- Matt Gaetz hires speechwriter fired by White House for attending white nationalist event 3 Years Ago
- Here’s why Elon Musk is a sheep on Twitter Today 12:14 PM
- Trump is already running Facebook ads on the Mueller report Today 12:07 PM
- 20 thoughtful gifts grads actually want Today 12:00 PM
- 7 of the best psychological thriller movies on Shudder Today 11:44 AM
- Seth Abramson’s epic Mueller thread finally comes to a conclusion Today 11:40 AM
- Netflix is testing out a random play feature Today 11:28 AM
- Teen star Danielle Cohn faked pregnancy for YouTube prank Today 10:55 AM
- How to watch ‘A Discovery of Witches’ for free Today 10:42 AM
- Rev up your own family rivalries with these ‘Game of Thrones’ board games Today 10:29 AM
- Mueller’s ‘harm to ongoing matter’ is the best way to stay silent about your life Today 10:21 AM
- 10 Korean skincare brands that are worth your money Today 10:00 AM
- 20 unique Mother’s Day gifts for the cool moms Today 9:45 AM
- Ancestry.com ad tries to sell slavery as romance—not rape Today 9:44 AM
- The 9 best Satanic movies on Shudder Today 9:22 AM
U.K. surveillance bill would effectively ban strong encryption
The Conservative government says it’s necessary to protect U.K. citizens.
The United Kingdom may soon force companies to bypass strong encryption, effectively banning the primary tool that allows users to fully protect their online data and communications, according to a new proposal from the Conservative government published on Wednesday.
A sweeping new 299-page proposal from U.K. Home Secretary Theresa Mays would grant national police new legal abilities to track and hack U.K. citizens without a warrant. It would also require companies to assist in several key ways, including by keeping records on the websites visited by customers for a year and assisting security services in hacking targets.
The new ban on strong encryption will be the strongest action by a Western government so far in a growing political battle over cryptography that stretches from Washington to London and beyond.
The bill would also allow the bulk collection of data from websites—but not, according to Mays, every specific Web page—visited by customers. This type of online bulk collection is not allowed in any other Western country. Mays calls it “simply the modern equivalent of an itemized phone bill.”
Programs like Apple‘s iMessage and Facebook‘s WhatsApp, both of which use encryption by default, would fall under the new proposal’s rules. Apple lawyers have said they cannot provide iMessage data to any authorities because the encryption is beyond their ability to decipher.
The new law would ban such strong encryption.
I would like to see Apple refuse to sell iPhone in UK if gov’t bans end-to-end encryption. Does Parliament dare be that stupid?
— Jimmy Wales (@jimmy_wales) November 3, 2015
Encryption tools have become increasingly popular around the world since Snowden leaked documents to journalists concerning secret surveillance programs spearheaded by the National Security Agency and its British counterpart, Government Communications Headquarters.
Two years after Snowden revealed the bulk communications collection that the GCHQ is engaged in, the new proposal allows the agency to continue to practice of bulk collection, even against people not suspected of a crime.
The new bill does provide some checks and balances on surveillance. Interception warrants will be given by “double-lock” that allows a panel of seven retired judges to veto. When spying takes place against elected politicians in Parliament, the U.K. prime minister himself will need to consent. Other “sensitive professions” will be subject to special protections. These professions include medical doctors, lawyers, journalists, Members of Parliament and the devolved legislatures, and Ministers of Religion.
The new draft of the investigatory powers bill is the culmination of a years-long political saga reignited by the deadly attacks on Charlie Hebdo in January 2015. In days following that attack, U.K. Prime Minister David Cameron criticized strong encryption and argued that an effort to “modernize” the country’s police meant they should not allow communication that cannot be read by security services during an emergency.
“There should be no area of cyberspace which is a haven for those who seek to harm us, to plot, poison minds, and peddle hatred under the radar,” Mays said in a statement on Wednesday. “But I am also clear that the exercise and scope of investigatory powers should be clearly set out and subject to stringent safeguards and robust oversight, including ‘double-lock’ authorisation for the most intrusive capabilities. This bill will establish world-leading oversight to govern an investigatory powers regime which is more open and transparent than anywhere else in the world.”
Opposition politicians in the U.K. have had various reactions.
David Winnick from the Labour Party says the proposal could be a “bitter blow to civil liberties.” Nick Clegg from the Liberal Democrats argued this proposal is “much improved” from the original 2012 proposal, which he was instrumental in defeating.
Patrick Howell O'Neill is a notable cybersecurity reporter whose work has focused on the dark net, national security, and law enforcement. A former senior writer at the Daily Dot, O'Neill joined CyberScoop in October 2016. I am a cybersecurity journalist at CyberScoop. I cover the security industry, national security and law enforcement.