- Amanda Palmer dragged for ‘demanding’ coverage of her music Thursday 8:33 PM
- How to get free TikTok followers without downloading a virus Thursday 7:57 PM
- Trump Jr.s ‘Triggered’ topped best-seller’s list with help of RNC Thursday 7:41 PM
- FBI raided millionaire YouTuber’s home, allegedly took everything Thursday 6:55 PM
- A fake Labour party website is spreading disinformation in Britain Thursday 6:16 PM
- Twitter bans cricket club for posting ISIS content in apparent hack Thursday 6:12 PM
- This dad remade his daughter’s NSFW photo—and people are loving it Thursday 5:51 PM
- Teen allegedly posted ‘slave for sale’ Craigslist ad featuring his Black classmate Thursday 5:28 PM
- People are crushed that this teen love story might be a TikTok ‘joke’ Thursday 4:50 PM
- Is Jacob Wohl evading his Twitter ban with Jack Burkman’s account? Thursday 2:06 PM
- Biden’s most perplexing debate answers, explained Thursday 2:03 PM
- How to stream Colts vs. Texans on Thursday Night Football Thursday 12:52 PM
- Netflix drops ‘A Christmas Prince: The Royal Baby’ trailer Thursday 12:43 PM
- Uber says it will audio-record rides to address safety concerns Thursday 12:41 PM
- ‘Avengers: Endgame’ writers go in-depth on how they decided which superheroes lived and died Thursday 12:22 PM
One day after a report claimed that Yahoo scanned users’ emails on behalf of U.S. intelligence agencies, the head of the NSA argued that getting a blanket look at hundreds of millions of Americans’ emails “would be illegal.”
“I’ve read this real quickly, and I thought, well, this is a little speculative,” Adm. Michael Rogers said at the Cambridge Cyber Summit on Wednesday.
Yahoo called the report “misleading” in a short and vague denial to reporters.
“We narrowly interpret every government request for user data to minimize disclosure,” a Yahoo spokesperson wrote. “The mail scanning described in the article does not exist on our systems.”
There’s no telling what exactly that means, but, due to the lack of a strong denial, it’s reasonable to guess that some kind of scanning system does exist.
Since the report emerged a day ago, journalists and technologists have been hypothesizing about the specific nature of what’s been going on at Yahoo.
Robert Graham, at Errata Security, emphatically pointed out that the Reuters article lacked crucial details about how the scanning worked. Actually, he called the whole report garbage.
Well? Which is it? Did they “search incoming emails” or did they “scan mail accounts”? Whether we are dealing with emails in transmit, or stored on the servers, is a BFD (Big Fucking Detail) that you can’t gloss over and confuse in a story like this. Whether searches are done indiscriminately across all emails, or only for specific accounts, is another BFD.
Rogers, who heads both the NSA and U.S. Cyber Command, argued that the U.S. does not engage in blanket domestic surveillance such as scanning all Yahoo emails.
“We don’t do that, and no court would ever grant us the authority to do that,” he said. “We have to make a specific case. And what the court grants is specific authority for a specific period of time for a specific purpose. It’s not a blanket, just everything.”
As usual, the details here are scant. But what is clear is that there is a whole lot more left to learn about exactly how much data the U.S. government gets from America’s biggest tech firms. Vague denials and secret court orders do little to educate the public on that front.
Patrick Howell O'Neill is a notable cybersecurity reporter whose work has focused on the dark net, national security, and law enforcement. A former senior writer at the Daily Dot, O'Neill joined CyberScoop in October 2016. I am a cybersecurity journalist at CyberScoop. I cover the security industry, national security and law enforcement.