requests received by Apple between January and June 2013, affecting about 10,605-11,605 accounts or devices.Source: Apple Report
Saturday, November 16, 2013
A Barrage of Data Requests
requests received by Apple between January and June 2013, affecting about 10,605-11,605 accounts or devices.Source: Apple Report
Thursday, June 20, 2013
Bits Blog: Google Seeks Permission to Publish Data on Security Requests
Jeff Chiu/Associated Press Google’s motion with the Foreign Intelligence Surveillance Court on Tuesday is the company’s latest move to control the public relations crisis that has resulted from revelations of government Internet surveillance.Google on Tuesday filed a motion with the secret Foreign Intelligence Surveillance Court, asking permission to publish data on national security requests that were made to it and authorized by the court.
The motion is the company’s latest move to control the public relations crisis that has resulted from revelations of government Internet surveillance. It is an escalation of Google’s efforts to publish the data. Last week, it sent a letter to the director of the F.B.I. and the director of national intelligence, asking for the same thing.
By law, recipients of national security requests are not allowed to acknowledge their existence. But with the permission of the government, Facebook, Yahoo, Microsoft and Apple have in the last few days published aggregate numbers of national security and criminal requests, including those authorized by the Foreign Intelligence Surveillance Act. Google has not, because it said that would be less transparent than what it had already published. Its transparency report has since 2010 broken out requests by type, and if it agreed to the same terms the other companies did, it would not be able to publish the report that way in the future.
In the motion, Google argued that it had a First Amendment right to publish a range of the total number of requests and the number of users or accounts they cover.
Google said that its executives had responded to allegations — that it cooperated with the government in Internet surveillance — as best they could, given the government’s restraints on discussing them. But the company said that it wanted to do more for the sake of its reputation, business and users, and for the sake of public debate.
“Google’s reputation and business has been harmed by the false or misleading reports in the media, and Google’s users are concerned by the allegations,” the motion said. “Google must respond to such claims with more than generalities.”
The tech companies have been pressing to be able to publish the number of government requests largely to prove that the requests cover a tiny fraction of users. Though the other companies said they were also pushing the government for permission to publish more detailed data, they said the aggregate numbers were useful to control speculation by setting a ceiling on the number of requests.
Other tech companies affected by the government’s surveillance program, called Prism, have considered going to the secret court, an option that is still on the table, according to two people briefed on the discussions. So far, the companies have been individually negotiating with the government instead of acting in concert.
Still, even if they are allowed to publish more detailed numbers, it would leave many questions unanswered, including details of how Prism works. Also, the number of people affected by FISA requests could be much larger than the number of requests, because once the government makes a broad request, it can add individuals and additional search queries for a year.
Google’s motion also revealed that two of its top lawyers, Kent Walker and Richard Salgado, have security clearance, which FISA requires for handling classified legal orders and materials. It was filed on behalf of the company by Albert Gidari, a partner at the law firm Perkins Coie who has earned a reputation in tech and legal circles as the go-to man on surveillance law.
Bits Blog: The Latest to Disclose Government Requests, Yahoo Reveals the Least
Emmanuel Dunand/Agence France-Presse — Getty Images Marissa Mayer, Yahoo’s chief executive, in May. She and the company’s general counsel, Ron Bell, said in a statement Monday that Yahoo would issue its first global law enforcement transparency report later this summer.Following in the footsteps of Facebook, Microsoft and Apple, Yahoo disclosed late Monday some broad data about the number of requests that American law enforcement authorities had made for data about its users.
From Dec. 1, 2012, to May 31, 2013, the Internet company received between 12,000 and 13,000 requests from the government, related to everything from local crimes to terrorism investigations under the Foreign Intelligence Surveillance Act. “The most common of these requests concerned fraud, homicides, kidnappings, and other criminal investigations,” the company said in a post on Tumblr, the blogging platform it recently acquired.
Unlike the other companies, which have been criticized for disclosing too little information, Yahoo did not specify how many users were included in the 12,000 to 13,000 requests.
But like the other companies, Yahoo said that the government would not permit it to break out more specific data on the number of FISA data requests, which the government considers so secret that companies aren’t supposed to even acknowledge their existence.
Yahoo went to a secret intelligence court in 2008 and challenged the government’s requests under FISA as unconstitutional, but lost the case. It subsequently joined the government’s secret Prism surveillance program.
In its post, signed by its chief executive, Marissa Mayer, and its general counsel, Ron Bell, Yahoo said it would continue to press for more disclosure of FISA data.
Yahoo said it would also issue later this summer its first global law enforcement transparency report, which will cover the first half of the year, and will continue making similar reports every six months.
This post has been revised to reflect the following correction:
Correction: June 18, 2013
An earlier version of this article misstated when Yahoo disclosed information about the requests for user data it received from American government agencies. Yahoo disclosed the information on Monday, not Friday.
Monday, June 17, 2013
Bits Blog: Apple Releases Some Data on Government Requests
Marcio Jose Sanchez/Associated Press A sign outside of Apple’s headquarters in Cupertino, Calif. The company said Sunday that it does not store data related to customers’ location, map searches or search requests “in any identifiable form,” meaning it likely stores the data without linking it to a named individual.Amid reports that technology companies cooperated with the United States government’s surveillance efforts, Apple has maintained that it does not provide the government with unfettered access to its servers. On Monday, the company released some numbers and information about its online services to try to prove it.
In a statement on its Web site, Apple said that from December 2012 through May 2013, it received between 4,000 and 5,000 requests from American law enforcement agencies for customer data. Among those requests, government officials asked for information about roughly 10,000 accounts or devices, Apple said.
Apple said the requests came from federal, state and local authorities regarding both national security matters and criminal investigations. It said the most common types of request came from police investigations of robberies and other crimes, searches for missing children, attempts to prevent a suicide or searches for people with Alzheimer’s disease.
Apple also published details about its online communication services, iMessage and FaceTime. It said it chooses not to store the content of exchanges between customers on these services, and therefore it does not hand over this type of data to law enforcement agencies. Furthermore, it said, those conversations are encrypted, so nobody but the sender and the receiver can see them.
“Apple has always placed a priority on protecting our customers’ personal data, and we don’t collect or maintain a mountain of personal details about our customers in the first place,” the company said in the statement.
Apple said it also does not store data related to customers’ location, map searches or search requests “in any identifiable form,” meaning it likely stores the data without linking it to a named individual.
Sunday, June 16, 2013
Bits Blog: Facebook Discloses Basic Data on Law-Enforcement Requests
Jeff Chiu/Associated Press A sign outside of Facebook’s headquarters in Menlo Park, Calif. The company on Friday disclosed information about government requests for data, the vast majority of which did not pertain to national security matters.12:10 a.m. Saturday, June 15, 2013 | Updated Added Microsoft’s release of more data on Friday night.
Facebook on Friday disclosed for the first time how many requests for data about its 1.1 billion users it had gotten from law enforcement authorities in the United States.
The social networking company said that in the last six months of 2012, it had 9,000 to 10,000 requests for information about its users from local, state and federal agencies. Those requests covered 18,000 to 19,000 user accounts.
“These requests run the gamut — from things like a local sheriff trying to find a missing child, to a federal marshal tracking a fugitive, to a police department investigating an assault, to a national security official investigating a terrorist threat,” the company’s general counsel, Ted Ullyot, said in a blog post disclosing the data.
Facebook said it was legally prohibited from saying how many of the data requests were related to national security. But generally speaking, the vast majority of the law-enforcement data requests received by tech companies are for other matters, like local criminal cases.
Facebook’s disclosure comes after negotiations with the federal government that began after the first news reports a week ago about the National Security Agency’s secret Prism surveillance program. Those reports revealed that a number of American Internet companies, including Facebook, Google, Microsoft and Yahoo, had secretly provided data about foreigners to the United States government under the Foreign Intelligence Surveillance Act.
The tech companies have also secretly provided data to the F.B.I. under National Security Letters, which the government uses to gather information about Americans.
Under federal law, companies generally cannot disclose even the existence of national security data requests they receive. But in recent days, Facebook, Google and Microsoft have been pressing the government for permission to share more information.
“We’re pleased that as a result of our discussions, we can now include in a transparency report all U.S. national security-related requests (including FISA as well as National Security Letters) – which until now no company has been permitted to do,” Mr. Ullyot wrote. “As of today, the government will only authorize us to communicate about these numbers in aggregate, and as a range. This is progress, but we’re continuing to push for even more transparency.”
Google had previously published a transparency report that included N.S.L. but not FISA data requests. Microsoft’s recent transparency report similarly excluded FISA requests but included National Security Letters.
Late Friday, after Facebook’s data release, Microsoft provided similar information about requests for data that it had received from law enforcement at all levels of government.
For the six months ending Dec. 31, 2012, Microsoft received between 6,000 and 7,000 criminal and national security warrants, subpoenas and orders affecting between 31,000 and 32,000 consumer accounts from governmental entities in the United States, the company’s deputy general counsel, John Frank, said in a statement.
“We have not received any national security orders of the type that Verizon was reported to have received that required Verizon to provide business records about U.S. customers,” Mr. Frank said.
This post has been revised to reflect the following correction:
Correction: June 15, 2013
An earlier version of this article incorrectly described Microsoft's transparency report. It included National Security Letters requests, but excluded FISA requests. It did not exclude both types of national security requests.
Tuesday, June 11, 2013
Google Wants to Release Details on Classified Requests
News from the technology industry, including start-ups, the Internet, enterprise and gadgets.On Twitter: @nytimesbits.It is the first time that Google has publicly acknowledged that it has received requests under the Foreign Intelligence Surveillance Act, which forbids companies from acknowledging the existence of requests or revealing any details about them. The technology company added that it complies with far fewer of these requests than it receives. Google made the request after revelations of the National Security Agency’s secret surveillance program, known as Prism. The data the government collects as part of Prism – including email messages, telephone records and online chats -- is legally authorized by FISA. Google made the request in a letter from David Drummond, Google’s chief legal officer, to Eric H. Holder, the attorney general, and Robert S. Mueller, the director of the F.B.I. In the letter, Mr. Drummond expressed frustration that the company has been unable, because of a government gag order, to explain the details of how it shares user data with the government. He asked for permission to publish both the number of national security requests, including FISA disclosures, that Google receives, and their scope. “Google’s numbers would clearly show that our compliance with these requests falls far short of the claims being made,” Mr. Drummond wrote. “Google has nothing to hide.” Mr. Drummond was unavailable for an interview. In a statement, Leslie Miller, a Google spokeswoman, said that of Google’s hundreds of millions of users worldwide, “only a tiny fraction” are subject to government data requests each year. “If we could publish those numbers openly, as we are asking, they would show that our compliance with these national security requests falls far short of the claims being made,” Ms. Miller said.