<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NSA wants to stop drinking from the fire hose ... in Industry News</title>
    <link>https://community.isc2.org/t5/Industry-News/NSA-wants-to-stop-drinking-from-the-fire-hose/m-p/21633#M2665</link>
    <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;And ever since, the NSA has been collecting huge amounts of data, most of which doesn't indicate much of anything.&amp;nbsp; Remember cost/benefit analysis?&amp;nbsp; Well, now the NSA wants to stop doing it.&amp;nbsp; Or, at least, stop doing most of it.&amp;nbsp; Because &lt;A href="https://nakedsecurity.sophos.com/2019/04/26/nsa-asks-to-end-mass-phone-surveillance/" target="_blank" rel="noopener"&gt;it's just not worth it&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;(Oh, and remember: if you're not doing anything wrong, you have nothing to fear from the gigantic surveillance apparatus that the government is hiding from you ...)&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;We must all stay on top of developments in this arena. The NSA has not had a change of heart on mass surveillance; they just made a financial cost/benefit analysis because capturing telephone metadata (which allows comprehensive networking analysis) no longer pays off. The bad guys are no longer relying on telephones; they have shifted to a variety of encrypted internet-based communication tools. Expect national intelligence organizations to push us into a NEW Crypto-Wars discussion. Last year the current FBI director promoted going back to mandatory government monitoring technology in all encrypted systems. That was precisely what the Crypto wars were about.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For supporting watchdogs, I rely on &lt;EM&gt;&lt;A href="https://www.eff.org" target="_blank" rel="noopener"&gt;EFF&lt;/A&gt;&lt;/EM&gt;, &lt;EM&gt;&lt;A href="https://www.eff.org" target="_blank" rel="noopener"&gt;EPIC&lt;/A&gt;&lt;/EM&gt;, and occasionally &lt;A href="https://www.aclu.org" target="_blank" rel="noopener"&gt;ACLU&lt;/A&gt;. I recommend all infosec specialists do the same. I'd be interested in learning what organizations are good for keeping an eye on the EU.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 26 Apr 2019 19:51:59 GMT</pubDate>
    <dc:creator>CraginS</dc:creator>
    <dc:date>2019-04-26T19:51:59Z</dc:date>
    <item>
      <title>NSA wants to stop drinking from the fire hose ...</title>
      <link>https://community.isc2.org/t5/Industry-News/NSA-wants-to-stop-drinking-from-the-fire-hose/m-p/21626#M2664</link>
      <description>&lt;P&gt;In the beginning was the 9/11.&amp;nbsp; (Well, actually, in the beginning was the first crypto war, back in the 90s, but ...)&amp;nbsp; And the government said, let there be the P.A.T.R.I.O.T. Act (Providing Appropriate Tools Required to Intercept and Obstruct Terrorism).&amp;nbsp; And there was all kinds of warrantless activity.&amp;nbsp; And the government said, let there be warrantless collection of data about international (and some local) emails and phone calls.&amp;nbsp; And there was bulk metadata collection, and metadata became a new "thing."&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;And ever since, the NSA has been collecting huge amounts of data, most of which doesn't indicate much of anything.&amp;nbsp; Remember cost/benefit analysis?&amp;nbsp; Well, now the NSA wants to stop doing it.&amp;nbsp; Or, at least, stop doing most of it.&amp;nbsp; Because &lt;A href="https://nakedsecurity.sophos.com/2019/04/26/nsa-asks-to-end-mass-phone-surveillance/" target="_blank" rel="noopener"&gt;it's just not worth it&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Lots of things in security sound like maybe a good idea--until you try them.&amp;nbsp; I well remember the trouble Fred Cohen got into when he started teaching his security students how to write viruses, as an exercise in trying to improve security.&amp;nbsp; He doesn't do that any more.&amp;nbsp; His students just didn't learn that much from it.&amp;nbsp; It's not worth it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;(Oh, and remember: if you're not doing anything wrong, you have nothing to fear from the gigantic surveillance apparatus that the government is hiding from you ...)&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 09:11:29 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/NSA-wants-to-stop-drinking-from-the-fire-hose/m-p/21626#M2664</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2023-10-09T09:11:29Z</dc:date>
    </item>
    <item>
      <title>Re: NSA wants to stop drinking from the fire hose ...</title>
      <link>https://community.isc2.org/t5/Industry-News/NSA-wants-to-stop-drinking-from-the-fire-hose/m-p/21633#M2665</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1324864413"&gt;@rslade&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;And ever since, the NSA has been collecting huge amounts of data, most of which doesn't indicate much of anything.&amp;nbsp; Remember cost/benefit analysis?&amp;nbsp; Well, now the NSA wants to stop doing it.&amp;nbsp; Or, at least, stop doing most of it.&amp;nbsp; Because &lt;A href="https://nakedsecurity.sophos.com/2019/04/26/nsa-asks-to-end-mass-phone-surveillance/" target="_blank" rel="noopener"&gt;it's just not worth it&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;(Oh, and remember: if you're not doing anything wrong, you have nothing to fear from the gigantic surveillance apparatus that the government is hiding from you ...)&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;We must all stay on top of developments in this arena. The NSA has not had a change of heart on mass surveillance; they just made a financial cost/benefit analysis because capturing telephone metadata (which allows comprehensive networking analysis) no longer pays off. The bad guys are no longer relying on telephones; they have shifted to a variety of encrypted internet-based communication tools. Expect national intelligence organizations to push us into a NEW Crypto-Wars discussion. Last year the current FBI director promoted going back to mandatory government monitoring technology in all encrypted systems. That was precisely what the Crypto wars were about.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For supporting watchdogs, I rely on &lt;EM&gt;&lt;A href="https://www.eff.org" target="_blank" rel="noopener"&gt;EFF&lt;/A&gt;&lt;/EM&gt;, &lt;EM&gt;&lt;A href="https://www.eff.org" target="_blank" rel="noopener"&gt;EPIC&lt;/A&gt;&lt;/EM&gt;, and occasionally &lt;A href="https://www.aclu.org" target="_blank" rel="noopener"&gt;ACLU&lt;/A&gt;. I recommend all infosec specialists do the same. I'd be interested in learning what organizations are good for keeping an eye on the EU.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 26 Apr 2019 19:51:59 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Industry-News/NSA-wants-to-stop-drinking-from-the-fire-hose/m-p/21633#M2665</guid>
      <dc:creator>CraginS</dc:creator>
      <dc:date>2019-04-26T19:51:59Z</dc:date>
    </item>
  </channel>
</rss>

