Endpoint

1/12/2018
11:48 AM
50%
50%

House Passes Bill to Renew NSA's Warrantless Surveillance Program

The bill passed without an amendment which would require a warrant to analyze Americans' incidentally collected data.

The US House of Representatives passed a bill, Thursday, renewing the warrantless Internet surveillance program conducted by the National Security Agency (NSA). The legislation, which passed 256-164, faced objections from privacy and civil liberties advocates.

The NSA's surveillance program was initially created in secret after Sept. 11, 2001 and was later made legal by Section 702 of the Foreign Intelligence Surveillance Act (FISA). This bill would extend the program for six years with minimal changes, Reuters reports.

Democrats and some Republicans fought to include more privacy protections in the bill, specifically an amendment which would require intelligence agencies to obtain a warrant to analyze communications from an American whose information was incidentally collected. The bill ultimately failed to include this amendment and many believe it grants the NSA even more surveillance power.

This marks a setback for privacy supporters who posed the question of what might happen to the information of Americans whose data was collected as part of the program. Most lawmakers expect the bill to become law. It still requires approval from the Senate and from President Trump.

Read more details here.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Threaded  |  Newest First  |  Oldest First
REISEN1955
50%
50%
REISEN1955,
User Rank: Ninja
1/12/2018 | 1:36:47 PM
Why worry?
If not the government, then North Korea can find all of our data and if not them, just hack Equifax again.  Never lose trust that somebody, somewhere, HAS EVERYTHING ABOUT YOU and there is not a DAMN thing you can do about it.

Depressing?  Yes.

True? Also Yes.

Who's buying the next round at the bar tonight? 
Want Your Daughter to Succeed in Cyber? Call Her John
John De Santis, CEO, HyTrust,  5/16/2018
Don't Roll the Dice When Prioritizing Vulnerability Fixes
Ericka Chickowski, Contributing Writer, Dark Reading,  5/15/2018
New Mexico Man Sentenced on DDoS, Gun Charges
Dark Reading Staff 5/18/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: "Security through obscurity"
Current Issue
Flash Poll
[Strategic Security Report] How Enterprises Are Attacking the IT Security Problem
[Strategic Security Report] How Enterprises Are Attacking the IT Security Problem
Enterprises are spending more of their IT budgets on cybersecurity technology. How do your organization's security plans and strategies compare to what others are doing? Here's an in-depth look.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-8010
PUBLISHED: 2018-05-21
This vulnerability in Apache Solr 6.0.0 to 6.6.3, 7.0.0 to 7.3.0 relates to an XML external entity expansion (XXE) in Solr config files (solrconfig.xml, schema.xml, managed-schema). In addition, Xinclude functionality provided in these config files is also affected in a similar way. The vulnerabilit...
CVE-2018-8012
PUBLISHED: 2018-05-21
No authentication/authorization is enforced when a server attempts to join a quorum in Apache ZooKeeper before 3.4.10, and 3.5.0-alpha through 3.5.3-beta. As a result an arbitrary end point could join the cluster and begin propagating counterfeit changes to the leader.
CVE-2018-1067
PUBLISHED: 2018-05-21
In Undertow before versions 7.1.2.CR1, 7.1.2.GA it was found that the fix for CVE-2016-4993 was incomplete and Undertow web server is vulnerable to the injection of arbitrary HTTP headers, and also response splitting, due to insufficient sanitization and validation of user input before the input is ...
CVE-2018-7268
PUBLISHED: 2018-05-21
MagniComp SysInfo before 10-H81, as shipped with BMC BladeLogic Automation and other products, contains an information exposure vulnerability in which a local unprivileged user is able to read any root (uid 0) owned file on the system, regardless of the file permissions. Confidential information suc...
CVE-2018-11092
PUBLISHED: 2018-05-21
An issue was discovered in the Admin Notes plugin 1.1 for MyBB. CSRF allows an attacker to remotely delete all admin notes via an admin/index.php?empty=table (aka Clear Table) action.