Endpoint

1/12/2018
11:48 AM
50%
50%

House Passes Bill to Renew NSA's Warrantless Surveillance Program

The bill passed without an amendment which would require a warrant to analyze Americans' incidentally collected data.

The US House of Representatives passed a bill, Thursday, renewing the warrantless Internet surveillance program conducted by the National Security Agency (NSA). The legislation, which passed 256-164, faced objections from privacy and civil liberties advocates.

The NSA's surveillance program was initially created in secret after Sept. 11, 2001 and was later made legal by Section 702 of the Foreign Intelligence Surveillance Act (FISA). This bill would extend the program for six years with minimal changes, Reuters reports.

Democrats and some Republicans fought to include more privacy protections in the bill, specifically an amendment which would require intelligence agencies to obtain a warrant to analyze communications from an American whose information was incidentally collected. The bill ultimately failed to include this amendment and many believe it grants the NSA even more surveillance power.

This marks a setback for privacy supporters who posed the question of what might happen to the information of Americans whose data was collected as part of the program. Most lawmakers expect the bill to become law. It still requires approval from the Senate and from President Trump.

Read more details here.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Oldest First  |  Newest First  |  Threaded View
REISEN1955
50%
50%
REISEN1955,
User Rank: Ninja
1/12/2018 | 1:36:47 PM
Why worry?
If not the government, then North Korea can find all of our data and if not them, just hack Equifax again.  Never lose trust that somebody, somewhere, HAS EVERYTHING ABOUT YOU and there is not a DAMN thing you can do about it.

Depressing?  Yes.

True? Also Yes.

Who's buying the next round at the bar tonight? 
Data Privacy Careers Are Helping to Close the IT Gender Gap
Dana Simberkoff, Chief Risk, Privacy, and Information Security Officer, AvePoint, Inc.,  8/20/2018
Ohio Man Sentenced To 15 Months For BEC Scam
Dark Reading Staff 8/20/2018
Intel Reveals New Spectre-Like Vulnerability
Curtis Franklin Jr., Senior Editor at Dark Reading,  8/15/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-10902
PUBLISHED: 2018-08-21
It was found that the raw midi kernel driver does not protect against concurrent access which leads to a double realloc (double free) in snd_rawmidi_input_params() and snd_rawmidi_output_status() which are part of snd_rawmidi_ioctl() handler in rawmidi.c file. A malicious local attacker could possib...
CVE-2018-10932
PUBLISHED: 2018-08-21
lldptool version 1.0.1 and older can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal.
CVE-2018-15660
PUBLISHED: 2018-08-21
** DISPUTED ** An issue was discovered in the Ola Money (aka com.olacabs.olamoney) application 1.9.0 for Android. If an attacker controls an application with accessibility permissions, then the attacker can read certain Ola Money data such as a credit card number, expiration date, bank account numbe...
CVE-2018-15661
PUBLISHED: 2018-08-21
** DISPUTED ** An issue was discovered in the Ola Money (aka com.olacabs.olamoney) application 1.9.0 for Android. If an attacker controls an application with accessibility permissions and the ability to read SMS messages, then the Forgot Password screen can be used to bypass authentication. NOTE: th...
CVE-2018-15481
PUBLISHED: 2018-08-21
Improper input sanitization within the restricted administration shell on UCOPIA Wireless Appliance devices using firmware version 5.1.x before 5.1.13 allows authenticated remote attackers to escape the shell and escalate their privileges by adding a LocalCommand to the SSH configuration file in the...