Skip to main content

FBI forcing Apple to weaken iOS security could endanger lives, warns UN


The legal tussle between Apple and the FBI over a locked iPhone, and the security weakening measures the security services want the iOS maker to take to help it extract data on the device, has now attracted comment from the UN’s commissioner for human rights.
Representatives for both sides of the Apple vs FBI argument were called to Congress earlier this week to give testimony in a hearing entitled “The Encryption Tightrope: Balancing Americans’ Security and Privacy” — which has led to some bizarre claims from the pro-unlocking camp as they seek to justify forcing Apple to create a less secure version of iOS.
Weighing into the debate today on Apple’s side of the argument, with a robust public statement in support of encryption, the UN’s Zeid Ra’ad Al Hussein argues that privacy is a pre-requisite for security, and calls for clear red lines to protect personal data in the digital age.
The outcome of the Apple vs FBI case could have negative ramifications for the humans rights of people across the world if the FBI prevails in forcing Apple to weaken the security of iOS, he writes, warning that such a step could be “a gift to authoritarian regimes”.
“In order to address a security-related issue related to encryption in one case, the authorities risk unlocking a Pandora’s Box that could have extremely damaging implications for the human rights of many millions of people, including their physical and financial security,” says Al Hussein.
“I recognize this case is far from reaching a conclusion in the US courts, and urge all concerned to look not just at the merits of the case itself but also at its potential wider impact.”
The commissioner argues the case boils down to determining “where a key red line necessary to safeguard all of us from criminals and repression should be set” — countering the notion it is merely about unlocking one iPhone used in a terrorist incident, as the US government has tried to suggest.
“There are many ways to investigate whether or not these killers had accomplices besides forcing Apple to create software to undermine the security features of their own phones,” he writes of the San Bernardino terrorists, one of whom used the phone in question as a work device. “This is not just about one case and one IT company in one country. It will have tremendous ramifications for the future of individuals’ security in a digital world which is increasingly inextricably meshed with the actual world we live in.
It is neither fanciful nor an exaggeration to say that, without encryption tools, lives may be endangered.
“A successful case against Apple in the US will set a precedent that may make it impossible for Apple or any other major international IT company to safeguard their clients’ privacy anywhere in the world. It is potentially a gift to authoritarian regimes, as well as to criminal hackers. There have already been a number of concerted efforts by authorities in other States to force IT and communications companies such as Google and Blackberry to expose their customers to mass surveillance.”
The commissioner goes on to flag up the widespread global use of encryption tools — such as by political dissidents, journalists and human rights defenders — arguing that encryption and anonymity are vital “enablers of both freedom of expression and opinion, and the right to privacy”.
“It is neither fanciful nor an exaggeration to say that, without encryption tools, lives may be endangered. In the worst cases, a Government’s ability to break into its citizens’ phones may lead to the persecution of individuals who are simply exercising their fundamental human rights,” he continues, adding: “There is, unfortunately, no shortage of security forces around the world who will take advantage of the ability to break into people’s phones if they can.
“And there is no shortage of criminals intent on committing economic crimes by accessing other people’s data. Personal contacts and calendars, financial information and health data, and many other rightfully private information need to be protected from criminals, hackers and unscrupulous governments who may use them against people for the wrong reasons. In an age when we store so much of our personal and professional lives on our smart phones and other devices, how is it going to be possible to protect that information without fail-safe encryption systems?”
Al Hussein concludes that the core of the issue is a question of proportionality, arguing that the security services’ hope to gain extra information about one “dreadful crime” must be weighed against the risk of “enabling a multitude of other crimes all across the world”.
“The debate around encryption is too focused on one side of the security coin, in particular its potential use for criminal purposes in times of terrorism. The other side of the security coin, is that weakening encryption protections may bring even bigger dangers to national and international security,” he adds.

Comments

Popular posts from this blog

What is your preferred smartphone screen size

Screen envy. We all have it. Or do we? See, that’s the thing, I’m just not so sure. One thing I am sure about is that our phone screens have gotten progressively bigger and bigger over the last few years. The funny thing is, we as a society have taken that ball and run with it, like we just don’t care. But I always thought we did care? Some time ago, when phones were in the sub-5” range, we used to have a term called “phablet” which described an almost absurdly big phone. The definition varied from person to person. I always considered a phone with a screen 5.5” or bigger to be a phablet. The Galaxy Note fell into that category. The Lumia 1520 certainly did. There are others as well. I was safely ensconced in the 4.5” area at the time with my Lumia 920. What did I know? Leon’s getting laaaaaaaarrrger But slowly, phones started topping the 5” mark. I’m not talking about phablets here, I’m talking about normal flagship phones – the Galaxy S4 (barely) and the HTC One (M7) are ...

Facebook Now Supports PGP To Send You Encrypted Emails

You can now instruct Facebook to encrypt every email it sends to you so nobody — not even the NSA — is likely to be able to read your messages anytime soon. All you have to do is import your public PGP key into your Facebook settings and you’re good to go. The problem here, of course, is that most people have no idea how public/private key email encryption works and how to even get started with it. In the wake of Edward Snowden’s leaks, a number of organizations, including Google, promised to completely hide the complexities of end-to-end email encryption from regular users. Very few of these products have materialized so far, however — not for lack of trying, but because this is actually a very complex problem, both from a technical and user experience perspective. Facebook uses the well-established PGP scheme (the GNU Privacy Guard implementation of  OpenPGP, to be precise) to encrypt messages and tools lik...

Best Web Design Company in Pondicherry

#Technology    has two faces. We all feel it, but sometimes can’t find words to describe it.  #Ebooks    are the best example to show the 0-1 nature of emotions the  #technology  evokes. #itwhere    provide a  #Best     #solutions    to  #Growyourbusiness    feel free to drop a  #Mail    info@itwheretech.co.in www.itwheretech.co.in 

Facebook will verify the location of U.S. election ad buyers by mailing them postcards

Facebook’s global director of policy programs says it will start sending postcards by snail mail to verify buyers of ads related to United States elections. Katie Harbath, who described the plan at a conference held by the National Association of Secretaries of State this weekend, didn’t reveal when the program will start, but told Reuters that it would be before the Congressional midterm elections in November. The cards will be sent to people who want to purchase ads that mention candidates running for federal offices, but not issue-based political ads, Harbath said, and contain a code that buyers need to enter to verify that they are in the U.S. The program is similar to ones used by Google My Business and Nextdoor when they need to verify business owners or users who want to join closed neighborhood groups, respectively. Harbath told Reuters that the postcards “won’t solve everything,” but were the most effective method the company came up with to prevent people from using fa...

eGym raises $45M Series C for cloud-connected gym equipment and fitness software

eGym , the Munich-based startup that offers cloud-connected gym equipment and supporting cloud software and app for the fitness training floor, has closed $45 million in Series C funding. The round was led by new investor HPE Growth Capital, while existing investors, including Highland Europe, also participated. The problem that eGym is looking to solve is that, whilst gyms have moved from a bodybuilder market to a mass market in the last 20 years, the technology in gyms lags behind. That’s despite the fact that better use of technology can help to reduce customer churn, the biggest pain-point of both gym operator and gym users. Comprising of an app for both gym user and trainer, combined with the company’s connected strength machines, the eGym Cloud makes it possible for gym members to receive better fitness instruction and an evolving and personalised fitness plan based on data collected as they workout. And by providing a better workout feedback loop, gym goers can get an i...