CDT Wants US Gov't to Detail Computer Monitoring Program

U.S. President Barack Obama's administration needs to answer several questions about the privacy implications of a new version of a computer intrusion detection system that can reportedly read e-mail, a privacy and civil rights advocacy group said.

By Grant Gross
Tue, July 28, 2009

IDG News Service — U.S. President Barack Obama's administration needs to answer several questions about the privacy implications of a new version of a computer intrusion detection system that can reportedly read e-mail, a privacy and civil rights advocacy group said.

The Center for Democracy and Technology (CDT), in a report released Tuesday, called on the Obama administration to release information about the legal authority for the so-called Einstein intrusion detection system, a version of which has been rolled out at the U.S. Department of Homeland Security.

The CDT report also asks the Obama administration to release information about the role of the U.S. National Security Agency (NSA) in the development and operation of Einstein 3, a new version of the software reportedly being developed.

The second version of Einstein is deployed at the DHS and is being rolled out to other U.S. agencies. While Einstein 2 is able to detect malicious code during predefined code signatures, Einstein 3 will also be able to read e-mail and other Internet traffic, according to recent press reports.

"This raises serious privacy concerns," the CDT report says. "While its predecessor merely detected and reported malicious code, Einstein 3 is to have the capability of intercepting threatening Internet traffic before it reaches a government system, raising additional concerns. According to press accounts, Einstein 3 will operate inside the networks of the telecoms ..."

The Einstein 3 used capabilities created by the NSA, the CDT paper says. NSA is the agency that partnered with U.S. telecom carriers in recent years to conduct surveillance on U.S. residents exchanging telephone calls or e-mail messages with foreigners with suspected ties to terrorism.

Spokespeople for DHS and NSA didn't immediately return messages seeking comment on the CDT report.

The kind of information the CDT is asking the Obama administration to disclose about Einstein is similar in some ways to information released in a privacy impact statement for Einstein 2, released in May 2008, said Gregory Nojeim, CDT's senior counsel. The information CDT is seeking "wouldn't help an adversary overcome the system," he said.

Among other things, CDT wants to know what law gives DHS the legal authority to conduct such surveillance, Nojeim said. "Some facts about the program might need to remain secret, but the law that supports it cannot be a secret," he added.

CDT also wants to know:

-- If the private sector was involved in developing Einstein 2 and 3.

-- What safeguards will be put in place to prevent the misuse of private information collected.

-- What personally identifiable information will be collected by Einstein 3.

-- How will DHS share data collected with Einstein 3?

As you know, everything is mobile, connected, interactive, and immediate. This is exactly why organizations need a highly agile IT infrastructure in order to keep pace with extreme fluctuations in business demand. This book will help you understand why infrastructure convergence has been widely accepted as the optimal approach for simplifying and accelerating your IT to deliver services at the speed of business while also shifting significantly more IT resources from operations to innovation.
For this white paper, IDC performed an in-depth analysis of the business value of VMware View, defined as the expected ROI associated with the use of the solution as a platform for the targeted deployment of a virtual desktop infrastructure.
This paper explains virtualization, its benefits for mid-sized business and how IBM's virtualization strategy can help these companies reduce costs, improve services and simplify management.
Forrester Research makes recommendations on best practices to optimize branch virtualization and consolidation initiatives. See how a "thin" branch architecture, with key servers, services and applications in the data center that relies on a high-performing WAN connection, can offer the greatest efficiencies.
When trying to achieve continuous compliance with internal policies and external regulations, organizations need to replace traditional processes with a new best practice approach and new innovative technology, such as that provided by IBM Tivoli Endpoint Manager.
IBM Tivoli Endpoint Manager helps organizations automatically manage patches for multiple operating systems and applications across hundreds of thousands of endpoints regardless of location, connection type or status.  
Download this webcast to learn about the design considerations for virtualizing SQL workloads, performance and scalability information and high-availability options, as well as support considerations
Many enterprises have discovered that the use of virtualization to support desktop workloads creates a range of significant benefits. These benefits include price efficiencies, improved IT management and greater agility and choice for end users.

This VMware sponsored webcast with IDC will provide both quantitative measurement of the business value -- defined as the expected ROI -- and qualitative analysis associated with the use of VMware View™. IDC will also provide an analysis of the View Composer and ThinApp™ features of VMware View, including the business value of these solutions and an overview of how they work.

Attend this webcast to learn about:
- Challenges and barriers that might impede the adoption of desktop virtualization
- Navigating roadblocks to facilitate a strategic implementation
- Optimizing qualitative and quantitative benefits to IT and your business
Applications are changing - they're increasingly web-oriented, global in nature and run from multiple device types. Additionally, the volume of data is growing exponentially every year. How do you ensure your applications have fast, accurate, up-to-date information in this new world? Modern applications are data-intensive; delivering data the old way using monolithic databases isn't working. What's needed is a modern approach to data. One that scales-out as needed and delivers predictable high performance, but without sacrificing data consistency or integrity.
VMware View™ 5 simplifies IT management while increasing end user freedom by delivering desktop services from your cloud. Building upon VMware's leadership in desktop virtualization, VMware View 5 delivers a high-performance user experience while giving IT greater policy control.

View this webcast and find out how VMware View 5 can help you:
- Deliver the highest fidelity experience of desktop services across any device and any network
- Simplify and automate IT management, security and control of desktop services
- Reduce the costs associated with your desktop environment
IT professionals are being asked to deliver faster "time-to-value" than ever before. An IDG Research survey found that CIOs are eager to invest in technologies that will enable them to get new applications and services up quickly, achieving faster time-to-value.
Learn how to reduce IT management overhead, ease revision control, guarantee data security, scale systems more quickly and reduce server and software costs.
Newsletter Sign-Up »

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all Newsletters | Privacy Policy
Resource Center