- Ready for Dark Mode? Here’s how to get it, and everything else in iOS 13 4 Years Ago
- Students across the world are walking out to protest inaction on climate change 4 Years Ago
- YouTubers are exploiting Area 51 mania for content Today 10:29 AM
- Veterans confront Dan Crenshaw over his support for Trump Today 10:29 AM
- Google Maps may soon come with an Incognito Mode Today 10:13 AM
- Right-wing Beto O’Rourke ‘pissy pants’ meme actually features indie rock star Today 10:11 AM
- Facebook employee dies in apparent suicide at Bay Area headquarters Today 10:06 AM
- Giuliani just straight-up tweets some Ukraine secrets Today 9:29 AM
- You can now buy that viral game about an annoying goose Today 8:59 AM
- Bill de Blasio was still running for president, but now he’s not Today 8:40 AM
- How to stream Panthers vs. Cardinals in Week 3 Today 8:20 AM
- ‘American Dreamer’ is a frustratingly basic crime thriller starring Jim Gaffigan Today 7:00 AM
- ‘Smallville’ star Tom Welling will play Superman once again Today 6:43 AM
- How old is Beto O’Rourke? Today 6:30 AM
- How to stream Chiefs vs. Ravens in NFL Week 3 action Today 6:08 AM
U.K. surveillance bill would effectively ban strong encryption
The Conservative government says it’s necessary to protect U.K. citizens.
The United Kingdom may soon force companies to bypass strong encryption, effectively banning the primary tool that allows users to fully protect their online data and communications, according to a new proposal from the Conservative government published on Wednesday.
A sweeping new 299-page proposal from U.K. Home Secretary Theresa Mays would grant national police new legal abilities to track and hack U.K. citizens without a warrant. It would also require companies to assist in several key ways, including by keeping records on the websites visited by customers for a year and assisting security services in hacking targets.
The new ban on strong encryption will be the strongest action by a Western government so far in a growing political battle over cryptography that stretches from Washington to London and beyond.
The bill would also allow the bulk collection of data from websites—but not, according to Mays, every specific Web page—visited by customers. This type of online bulk collection is not allowed in any other Western country. Mays calls it “simply the modern equivalent of an itemized phone bill.”
Programs like Apple‘s iMessage and Facebook‘s WhatsApp, both of which use encryption by default, would fall under the new proposal’s rules. Apple lawyers have said they cannot provide iMessage data to any authorities because the encryption is beyond their ability to decipher.
The new law would ban such strong encryption.
I would like to see Apple refuse to sell iPhone in UK if gov’t bans end-to-end encryption. Does Parliament dare be that stupid?
— Jimmy Wales (@jimmy_wales) November 3, 2015
Encryption tools have become increasingly popular around the world since Snowden leaked documents to journalists concerning secret surveillance programs spearheaded by the National Security Agency and its British counterpart, Government Communications Headquarters.
Two years after Snowden revealed the bulk communications collection that the GCHQ is engaged in, the new proposal allows the agency to continue to practice of bulk collection, even against people not suspected of a crime.
The new bill does provide some checks and balances on surveillance. Interception warrants will be given by “double-lock” that allows a panel of seven retired judges to veto. When spying takes place against elected politicians in Parliament, the U.K. prime minister himself will need to consent. Other “sensitive professions” will be subject to special protections. These professions include medical doctors, lawyers, journalists, Members of Parliament and the devolved legislatures, and Ministers of Religion.
The new draft of the investigatory powers bill is the culmination of a years-long political saga reignited by the deadly attacks on Charlie Hebdo in January 2015. In days following that attack, U.K. Prime Minister David Cameron criticized strong encryption and argued that an effort to “modernize” the country’s police meant they should not allow communication that cannot be read by security services during an emergency.
“There should be no area of cyberspace which is a haven for those who seek to harm us, to plot, poison minds, and peddle hatred under the radar,” Mays said in a statement on Wednesday. “But I am also clear that the exercise and scope of investigatory powers should be clearly set out and subject to stringent safeguards and robust oversight, including ‘double-lock’ authorisation for the most intrusive capabilities. This bill will establish world-leading oversight to govern an investigatory powers regime which is more open and transparent than anywhere else in the world.”
Opposition politicians in the U.K. have had various reactions.
David Winnick from the Labour Party says the proposal could be a “bitter blow to civil liberties.” Nick Clegg from the Liberal Democrats argued this proposal is “much improved” from the original 2012 proposal, which he was instrumental in defeating.
Patrick Howell O'Neill is a notable cybersecurity reporter whose work has focused on the dark net, national security, and law enforcement. A former senior writer at the Daily Dot, O'Neill joined CyberScoop in October 2016. I am a cybersecurity journalist at CyberScoop. I cover the security industry, national security and law enforcement.