. Military Space News .
CYBER WARS
Twitter spy case highlights risks for big tech platforms
By Rob Lever
Washington (AFP) Nov 9, 2019

The allegations of spying by former Twitter employees for Saudi Arabia underscore the risks for Silicon Valley firms holding sensitive data which make the platforms ripe for espionage.

The two Saudis and one US citizen allegedly worked together to unmask the ownership details behind dissident Twitter accounts on behalf of the Riyadh government and royal family, according to a federal indictment.

Analysts say the incident shows how massive databases held by Silicon Valley giants can be juicy targets for intelligence agencies, which can often apply pressure to company insiders.

"The Twitter case shows how data is not only an asset but a liability for companies," said Adrian Shahbaz, research director for technology and democracy at the human rights group Freedom House.

"For companies collecting massive amounts of data, the challenge is how to keep it secure not only from hackers, but from rogue employees."

Shahbaz said platforms such as Twitter and Facebook remain important tools for human rights activists, but that users should be aware of potential for data leaks -- both in their countries, and from insiders.

"It's been alarming to see how governments using tactics to exploit the inherent weaknesses of the internet... go after people expressing dissent," he said.

"It's a constant cat-and-mouse game between users and very well-resourced governments."

Bruce Schneier, a security researcher and fellow at Harvard University's Berkman Klein Center for Internet & Society, said it is not surprising to see governments targeting databases of tech platforms.

"We all assume it happens a lot. But this (prosecution) rarely comes up," Schneier said.

- No match for Russia -

Schneier said there have long been fears about Chinese or Russian insiders pressured to introduce vulnerabilities in major software platforms, and that companies may be ill-equipped to thwart those efforts.

"The government of Russia versus Twitter is not a fair fight," he said. "It's hard to blame the tech companies."

Because major tech firms have engineers from all over the world, Schneier said it enables intelligences services to seek out and pressure their expats for espionage purposes.

The case highlights the potential for insider threats, said James Lewis of the Center for Strategic and International Studies in Washington.

"Insider threats go back to biblical times," he said, noting that the suspects were probably caught because they "did a terrible job of covering their tracks."

- Background checks enough? -

According to an indictment unsealed Wednesday, US citizen Ahmad Abouammo and Saudi national Ali Alzabarah were recruited in 2014-2015 to use their positions in Twitter to gain access to private information related to accounts of critics of Riyadh.

Ahmed Almutairi, a marketing official with ties to the royal family, was a critical go-between who arranged contacts, prosecutors said.

Twitter said in a statement it restricts access to sensitive account information "to a limited group of trained and vetted employees."

But John Dickson, a former US air force information warfare officer who is now with the security consultancy Denim Group, said private companies, even in Silicon Valley, are not equipped to for background checks needed to find potential spies.

"Most employers do cursory background checks for the most obvious stuff such as criminal records or bankruptcy," he said.

"None of them does any semblance of a background check on nation-state threats."

Dickson said it remains unclear if the tech platforms are cognizant of the sensitivity of the data they hold, and the draw of that information for intelligence services.

"They are still acting as social media companies," he said.

"Their default is to get as many connections as possible, and the network effect enhances the platform."

Shahbaz said the latest case illustrates a need for regulations to require tech platforms to limit how much data they collect and maintain.

"There might be a role for government to play in terms of data privacy legislation," he said.

"There's a case for collecting the bare minimum of data from users and allowing users to opt out" of certain kinds of data collection.

He said companies should also be required to inform victims if their data has been compromised "so they can take measures to protect themselves."


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues


Thanks for being here;
We need your help. The SpaceDaily news network continues to grow but revenues have never been harder to maintain.

With the rise of Ad Blockers, and Facebook - our traditional revenue sources via quality network advertising continues to decline. And unlike so many other news sites, we don't have a paywall - with those annoying usernames and passwords.

Our news coverage takes time and effort to publish 365 days a year.

If you find our news sites informative and useful then please consider becoming a regular supporter or for now make a one off contribution.
SpaceDaily Contributor
$5 Billed Once


credit card or paypal
SpaceDaily Monthly Supporter
$5 Billed Monthly


paypal only


CYBER WARS
ISRO was alerted to cyber attack ahead of failed lunar lander mission
New Delhi (Sputnik) Nov 07, 2019
The lander of India's second lunar probe, Chandrayaan-2 lost contact with the Indian Space Research Organisation (ISRO)'s earth station minutes before its scheduled soft-landing on the Moon's South Pole on 7 September, crushing the country's hope of making space history. A week after an NPCIL report on a cyber-attack at the Kudankulam plant surfaced, news emerged that the country's space agency, the Indian Space Research Organisation (ISRO), was alerted of a possible malware breach, the Indian Exp ... read more

Comment using your Disqus, Facebook, Google or Twitter login.



Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle

CYBER WARS
Russia sends S-400 system to Serbia for drills

US to Turkey: Don't turn on Russian system, avoid sanctions

Turkey, Russia discuss new S-400 supplies: report

US Army has no plans to purchase more Iron Dome systems

CYBER WARS
North Korea fires short-range projectiles: South's military

S. Korea to buy AMRAAM missiles in $253M deal

OpFires program advances technology for upper stage with PDR completion

State Department OKs Javelin missile sale to Ukraine

CYBER WARS
Mosquito courting strategies could inspire quieter drones

Israeli drone overflying Lebanon targeted by missile: army

US Interior Department grounds Chinese-made drones

Drones help map Iceland's disappearing glaciers

CYBER WARS
GatorWings wins DARPA Spectrum Collaboration Challenge

EPS completes multiservice operational test, declared fully operational

China launches new communication technology experiment satellite

2nd Space Operations Squadron decommissions 22-year-old satellite

CYBER WARS
AFRL experts collect data inside hardened aircraft shelters around the world

Army inks deal with Blink-182 founder for UFO, weapons research

Oshkosh awarded $159.1M for FMTV variant for Israel

Kurds accuse Turkey of using banned incendiary weapons

CYBER WARS
Sisi suggests floating Egypt military firms on stock exchange

Pentagon awards $10 bn cloud contract to Microsoft, snubbing Amazon

AFRL enhances safety for survival specialists with wearable health technology

Divers find belongings of Bronze Age warrior

CYBER WARS
NATO allies clash after Macron says alliance experiencing 'brain death'

Beijing says 'ready to work' with ASEAN on South China Sea rules

US accuses Beijing of 'intimidation' in South China Sea

French leader seeks China deals, also set to raise 'taboo' issues

CYBER WARS
SMART discovers breakthrough way to look at the surface of nanoparticles

Visible light and nanoparticle catalysts produce desirable bioactive molecules

Flexible, wearable supercapacitors based on porous nanocarbon nanocomposites

Scientists create a nanomaterial that is both twisted and untwisted at the same time









The content herein, unless otherwise known to be public domain, are Copyright 1995-2024 - Space Media Network. All websites are published in Australia and are solely subject to Australian law and governed by Fair Use principals for news reporting and research purposes. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA news reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. All articles labeled "by Staff Writers" include reports supplied to Space Media Network by industry news wires, PR agencies, corporate press officers and the like. Such articles are individually curated and edited by Space Media Network staff on the basis of the report's information value to our industry and professional readership. Advertising does not imply endorsement, agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. General Data Protection Regulation (GDPR) Statement Our advertisers use various cookies and the like to deliver the best ad banner available at one time. All network advertising suppliers have GDPR policies (Legitimate Interest) that conform with EU regulations for data collection. By using our websites you consent to cookie based advertising. If you do not agree with this then you must stop using the websites from May 25, 2018. Privacy Statement. Additional information can be found here at About Us.