[iwar] Computer and Network Security vs. Information Privacy and Confidentiality (fwd)

From: Fred Cohen (fc@all.net)
Date: 2001-08-09 07:24:53


Return-Path: <sentto-279987-1571-997367095-fc=all.net@returns.onelist.com>
Delivered-To: fc@all.net
Received: from 204.181.12.215 by localhost with POP3 (fetchmail-5.1.0) for fc@localhost (single-drop); Thu, 09 Aug 2001 07:26:09 -0700 (PDT)
Received: (qmail 23997 invoked by uid 510); 9 Aug 2001 13:27:03 -0000
Received: from n25.groups.yahoo.com (216.115.96.75) by 204.181.12.215 with SMTP; 9 Aug 2001 13:27:03 -0000
X-eGroups-Return: sentto-279987-1571-997367095-fc=all.net@returns.onelist.com
Received: from [10.1.4.55] by mv.egroups.com with NNFMP; 09 Aug 2001 14:24:55 -0000
X-Sender: fc@big.all.net
X-Apparently-To: iwar@onelist.com
Received: (EGP: mail-7_3_1); 9 Aug 2001 14:24:54 -0000
Received: (qmail 15497 invoked from network); 9 Aug 2001 14:24:54 -0000
Received: from unknown (10.1.10.142) by l9.egroups.com with QMQP; 9 Aug 2001 14:24:54 -0000
Received: from unknown (HELO big.all.net) (65.0.156.78) by mta3 with SMTP; 9 Aug 2001 14:24:54 -0000
Received: (from fc@localhost) by big.all.net (8.9.3/8.7.3) id HAA16114 for iwar@onelist.com; Thu, 9 Aug 2001 07:24:53 -0700
Message-Id: <200108091424.HAA16114@big.all.net>
To: iwar@onelist.com (Information Warfare Mailing List)
Organization: I'm not allowed to say
X-Mailer: don't even ask
X-Mailer: ELM [version 2.5 PL1]
From: Fred Cohen <fc@all.net>
Mailing-List: list iwar@yahoogroups.com; contact iwar-owner@yahoogroups.com
Delivered-To: mailing list iwar@yahoogroups.com
Precedence: bulk
List-Unsubscribe: <mailto:iwar-unsubscribe@yahoogroups.com>
Date: Thu, 9 Aug 2001 07:24:53 -0700 (PDT)
Reply-To: iwar@yahoogroups.com
Subject: [iwar] Computer and Network Security vs. Information Privacy and Confidentiality (fwd)
Content-Type: text/plain; charset=US-ASCII
Content-Transfer-Encoding: 7bit

[FC - anonymized for your protection...]

Fred, I don't know whether to issue this to iwar at this time or if its
even appropriate to the theme, if you think it will promote discussion
the please post. 

When did the processes of protecting the the data systems and network
infrastructure become synonymous with information protection? When the
population in general admitted that the systems they depended on to
create, manage and communicate their information were too complex to
handle directly.  That was a valid conclusion as the systems themselves
have become very complex, but what also happened was that ownership and
accessability of the information within these systems was also granted
to the maintainers of the systems on a peer level with the creators and
owners.  With each incident and attack on the information infrastructure
(like CodeRed) the IT community as a whole takes a more aggessive
posture regarding monitoring and data control. 

What brought up this little tirade, see below...  Fred, any thoughs
here?

Some federal judges are protesting the monitoring of their computers by
Washington managers concerned about personal Internet use.  The judges
of the 9th U.S.  Circuit Court of Appeals in San Francisco claim the
practice is illegal.  They are pressing to get it stopped, and the
Supreme Court chief justice and other judges will consider the request
next month.  To demonstrate their discontent, judges of the 9th Circuit
ordered staff to disable monitoring software in May.  The weeklong
shutdown affected 10,000 court employees in the Circuit, which covers
nine states and two territories, and two other court
districts......continued...... 

I find it somewhat ironic that the Judges are so upset about monitoring
in the workplace...  could this be an indication of how future court
cases may be decided... 

Leonidas Ralph Mecham, who runs the Administrative Office of the Courts
in Washington, issued a security alert afterward.  Mecham said the
shutdown "put the entire judiciary's data communications network ...  at
risk." He said the protest was irresponsible because the court had
recently detected attempts to break into its system by overseas hackers. 

Mecham also reminded judges that an analysis had revealed that as much
as half of Internet use on court computers "may not be directly business
related."... 

--This communication is confidential to the parties it is intended to serve--
Fred Cohen		Fred Cohen & Associates.........tel/fax:925-454-0171
fc@all.net		The University of New Haven.....http://www.unhca.com/
http://all.net/		Sandia National Laboratories....tel:925-294-2087


------------------------ Yahoo! Groups Sponsor ---------------------~-->
Small business owners...
Tell us what you think!
http://us.click.yahoo.com/vO1FAB/txzCAA/ySSFAA/kgFolB/TM
---------------------------------------------------------------------~->

------------------
http://all.net/ 

Your use of Yahoo! Groups is subject to http://docs.yahoo.com/info/terms/ 



This archive was generated by hypermail 2.1.2 : 2001-09-29 21:08:39 PDT