Feeds

Snowden's XKeyscore revelations challenged

Job ads for latest NSA horror ran in 2010

  • alert
  • submit to reddit

The Power of One eBook: Top reasons to choose HP BladeSystem

Edward Snowden's latest revelations about NSA snooping, the Xkeyscore program, have quickly been called into question.

While The Guardian correctly identifies XKeyscore as being a search tool for NSA databases (providing what the outlet's Glenn Greenwald writes is an “ability to query the databases at any time”, which is pretty much what a database is for), Greenwald also conveys the impression that XKeyscore trawls all of America's communications in real time.

That interpretation of XKeyscore is now being disputed by American journalist Marc Ambinder. Writing for The Week, he professes the opinion that Greenwald has misunderstood the function and the power of the tool.

Ambinder, co-author with DB Grady (nom-de-plume of David Brown) of the January 2013 book Deep State: Inside the Government Secrecy Industry, says he and Grady had already documented XKeyscore. From their research, he says, it's clear that the program exists, is not as deep a secret as Greenwald believes – and that it's an organisational and search tool rather than a collection tool.

“XKeyscore is not a thing that DOES collecting; it's a series of user interfaces, backend databases, servers and software that selects certain types of metadata that the NSA has ALREADY collected using other methods. XKeyscore, as D.B. Grady and I reported in our book, is the worldwide base level database for such metadata”, Ambinder writes.

Ambinder also writes: “I quibble with the Guardian's description of the program as 'TOP SECRET.' The word is not secret; its association with the NSA is not secret; that the NSA collects bulk data on foreign targets is, well, probably classified, but at the SECRET level.”

The Register notes that XKeyscore's existence and some of its nature was described in 2010 in recruitment advertising on the K-Bar List, which describes itself as “a free veterans' employment network”.

Those advertisements describe XKeyscore as being “deployed worldwide” and “incorporated into production architecture and used by analysts on a 24/7/365 basis”. Signal intelligence experience was on the “preferred list”, since applicants had to have “experience working with DNI [digital network information – Ed] SIGINT systems and an understanding of SIGINT data flow”. Applicants needed TS/SCI (top secret / sensitive compartmented information) clearance. ®

The Power of One eBook: Top reasons to choose HP BladeSystem

More from The Register

next story
HIDDEN packet sniffer spy tech in MILLIONS of iPhones, iPads – expert
Don't panic though – Apple's backdoor is not wide open to all, guru tells us
BMW's ConnectedDrive falls over, bosses blame upgrade snafu
Traffic flows up 20% as motorway middle lanes miraculously unclog
LibreSSL RNG bug fix: What's all the forking fuss about, ask devs
Blow to bit-spitter 'tis but a flesh wound, claim team
Mozilla fixes CRITICAL security holes in Firefox, urges v31 upgrade
Misc memory hazards 'could be exploited' - and guess what, one's a Javascript vuln
Putin: Crack Tor for me and I'll make you a MILLIONAIRE
Russian Interior Ministry offers big pile o' roubles for busting pro-privacy browser
Manic malware Mayhem spreads through Linux, FreeBSD web servers
And how Google could cripple infection rate in a second
Don't look, Snowden: Security biz chases Tails with zero-day flaws alert
Exodus vows not to sell secrets of whistleblower's favorite OS
Researcher sat on critical IE bugs for THREE YEARS
VUPEN waited for Pwn2Own cash while IE's sandbox leaked
prev story

Whitepapers

Top three mobile application threats
Prevent sensitive data leakage over insecure channels or stolen mobile devices.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Top 8 considerations to enable and simplify mobility
In this whitepaper learn how to successfully add mobile capabilities simply and cost effectively.
Application security programs and practises
Follow a few strategies and your organization can gain the full benefits of open source and the cloud without compromising the security of your applications.
The Essential Guide to IT Transformation
ServiceNow discusses three IT transformations that can help CIO's automate IT services to transform IT and the enterprise.