Newsletters
News & Information for Technology Purchasers NewsFactor Sites:       NewsFactor.com     Enterprise Security Today     CRM Daily     Business Report     Sci-Tech Today  
   
This ad will display for the next 20 seconds. Please click for more information, or scroll down to pass the ad, or Close Ad.
Home Enterprise I.T. Cloud Computing Applications Hardware More Topics...
Eliminate costly downtime!
Find out how with Free White Paper
& enter to win a Samsung Galaxy Note

www.apc.com
Network Security
24/7/365 Network Uptime
Average Rating:
Rate this article:  
Did NSA Secretly Tap the Internet Backbone?
Did NSA Secretly Tap the Internet Backbone?

By Barry Levine
November 26, 2013 12:55PM

    Bookmark and Share
Earlier this month, reports surfaced that the documents released by former NSA contract employee Edward Snowden showed the NSA had tapped the transmissions to and from Google's and Yahoo's data centers. The taps meant that the agency had access to hundreds of millions of user accounts, many of which are owned by Americans.
 


Someday, the unraveling of the National Security Agency's spying on virtually everyone might make a great spy movie. In the latest revelation, there are reports the secretive federal agency may have tapped Google and Yahoo through major Internet backbone providers.

On Monday, a story in The New York Times asked how the National Security Agency could spy on Google and Yahoo users without having direct access to those companies' data centers, which have Mission Impossible-levels of security. The Times said that "people knowledgeable about Google and Yahoo's infrastructure" believe the NSA tapped into the fiber-optic cables of such Net backbone providers as Verizon, the BT Group and Level 3.

In particular, the story points at Level 3, the largest backbone provider on the planet. Data traveling through the backbones was not encrypted, although both Google and Yahoo are now encrypting the data they send through the backbones. Level 3 responded to the Times to say that it complies "with laws in every country where we operate," and provides governmental access to customer data "only when we are compelled to do so by the laws in the country where the data is located."

Millions Sent Daily

It's not yet clear if Level 3 was a willing participant in such an arrangement. Although the Internet has a seemingly infinite number of destinations, there are only a handful of major backbone providers. If accurate, the report points to the NSA's ability to tap virtually any corporate data center without their knowledge or consent.

Earlier this month, reports surfaced that the documents released by former NSA contract employee Edward Snowden showed the NSA had tapped the transmissions to and from Google's and Yahoo's data centers. The taps meant that the agency had access to hundreds of millions of user accounts, many of which are owned by Americans.

In its story on the reports, The Washington Post cited a top-secret document in the Snowden-released files, dated January of this year, which revealed that millions of records were sent daily from the Yahoo and Google networks to NSA headquarters in Maryland. The document noted that more than 181 million records, plus metadata, had been sent in the 30 days preceding that document's date.

Google: 'Outraged'

In response to the reports that its data centers had been compromised, Google said it had not provided access and was "outraged" at the steps the governmental agency had taken. Yahoo said it had "strict controls" in place, and had not granted access.

That's the back door. The NSA also has front-door access to user accounts, which requires approval by a Foreign Intelligence Surveillance Court.

In September, security firm RSA warned about another system-wide infiltration by the NSA. RSA advised its customers to avoid using a component in its widely used Data Protection Manager security software, because a Pseudo-Random Number Generator in the software had been flagged by the National Institute of Standards and Technology, another federal agency. NIST indicated it had reason to believe that the NSA, during the public process that created the number generator, may have included code that made the security software easier to break.
 

Tell Us What You Think
Comment:

Name:

Simba:

Posted: 2013-12-17 @ 7:34am PT
There is not a single accusation the Untied States has leveled against other "terrorist" nations that it has not itself been involved with.

While the US was diverting everyone's attention to the war on terror abroad, it has conducted a systematic dismantlement of it's own constitution.

Please help stop this from continuing and vote out all officials that support programs like this before history repeats itself. No nation in all of recorded history has ever survived trying to "ensure" the peace and safety of it's position in the world by trying to control and dominate it.

Smokey Bear:

Posted: 2013-11-27 @ 10:23am PT
Does a bear...in the woods?



APC has an established a reputation for solid products that virtually pay for themselves upon installation. Who has time to spend worrying about system downtime? APC makes it easy for you to focus on business growth instead of business downtime with reliable data center systems and IT solutions. Learn more here.


 Network Security
1.   Lessons from Verizon's Threat Report
2.   Verizon Report Exposes Cyberthreats
3.   How Are Web Sites Post-Heartbleed?
4.   White House Updating Privacy Policy
5.   Target Hackers May Be Tough To Find


advertisement
How Are Web Sites Post-Heartbleed?
Questions on open source, security.
Average Rating:
Heartbleed Exploit Could Cost Millions
But it could have been prevented.
Average Rating:
Michaels: Nearly 3M Cards Breached
But the hack has been contained.
Average Rating:
Product Information and Resources for Technology You Can Use To Boost Your Business

Network Security Spotlight
What Verizon's Data Breach Report Can Teach Enterprises
It’s probably not a jaw-dropper, but cyberespionage is officially on the rise. And the use of stolen or misused credentials is still the leading way the bad guys gain access to corporate information.
 
Top Cyberthreats Exposed by Verizon Report
Beyond Heartbleed, there are cyberthreats vying to take down enterprise networks, corrupt smartphones, and wreak havoc on businesses. Verizon is exposing these threats in a new report.
 
Where Do Web Sites Stand, Post-Heartbleed?
A security firm says the vast majority of Web sites have patched themselves to protect against the Heartbleed bug, but now there are questions raised on the reliability of open-source programs.
 

Navigation
NewsFactor Network
Home/Top News | Enterprise I.T. | Cloud Computing | Applications | Hardware | Mobile Tech | Big Data | Communications
World Wide Web | Network Security | Data Storage | Small Business | Microsoft/Windows | Apple/Mac | Linux/Open Source | Personal Tech
Press Releases
NewsFactor Network Enterprise I.T. Sites
NewsFactor Technology News | Enterprise Security Today | CRM Daily

NewsFactor Business and Innovation Sites
Sci-Tech Today | NewsFactor Business Report

NewsFactor Services
FreeNewsFeed | Free Newsletters | XML/RSS Feed

About NewsFactor Network | How To Contact Us | Article Reprints | Careers @ NewsFactor | Services for PR Pros | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2014 NewsFactor Network. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.