Personal Democracy Plus Our premium content network. LEARN MORE You are not logged in. LOG IN NOW >

German State Government Accused of Spying on Citizens

BY Antonella Napolitano | Friday, October 21 2011

The Chaos Computer Club, the largest group of activist hackers in Europe, released a report (in German) of the analysis they conducted on a backdoor Trojan allegedly used by the German police of the state of Bavaria during investigations in order to capture VoIP and IM communication on a suspect's PC.

While the German Government is permitted to conduct some forms of “source wiretapping” (Quellen-TKÜ), this software, which can be installed on a person's computer through an e-mail, would seem to go further.

The CCC group explained their findings in a blogpost:

The CCC analysis reveals functionality in the "Bundestrojaner light" (Bundestrojaner meaning "federal trojan" and is the colloquial German term for the original government malware concept) concealed as "Quellen-TKÜ" that go much further than to just observe and intercept internet based telecommunication, and thus violates the terms set by the constitutional court. The trojan can, for example, receive uploads of arbitrary programs from the Internet and execute them remotely. This means, an "upgrade path" from Quellen-TKÜ to the full Bundestrojaner's functionality is built-in right from the start. Activation of the computer's hardware like microphone or camera can be used for room surveillance. 

[...] The government malware can, unchecked by a judge, load extensions by remote control, to use the trojan for other functions, including but not limited to eavesdropping. This complete control over the infected PC – owing to the poor craftsmanship that went into this trojan – is open not just to the agency that put it there, but to everyone. It could even be used to upload falsified "evidence" against the PC's owner, or to delete files, which puts the whole rationale for this method of investigation into question.

Responding on the issue, the Bavarian Interior Minister declared in a press release: "According to the 2008 decision of the Federal Constitutional Court on online search, a Quellen-TKÜ ( "source wiretapping") is permitted if the surveillance is restricted solely to data from an ongoing telecommunication process and this is has to be enforced by technical and legal requirements. Nothing else has been practiced in Bavaria before".
The press release also says that it could not be confirmed whether CCC analyzed a test version from the development phase or the latest version of the software.

Techzine ZDnet notes that this is not the first time that a government has been accused of using sofware to spy on citizens. But, if the wiretapping abuse was confirmed, this will certainly have even more impact considering that the German government has always been on the forefront when it comes to protecting its citizens' privacy.

While pushing for a significant increase of security controls, the CCC group strongly argues that a new definition of privacy is now much needed:

The legislator should put an end to the ever growing expansion of computer spying that has been getting out of hand in recent years, and finally come up with an unambiguous definition for the digital privacy sphere and with a way to protect it effectively. Unfortunately, for too long the legislator has been guided by demands for technical surveillance, not by values like freedom or the question of how to protect our values in a digital world. It is now obvious that he is no longer able to oversee the technology, let alone control it.

News Briefs

RSS Feed today >

First POST: Scary Monsters

Facebook opens up about its experiments on tweaking voting behavior; breaking news in the FCC net neutrality battle; getting hard data on civic tech's impact on political efficacy; and much, much more. GO

thursday >

First POST: System-Gaming

Why techies interested in political reform are facing challenges; the latest data on Democratic voter contacts in 2014; Hungary's anti-Internet tax demonstrations are getting huge; and much, much more. GO

wednesday >

First POST: Gimme Shelter

The link between intimate partner violence and surveillance tech; the operational security set-up that connected Laura Poitras, Glenn Greenwald and Edward Snowden; how Senate Dems are counting on tech to hold their majority; and much, much more. GO

tuesday >

First POST: Tribes

Edward Snowden on the Internet's impact on political polarization; trying to discern Hillary Clinton's position on NSA reform; why Microsoft is bullish on civic tech; and much, much more GO

monday >

First POST: Inventions

How voter data-sharing among GOP heavyweights is still lagging; why Facebook's News Feed scares news publishers; Google's ties to the State Department; and much, much more. GO

friday >

First POST: Spoilers

How the GOP hasn't fixed its tech talent gap; the most tech-savvy elected official in America, and the most tech-savvy state-wide candidate; and much, much more. GO

More