Skip to main content

FBI forcing Apple to weaken iOS security could endanger lives, warns UN


The legal tussle between Apple and the FBI over a locked iPhone, and the security weakening measures the security services want the iOS maker to take to help it extract data on the device, has now attracted comment from the UN’s commissioner for human rights.
Representatives for both sides of the Apple vs FBI argument were called to Congress earlier this week to give testimony in a hearing entitled “The Encryption Tightrope: Balancing Americans’ Security and Privacy” — which has led to some bizarre claims from the pro-unlocking camp as they seek to justify forcing Apple to create a less secure version of iOS.
Weighing into the debate today on Apple’s side of the argument, with a robust public statement in support of encryption, the UN’s Zeid Ra’ad Al Hussein argues that privacy is a pre-requisite for security, and calls for clear red lines to protect personal data in the digital age.
The outcome of the Apple vs FBI case could have negative ramifications for the humans rights of people across the world if the FBI prevails in forcing Apple to weaken the security of iOS, he writes, warning that such a step could be “a gift to authoritarian regimes”.
“In order to address a security-related issue related to encryption in one case, the authorities risk unlocking a Pandora’s Box that could have extremely damaging implications for the human rights of many millions of people, including their physical and financial security,” says Al Hussein.
“I recognize this case is far from reaching a conclusion in the US courts, and urge all concerned to look not just at the merits of the case itself but also at its potential wider impact.”
The commissioner argues the case boils down to determining “where a key red line necessary to safeguard all of us from criminals and repression should be set” — countering the notion it is merely about unlocking one iPhone used in a terrorist incident, as the US government has tried to suggest.
“There are many ways to investigate whether or not these killers had accomplices besides forcing Apple to create software to undermine the security features of their own phones,” he writes of the San Bernardino terrorists, one of whom used the phone in question as a work device. “This is not just about one case and one IT company in one country. It will have tremendous ramifications for the future of individuals’ security in a digital world which is increasingly inextricably meshed with the actual world we live in.
It is neither fanciful nor an exaggeration to say that, without encryption tools, lives may be endangered.
“A successful case against Apple in the US will set a precedent that may make it impossible for Apple or any other major international IT company to safeguard their clients’ privacy anywhere in the world. It is potentially a gift to authoritarian regimes, as well as to criminal hackers. There have already been a number of concerted efforts by authorities in other States to force IT and communications companies such as Google and Blackberry to expose their customers to mass surveillance.”
The commissioner goes on to flag up the widespread global use of encryption tools — such as by political dissidents, journalists and human rights defenders — arguing that encryption and anonymity are vital “enablers of both freedom of expression and opinion, and the right to privacy”.
“It is neither fanciful nor an exaggeration to say that, without encryption tools, lives may be endangered. In the worst cases, a Government’s ability to break into its citizens’ phones may lead to the persecution of individuals who are simply exercising their fundamental human rights,” he continues, adding: “There is, unfortunately, no shortage of security forces around the world who will take advantage of the ability to break into people’s phones if they can.
“And there is no shortage of criminals intent on committing economic crimes by accessing other people’s data. Personal contacts and calendars, financial information and health data, and many other rightfully private information need to be protected from criminals, hackers and unscrupulous governments who may use them against people for the wrong reasons. In an age when we store so much of our personal and professional lives on our smart phones and other devices, how is it going to be possible to protect that information without fail-safe encryption systems?”
Al Hussein concludes that the core of the issue is a question of proportionality, arguing that the security services’ hope to gain extra information about one “dreadful crime” must be weighed against the risk of “enabling a multitude of other crimes all across the world”.
“The debate around encryption is too focused on one side of the security coin, in particular its potential use for criminal purposes in times of terrorism. The other side of the security coin, is that weakening encryption protections may bring even bigger dangers to national and international security,” he adds.

Comments

Popular posts from this blog

eGym raises $45M Series C for cloud-connected gym equipment and fitness software

eGym , the Munich-based startup that offers cloud-connected gym equipment and supporting cloud software and app for the fitness training floor, has closed $45 million in Series C funding. The round was led by new investor HPE Growth Capital, while existing investors, including Highland Europe, also participated. The problem that eGym is looking to solve is that, whilst gyms have moved from a bodybuilder market to a mass market in the last 20 years, the technology in gyms lags behind. That’s despite the fact that better use of technology can help to reduce customer churn, the biggest pain-point of both gym operator and gym users. Comprising of an app for both gym user and trainer, combined with the company’s connected strength machines, the eGym Cloud makes it possible for gym members to receive better fitness instruction and an evolving and personalised fitness plan based on data collected as they workout. And by providing a better workout feedback loop, gym goers can get an i...

Careless USB removal causes multiple deaths

EIGHTEEN workers have died after a USB stick was removed from a computer without adequate precautions. The offices of Hereford-based Envision Photography were completely destroyed in the ensuing blast. Survivor Norman Steele said: “My colleague Helen had put some files on the stick to work on at home, and she yanked it out of the computer before anyone could scream ‘no’. “I kicked her aside as a jet of white-hot flame belched out of the USB port and set fire to the desk opposite. “Grabbing her, I dived through the window just before all the PCs in the network exploded with purple electricity that fried everyone in the building. “I sprinted to my car, knowing that the printers were already becoming merciless hunter-killer drones, shouting for Helen to follow. “But when I looked round I saw her frozen, something glowing in her hand, the awareness dawning of her fate. She was still holding the USB. “She detonated in a flash of ultraviolet light that turned eve...

Airbnb will open its Cuba listings to users outside the United States

Airbnb  will now let travelers from outside the U.S. to book properties in Cuba after receiving authorization from the U.S. government,  reports the Associated Press . Previously, only Americans were allowed to reserve the site’s  Cuban listings . They will open to international users on April 2. Airbnb launched its  Cuban operations in April 2014 , four months after the Obama administration revealed that it will begin to  restore diplomatic relations with the Communist country . The historic policy change means that  travel and trade sanctions will be lifted , which is expected to boost tourism to Cuba dramatically because Americans no longer need licenses to visit. In fact, President Obama is  currently on an official visit to Cuba , the first president since Calvin Coolidge to do so. According to the AP, Cuba is currently Airbnb’s fastest-growing market, with about 4,000 homes added since it opened listings. Other travel businesses...

Oculus’ New $99 Samsung Gear VR Makes Serious Virtual Reality Affordable

At half the price of its last mobile VR headset, the new $99  Oculus-made  Samsung Gear VR is cheap enough to unlock virtual reality for the mainstream. Revealed today at the Oculus Connect conference, it works with the whole 2015 line of Samsung Smartphones including the Note 5, S6, S6 Edge, and S6 Edge+. It will ship in November in time for Black Friday. Compared to the $199 previous Gear VRs that only worked with fewer phones, this headset will be a lot more accessible. The new Gear VR is 22% lighter, making it more comfortable to wear. The trackpad on the temple of the headset also now has a tactile directional pad on it so your finger will know where it’s touching. The previous Gear VRs had a smooth trackpad and sometimes it was to tough to know if you were touching it or just the unsensitive shell of the headset when you couldn’t see for yourself. There’s also a new Gear VR Gamepad which all the Oculus Connect conference attendees will get for free. It features an...

85 legitimate iPhone apps that were infected with malware in the big App Store hack

Apple fans have been criticizing Android for years, fighting back against “walled garden” claims by suggesting that Android's open nature makes it far more susceptible to hacks and malware. This is indeed often the case, but if you think  Apple's  closed  iOS  app ecosystem isn't also vulnerable to attacks, think again. Millions upon millions of iPhone  and iPad users were affected by a major App Store hack that was just uncovered, and now we have a list of some of the apps that have reportedly been infected with malware. Here's the bad news: There are some very popular apps on this list, and the odds are pretty good that one or more of them are on your phone right now. DON'T MISS:  10 things iOS 9 can do that you can't do in iOS 8 As was reported early Monday morning, Apple has confirmed that the App Store suffered its first ever large-scale attack. Apple confirmed the hack after multiple security firms reported finding malware called “Xcod...