Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Protection

Microsoft Says Private Data ‘At Risk’ in Court Case

NEW YORK – Microsoft argued Monday in a court brief that an order requiring it to give US prosecutors data stored in Ireland could “put all of our private digital information at risk.”

The brief with the US Court of Appeals in New York comes with prosecutors seeking customer emails in a narcotics probe, with the data stored in Microsoft servers in Ireland.

NEW YORK – Microsoft argued Monday in a court brief that an order requiring it to give US prosecutors data stored in Ireland could “put all of our private digital information at risk.”

The brief with the US Court of Appeals in New York comes with prosecutors seeking customer emails in a narcotics probe, with the data stored in Microsoft servers in Ireland.

A lower court ruled that the US tech giant must hand over data sought in the probe, dismissing Microsoft’s claims of “extraterritorial” authority.

Microsoft general counsel Brad Smith said the case could set a dangerous precedent, and invite other countries to take similar actions.

“The filing begins by imagining how the US government might react if the shoe were on the other foot,” Smith said in a blog post.

“For example, how would the Unites States react if a foreign government attempted to sidestep international law by demanding that a foreign company with offices in the United States produce the personal communications of an American journalist?”

Smith said that if the US prevails, “how can it complain if foreign agents require tech companies to download emails stored in the US? This is a question the Department of Justice hasn’t yet addressed, much less answered.”

In the court brief, Microsoft said, “The power to embark on unilateral law enforcement incursions into a foreign sovereign country — directly or indirectly — has profound foreign policy consequences. Worse still, it threatens the privacy of US citizens.”

Advertisement. Scroll to continue reading.

A ruling requiring Microsoft to turn over the data “would put all of our private digital information at risk, not just emails, but everything else we store on remote computers collectively called ‘the cloud’ — a veritable ‘cache of sensitive personal information’ saturated with the highest constitutional privacy rights.”

Microsoft had argued that the court order was invalid. But prosecutors contended that it must comply with the order and US Magistrate Judge James Francis ruled in April that “it has long been the law that a subpoena requires the recipient to produce information in its possession… regardless of the location of that information.”

The case comes amid rising concern about US surveillance following revelations of snooping disclosed by former National Security Agency contractor Edward Snowden. Leading tech firms, including Apple and Verizon, have filed briefs supporting Microsoft.

Smith said Microsoft “complies with lawful orders from US authorities” but that the government “should follow the processes it has established for itself for obtaining physical evidence outside the United States.”

He added that “the warrant issued here cannot reach emails stored in Ireland, and as we argue in our brief, we believe the lower court’s judgment should be reversed.”

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Data Protection

The cryptopocalypse is the point at which quantum computing becomes powerful enough to use Shor’s algorithm to crack PKI encryption.

Artificial Intelligence

The CRYSTALS-Kyber public-key encryption and key encapsulation mechanism recommended by NIST for post-quantum cryptography has been broken using AI combined with side channel attacks.

Compliance

The three primary drivers for cyber regulations are voter privacy, the economy, and national security – with the complication that the first is often...

Artificial Intelligence

Two of humanity’s greatest drivers, greed and curiosity, will push AI development forward. Our only hope is that we can control it.

Data Protection

While quantum-based attacks are still in the future, organizations must think about how to defend data in transit when encryption no longer works.

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Application Security

Fortinet on Monday issued an emergency patch to cover a severe vulnerability in its FortiOS SSL-VPN product, warning that hackers have already exploited the...