Fri, Nov 30, 2018 - Page 4 News List

Tech giants warn Australia against surveillance law

DENIAL OF SERVICE:The firms said if Australian demands were to clash with legal protections elsewhere, technology providers might not offer certain services in the country

AFP, SYDNEY

Digital giants led by Google, Facebook and Amazon have warned Australia against passing a “fundamentally flawed” law allowing security services to spy on encrypted communications among suspected criminals and terrorists.

In a submission sent to the Australian parliament this week and made available to reporters yesterday, the Digital Industry Group Inc (DIGI) said that the legislation proposed by Australia’s government would undermine, rather than enhance, the nation’s security.

The bill, which is under review by a legislative committee, would give security agencies wide powers to force telecoms and tech companies to grant access to encrypted devices and messaging apps.

The conservative government of Australian Prime Minister Scott Morrison has demanded that the bill be passed into law before parliament goes into recess on Thursday next week, saying that a number of ongoing counterterrorism investigations were being hindered by plotters’ use of encrypted messaging.

Authorities stepped up pressure for the bill’s urgent adoption after three men were arrested and charged two weeks ago for allegedly plotting a Muslim militant-inspired mass shooting in Melbourne using encrypted messaging applications to communicate.

The DIGI alliance, which also includes Twitter and Verizon’s Oath platforms, said that the bill would force them to create vulnerabilities in their operations which could be exploited by bad actors.

“Deliberately creating a means of access to otherwise secure data will create weaknesses and

vulnerabilities that, regardless of the good intentions at the time, will give an opportunity for other actors — including malicious ones — to access that same data,” they said.

Firms reject the notion that encryption can be both effective and broken when needed.

“That is a needle that cannot be threaded — you cannot break encryption without introducing a vulnerability into the whole system,” the alliance said.

The technology firms further said that the proposed law did not include enough judicial safeguards against possible abuse by security agencies and could force them to “take actions in Australia that violate laws of other countries in which they operate or have customers.”

The group suggested a series of amendments, including the need for all security agency demands to be approved by an independent judge; that they do not require providers to build weaknesses into their systems or products; or impose “new data retention and interception capabilities.”

It also said the demands could not require technology providers to do anything in Australia that would breach laws of other countries.

The DIGI submission noted that the proposed Australian law went significantly further than existing security laws in the US and UK, and would clash with data privacy laws adopted this year in the EU.

Australia is a member of the so-called “Five Eyes” intelligence alliance along with the US, Britain, Canada and New Zealand, and critics have suggested that the new surveillance law could be a test case for toughening anti-encryption efforts in other countries.

The firms issued a veiled warning that adoption of the proposed law could lead major technology companies to end or restrict their activities in Australia.

“Australians may not have access to the best technology, because technology providers may choose not to sell to Australians and submit to this legislation,” they said.

Comments will be moderated. Keep comments relevant to the article. Remarks containing abusive and obscene language, personal attacks of any kind or promotion will be removed and the user banned. Final decision will be at the discretion of the Taipei Times.

TOP top