[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[cryptome] Re: FOIPA adventures
- To: [email protected]
- Subject: [cryptome] Re: FOIPA adventures
- From: [email protected] (Ryan Carboni)
- Date: Thu, 24 Dec 2015 14:41:46 -0800
- Cc: cpunks <[email protected]>
- In-reply-to: <CAJVRA1RNH9On85vohEYV3WnSZT+1zt_V4+Z29FQ2RFxkSx0A_Q@mail.gmail.com>
- References: <CAJVRA1SaJpNaPQx=s_7VVM==ony2sH0aUG3w11cjNX6escSm8w@mail.gmail.com> <CAJVRA1TUfu40206TOzK2kBsgCvbgBYYXmyKZ3E5n4KQuoEtZyg@mail.gmail.com> <CAJVRA1QtgMky_hsDLsmFwiXcxE528bZaDOQsjTqqj4tR-dbGBQ@mail.gmail.com> <CAJVRA1RwoyoRs-REWnhGd8cHZM6EJvcziTUDXbU5A6TMigOT6A@mail.gmail.com> <CAJVRA1Rwaq1fvE8p-s1JwOANvMc7X2E75bx5eNd4KGJapt6Nuw@mail.gmail.com> <CAJVRA1TU5Frg3WOJk+3ZFEH0QAFya5xZnwzCfCUE+hL1NhKUFg@mail.gmail.com> <CAJVRA1Q0SDo9Fj3KAU9vA3cxR2=7pwcdpO3Ex=yi6g2WtRAg6A@mail.gmail.com> <CAJVRA1Srrb08Z9XvG+rYq30p2E_MnhJA6ynOLpdT--6gCvwiyQ@mail.gmail.com> <CAJVRA1RXD2dr16TJZK-MPcJm7nR0Ov=Dp9i5Anf5hKNFs2hq7w@mail.gmail.com> <CAJVRA1S97DSPk0NBjgon1LS4HHuGtq_03dqFppUnWq+t61a41A@mail.gmail.com> <CAJVRA1SyW_wOUcFUo6STbiePO8HmLV9LgF-PCgugvuPRD_tKWA@mail.gmail.com> <CAJVRA1QaYYF=hoSQiSd4SHNUj-W6hjEJDhy1KxR9CfFKDgNkew@mail.gmail.com> <CAJVRA1TvZxj_qz6_xK8h13LOD-5mE6iNvT9dnThf4ue0_=kY3Q@mail.gmail.com> <CAJVRA1RbeuzfiVAOqaZ15p8kr67jxcBoNMOrJkt3K86_=FuVXw@mail.gmail.com> <[email protected]> <CAJVRA1SE1O-PqmkV8vX=q5j_xs-YFOpH=OLxSvwaT8BBvadQmA@mail.gmail.com> <CAJVRA1TwM3Re8Tz6NPxp_CeY5C4K3QN+Ceo5VbW3JKMbBABv9g@mail.gmail.com> <CAJVRA1SbqTrEbUJ84rLFWdu6+psY5uUzu-ZsVfyUwoSaMRcGdQ@mail.gmail.com> <CAJVRA1RDN6HsLCbF_wsK+zARO9PaEn80R9FSGnWgGVF4XkbbpQ@mail.gmail.com> <CAJVRA1Rt2gKvgnM0MCiqf2Q4vJ8wWxm=KabcQXeBYSqn4zRvKg@mail.gmail.com> <CAJVRA1Q95CKTVahkfQeH_pwaGDcgJ-4OL2=9o5ckQrZLG8HeUA@mail.gmail.com> <CAJVRA1SyX65OE9-7DQ1hP1fGWHxY8rvCqFXhKPu4Oy4o6wt0gg@mail.gmail.com> <CAJVRA1SgoLtLFS9AFf_d043AGDVbKp4djDtijDR+zfCRJ8twTA@mail.gmail.com> <CAJVRA1SvN5ML7TQnOUqz78PhYv8aefz=k8-4fPOwv2uHUVF3_w@mail.gmail.com> <CAJVRA1Ry2EV7qaFHmZJ9cjm8-waCNBCzenO9BpqW+YKChEHX7w@mail.gmail.com> <CAJVRA1S5juVmB6Ouy0JWbdeJdj9yz0W6tKQDY2q_zi+AC461EA@mail.gmail.com> <CAJVRA1SYO0ia4VGLwFwZFowkD75YR61MC1TNc1wzHbZtmhy1_w@mail.gmail.com> <CAJVRA1SqWMVy6m6KuiJWQQG_6XPWoB+86-p45PWKvfn8wg_jeA@mail.gmail.com> <CAJVRA1RWaiCZtig6+Seyk-UN9M3h9+2iZ0Otnqb6n=AFcRAeRw@mail.gmail.com> <CAJVRA1QzHeh=rs0hRf0sugLZdbXvAhK+2Yte5Tbt_Tnv5Tf8mg@mail.gmail.com> <CAJVRA1SdAW+36Z8yYTdSFTtz8S8U5aiELv5NiuXg5Rg-vaFYew@mail.gmail.com> <CAJVRA1Svk488ax6sd4oy52rfM_u_E1EuzhUAQt6cQ2Jy5yRx5g@mail.gmail.com> <CAJVRA1TeC_fjcQqs8XfQaA94R69g9FKOicENiP-pr02B26-owQ@mail.gmail.com> <CAJVRA1R4iRR6MN1WKoRQP5GM86zG-ZWRznOfUesHqs6qrxvfAg@mail.gmail.com> <CAJVRA1RNH9On85vohEYV3WnSZT+1zt_V4+Z29FQ2RFxkSx0A_Q@mail.gmail.com>
https://en.wikipedia.org/wiki/Inslaw#Inslaw_Affair_divides_into_two_separate_issues
Clearly you should make a request for the source code for the the Promis
software as used by the FBI. It's public domain.
On Thu, Dec 10, 2015 at 3:54 AM, coderman <[email protected]> wrote:
> On 12/9/15, coderman <[email protected]> wrote:
> > a most recent Glomar:
> >
> > "Disclosure timeline and decision making rationale for disclosure of
> > vulnerability MS14-066 / CVE-2014-6321 - "Vulnerability in Schannel
> > Could Allow Remote Code Execution (2992611)" to Microsoft Corporation
> > as part of the Vulnerabilities Equities Process. Please include
> > timeline for initial discovery with source of discovery, first
> > operational use, and finally, date for vendor notification."
> > -
> >
> https://www.muckrock.com/foi/united-states-of-america-10/discloseddisgustagency-22289/
> >
> > "The request has been rejected, with the agency stating that it can
> > neither confirm nor deny the existence of the requested documents."
> > -
> >
> https://www.muckrock.com/foi/united-states-of-america-10/discloseddisgustagency-22289/#comm-209022
>
>
> reply(appeal):
> '''
> I reject and demand appeal of your rejection of this request.
>
> First and foremost, please recognize that the GSF Explorer, formerly
> USNS Hughes Glomar Explorer (T-AG-193), for which this Glomar response
> is so named, was a purely military operation, using custom-built
> military equipment, on an exceptionally sensitive military mission to
> recover military equipment. Observe that the "Vulnerabilities Equities
> Process" is a public outreach activity communicating with third party
> partners, acting in the public interest regarding software used by
> public citizens and business alike - a scenario at opposite ends and
> means from which this denial blindly overreaches.
>
> Second, observe that existing precedent supports the release of
> materials responsive to this request. In American Civil Liberties
> Union v. Department of Defense Case No: 04-CV-4151 (ACLU v. DoD) the
> courts have affirmed the public interest as compelling argument for
> favoring the public interest against clearly military efforts. The
> Glomar denial should be well targeted; this targeted falls well
> outside of the the "Vulnerabilities Equities Process", which is a
> public outreach activity communicating with third party partners,
> acting in the public interest, regarding software used by public
> citizens and business alike.
>
> Third, consider that it is a well established technique in the
> information security industry to identify the origin and nature of a
> defect discovery and disclosure timeline. This information is used for
> myriad of secondary research, analysis, and automation efforts
> spanning numerous industries. The utility of of disclosure timeline
> information and context has decades of rich support and strong
> evidence of public interest benefit, particularly regarding long
> reported and fixed defects, such as this one, which has patches
> available for over a year.
>
> Fourth, observe that every hour of expert opinion coupled with legal
> review amounts to a non-trivial expenditure of hours which are a sunk,
> throw away cost of FOIA communication. While as a taxpayer I
> appreciate the service of FOIA professionals such as those involved in
> this request, who provide tireless effort the all hundreds of millions
> of US citizens, my personal cost should be recognized. For this reason
> a deference in favor of public interest and disclosure is well
> supported for this request regarding the "Vulnerabilities Equities
> Process", which is a public outreach activity communicating with third
> party partners, acting in the public interest, regarding software used
> by public citizens and business alike.
>
> Thank you for your time, and best regards,
> '''
> -
> https://www.muckrock.com/foi/united-states-of-america-10/discloseddisgustagency-22289/#comm-209748
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://cpunks.org/pipermail/cypherpunks/attachments/20151224/fb0a92ad/attachment.html>