how cybersecurity may justify the next series of big brother powers.

U.S. Security Agencies Begging for a Cybersecurity "Cold War"

By Jay Stanley, Senior Policy Analyst, ACLU Speech, Privacy and Technology Project at 3:34pm

(Originally posted on Huffington Post.)

So the U.S. security establishment is salivating at the prospect of a new cybersecurity "Cold War." In an over-the-top op-ed in Tuesday's Washington Post, Mike McConnell issues a declaration that we are "fighting a cyber war today" and compares it to the nuclear showdown with the Soviets. McConnell exemplifies the security establishment as much as anyone — former director of the National Security Agency (NSA), former Director of National Intelligence, and currently executive vice president at Booz Allen Hamilton, a private-sector refuge for former U.S. intelligence officials (and a company that stands to make large sums from consulting on cybersecurity).

Data Breach Raises Questions About NASA Policy At Issue in Recent Supreme Court Case

By Jay Stanley, Senior Policy Analyst, ACLU Speech, Privacy and Technology Project at 4:35pm

We hate to say “I told you so.”

In 2010, the Supreme Court heard a case called NASA v. Nelson, which involved the government’s right to carry out highly intrusive background checks. NASA decided to require its employees—many of whom had already been working for the agency for many years in what the government conceded were “low-risk” and “non-sensitive” positions—to fill out a form in which they were required to disclose any illegal drug use or possession within the previous year, along with details on any treatment or counseling received for such use. These employees were also required to sign an authorization permitting NASA’s security people to obtain

Civil Liberties in the Digital Age: Weekly Highlights (9/14/2012)

By Anna Salem, ACLU of Northern California at 2:48pm

 In the digital age that we live in today, we are constantly exposing our personal information online. From using cell phones and GPS devices to online shopping and sending e-mail, the things we do and say online leave behind ever-growing trails of personal information. The ACLU believes that Americans shouldn’t have to choose between using new technology and keeping control of your private information. Each week, we feature some of the most interesting news related to technology and civil liberties that we’ve spotted from the previous week.

Civil Liberties in the Digital Age: Weekly Highlights (8/10/2012)

By Anna Salem, ACLU of Northern California at 3:55pm

In the digital age that we live in today, we are constantly exposing our personal information online. From using cell phones and GPS devices to online shopping and sending e-mail, the things we do and say online leave behind ever-growing trails of personal information. The ACLU believes that Americans shouldn’t have to choose between using new technology and keeping control of your private information. Each week, we feature some of the most interesting news related to technology and civil liberties that we’ve spotted from the previous week.

ACLU at DEFCON 20!

By Ateqah Khaki at 5:04pm

The ACLU will be out in force at DEFCON – one of the largest annual hacker conventions in the country – later this week and weekend! 

We will have a table at the vendor area all weekend (with super awesome ACLU t-shirts for anyone who signs up to become a member!). In addition to trying our hardest not to end of up on the Wall of Sheep, here’s a rundown of what we’ll be up to in Las Vegas.

Civil Liberties in the Digital Age: Weekly Highlights (7/20/2012)

By Anna Salem, ACLU of Northern California at 2:57pm

In the digital age that we live in today, we are constantly exposing our personal information online. From using cell phones and GPS devices to online shopping and sending e-mail, the things we do and say online leave behind ever-growing trails of personal information. The ACLU believes that Americans shouldn’t have to choose between using new technology and keeping control of your private information. Each week, we feature some of the most interesting news related to technology and civil liberties that we’ve spotted from the previous week.

Friday links roundup

By Jay Stanley, Senior Policy Analyst, ACLU Speech, Privacy and Technology Project at 5:38pm

A few links that have caught our eye this past week:

Paul Rosenzweig has posted a nice piece on Lawfare on the reasons to be skeptical of the need for cybersecurity regulation. He breaks cybersecurity down into its constituent parts (as we have urged) of cybercrime, cyber espionage, and truly catastrophic “digital Pearl Harbor” attacks. He suggests that the first two do not justify regulation, and (like us) is skeptical about the degree of risk of the third. In explaining that skepticism, he provides an elegant analysis of the electric grid, the taking down of which is a frequent cyber-attack scenario, and makes the point that the pro-regulation viewpoint “mistakes vulnerability for risk”—in other words, there can be a vulnerability in a system, but still a low risk that anyone will actually be able to or try to exploit it.

Cybersecurity Legislation and Common Sense – Still Waiting for the Two to Meet

By Zachary Katznelson, Senior Staff Attorney, ACLU National Security Project at 1:25pm

During the past two weeks, we’ve been highlighting cybersecurity and the dangers that various legislative proposals pose to our civil liberties. One major concern is the prospect of private companies sharing vast amounts of our personal information with the military and other government agencies, without a warrant or any court oversight. Much of the cybersecurity debate has been distorted by the conflation of scary stories of possible terrorist cyberattacks (scenarios that frequently fall apart when confronted by the facts) with troubling, but much lower-grade incidents of credit card and other theft. The result is a pervasive crisis atmosphere, which is then used to justify sweeping aside civil liberties in the name of security.

Statistics image