Egypt's NUCA, SHMFF sign New Cairo land allocation for integrated urban project    CIB named Egypt's Bank of the Year 2025 as factoring portfolio hits EGP 4bn    Egypt declares Red Sea's Great Coral Reef a new marine protected area    Oil prices edge higher on Thursday    Gold prices fall on Thursday    Egypt, Volkswagen discuss multi-stage plan to localise car manufacturing    Egypt denies coordination with Israel over Rafah crossing    Egypt to swap capital gains for stamp duty to boost stock market investment    Egypt tackles waste sector funding gaps, local governance reforms    Egypt, Switzerland explore expanded health cooperation, joint pharmaceutical ventures    Egypt recovers two ancient artefacts from Belgium    Private Egyptian firm Tornex target drones and logistics UAVs at EDEX 2025    Egypt opens COP24 Mediterranean, urges faster transition to sustainable blue economy    Egypt's Abdelatty urges deployment of international stabilisation force in Gaza during Berlin talks    Egypt, Saudi nuclear authorities sign MoU to boost cooperation on nuclear safety    Giza master plan targets major hotel expansion to match Grand Egyptian Museum launch    Australia returns 17 rare ancient Egyptian artefacts    China invites Egypt to join African duty-free export scheme    Egypt calls for stronger Africa-Europe partnership at Luanda summit    Egypt begins 2nd round of parliamentary elections with 34.6m eligible voters    Egypt warns of erratic Ethiopian dam operations after sharp swings in Blue Nile flows    Egypt scraps parliamentary election results in 19 districts over violations    Egypt extends Ramses II Tokyo Exhibition as it draws 350k visitors to date    Egypt signs host agreement for Barcelona Convention COP24 in December    Al-Sisi urges probe into election events, says vote could be cancelled if necessary    Filmmakers, experts to discuss teen mental health at Cairo festival panel    Cairo International Film Festival to premiere 'Malaga Alley,' honour Khaled El Nabawy    Egypt golf team reclaims Arab standing with silver; Omar Hisham Talaat congratulates team    Egypt launches National Strategy for Rare Diseases at PHDC'25    Egypt launches Red Sea Open to boost tourism, international profile    Omar Hisham Talaat: Media partnership with 'On Sports' key to promoting Egyptian golf tourism    Sisi expands national support fund to include diplomats who died on duty    Egypt's PM reviews efforts to remove Nile River encroachments    Egypt resolves dispute between top African sports bodies ahead of 2027 African Games    Germany among EU's priciest labour markets – official data    Paris Olympic gold '24 medals hit record value    It's a bit frustrating to draw at home: Real Madrid keeper after Villarreal game    Russia says it's in sync with US, China, Pakistan on Taliban    Shoukry reviews with Guterres Egypt's efforts to achieve SDGs, promote human rights    Sudan says countries must cooperate on vaccines    Johnson & Johnson: Second shot boosts antibodies and protection against COVID-19    Egypt to tax bloggers, YouTubers    Egypt's FM asserts importance of stability in Libya, holding elections as scheduled    We mustn't lose touch: Muller after Bayern win in Bundesliga    Egypt records 36 new deaths from Covid-19, highest since mid June    Egypt sells $3 bln US-dollar dominated eurobonds    Gamal Hanafy's ceramic exhibition at Gezira Arts Centre is a must go    Italian Institute Director Davide Scalmani presents activities of the Cairo Institute for ITALIANA.IT platform    







Thank you for reporting!
This image will be automatically disabled when it gets reported by several people.



FBI may never reveal the method of unlocking Apple's iPhone
Published in Amwal Al Ghad on 31 - 03 - 2016

The FBI may be allowed to withhold information about how it broke into an iPhone belonging to a gunman in the December San Bernardino shootings, despite a U.S. government policy of disclosing technology security flaws discovered by federal agencies.
Under the U.S. vulnerabilities equities process, the government is supposed to err in favor of disclosing security issues so companies can devise fixes to protect data. The policy has exceptions for law enforcement, and there are no hard rules about when and how it must be applied.
Apple Inc has said it would like the government to share how it cracked the iPhone security protections. But the Federal Bureau of Investigation, which has been frustrated by its inability to access data on encrypted phones belonging to criminal suspects, might prefer to keep secret the technique it used to gain access to gunman Syed Farook's phone.
The referee is likely to be a White House group formed during the Obama administration to review computer security flaws discovered by federal agencies and decide whether they should be disclosed.
Experts said government policy on such reviews was not clear-cut, so it was hard to predict whether a review would be required. "There are no hard and fast rules," said White House cybersecurity coordinator Michael Daniel, in a 2014 blog post about the process.
If a review is conducted, many security researchers expect that the White House group will not require the FBI to disclose the vulnerability it exploited.
Some experts said the FBI might be able to avoid a review entirely if, for instance, it got past the phone's encryption using a contractor's proprietary technology.
Explaining the policy in 2014, the Office of the Director of National Security said the government should disclose vulnerabilities "unless there is a clear national security or law enforcement need."
The interagency review process also considers whether others are likely to find the vulnerability. It tends to focus on flaws in major networks and software, rather than individual devices.
During a press call, a senior Justice Department official declined to disclose whether the method used on Farook's phone would work on other phones or would be shared with state and local law enforcement.
Apple declined to comment beyond saying it would like the government to provide information about the technique used.
PROTECTING "CRUCIAL INTELLIGENCE"
The government reorganized the review process roughly two years ago and has not disclosed which agencies regularly participate other than the Department of Homeland Security and at least one intelligence agency. A National Security Council spokesman did not respond to a request for comment about agency participation.
In his April 2014 blog post, White House cybersecurity coordinator Daniel, who chairs the review group, said secrecy was sometimes justified.
"Disclosing a vulnerability can mean that we forego an opportunity to collect crucial intelligence that could thwart a terrorist attack stop the theft of our nation's intellectual property," Daniel wrote.
On Tuesday, a senior administration official said the vulnerability review process generally applies to flaws detected by any federal agency.
Paul Rosenzweig, a former deputy assistant secretary at the Department of Homeland Security, said he would be "shocked" if the Apple vulnerability is not considered by the group.
"I can't imagine that on one of this significance that the FBI, even if it tried to, would succeed in avoiding the review process," said Rosenzweig, founder of Red Branch Consulting, a homeland security consulting firm.
He predicted the FBI would not be forced to disclose the vulnerability because it appears to require physical possession of a targeted phone and therefore poses minimal threat to Internet security more broadly.
Many security researchers have suggested that the phone's content was probably retrieved after mirroring the device's storage chip to allow data duplication onto other chips, effectively bypassing limitations on the number of passcode guesses.
Kevin Bankston, director of the think tank Open Technology Institute, said there is no public documentation of how the review process has worked in recent years. He said Congress should consider legislation to codify and clarify the rules.
Stewart Baker, former general counsel of the NSA and now a lawyer with Steptoe & Johnson, said the review process could be complicated if the cracking method is considered proprietary by the third party that assisted the FBI.
Several security researchers have pointed to the Israel-based mobile forensics firm Cellebrite as the likely third party that helped the FBI. That company has repeatedly declined comment.
If the FBI is not required to disclose information about the vulnerability, Apple might still have a way to pursue details about the iPhone hack.
The Justice Department has asked a New York court to force Apple to unlock an iPhone related to a drug investigation. If the government continues to pursue that case, the technology company could potentially use legal discovery to force the FBI to reveal what technique it used, a source familiar with the situation told Reuters.
At least one expert thinks a government review could require disclosure. Peter Swire, a professor of law at the Georgia Institute of Technology who served on the presidential intelligence review group that recommended the administration disclose most flaws, said there is "a strong case" for informing Apple about the vulnerability under the announced guidelines.
"The process emphasizes the importance of defense for widely used, commercial software," he said.
Source: Reuters


Clic here to read the story from its source.