Skip to main content

NSA Program to Monitor for Cyberattacks?

Image used with permission by copyright holder

The Wall Street Journal reports (subscription required) that the United States’ National Security Agency—perhaps the largest intelligence-gathering organization on the planet—is launching a program dubbed “Perfect Citizen” to monitor for cyberattacks against both government agencies as well as private companies and organizations deemed to be important to the U.S. national infrastructure. The program would work by installing equipment on various public and private computer networks that would monitor traffic and trigger alarms in the event of suspicious activity or attacks; the Wall Street Journal reports defense contractor Raytheon has won the classified contract in tha $100 million range to supply and deploy the initial phase of surveillance gear.

News of the program is already drawing comparison’s to Orwell’s “Big Brother,” with the government monitoring Internet traffic not only on its own systems but of private corporations as well. It is not clear what sort of traffic monitoring Perfect Citizen might engage in, what sort of data is being collected, or how that data is being stored and used.

Others have expressed surprised the NSA and other agencies have not already put monitoring systems in place to detect common forms of network-based attacks. The Wall Street Journal quotes a U.S. military official likening Perfect Citizen to the types of protection the federal government deploys to protect against physical attacks on infrastructure, and the privacy implications as being of no more concern than traffic cameras.

The program is apparently being funded from the Comprehensive National Cybersecurity Initiative. Companies would not be required to participate in Perfect Citizen, but the government is apparently planning to offer incentives for private firms to do so. According to the story, the initial rollout of Perfect Citizen is aimed at older, legacy systems that were initially designed for site-specific functions—think air traffic control, electrical grid control, power plans, and transit systems—without network access or security, but which have subsequently been connected to the Internet.

News of Perfect Citizen comes just as South Korea reports a repeat of denial of service and malware cyberattacks that hit the country last year; the original attacks were blamed on North Korea, although more recent investigation finds no firm evidence the North Korean government was behind the acts. This year’s attacks were apparently launched from the same systems as last year, and caused no significant problems.

The most high-profile cyberattacks in recent months were a serious of sophisticated attacks against Google and other companies operating in China; in Google’s case, the attacks were intended in part to gain access to accounts of Chinese human rights activists. Google pledged to stop censoring search results in China as a result of the attacks, and moved its search Chinese search operation to Hong Kong; the company is currently waiting to see if it’s Chinese Internet Content Provider license will be renewed so it can continue to do business in the country.

Google has also reportedly been exploring a partnership with the NSA on cybersecurity matters.

Editors' Recommendations

Geoff Duncan
Former Digital Trends Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
This dangerous new Mac malware steals your credit card info
A hacker typing on an Apple MacBook laptop while holding a phone. Both devices show code on their screens.

People like to think that Apple’s Macs are more or less invulnerable to the assorted viruses and trojans that afflict Windows PCs, but that’s far from the truth. That’s just been aptly demonstrated by the emergence of a new malware strain that attempts to steal all of your passwords, credit card data, and more.

The discovery was made by security firm SentinelOne, which named the malware MetaStealer. According to SentinelOne, MetaStealer has the potential to trick you into giving away vital information that could cause a huge amount of damage, and it has a nefarious way of getting what it wants.

Read more
Chrome is making a key change to protect you from phishing
Google Chrome with pinned tabs on a MacBook on a table.

Phishing campaigns -- where a fraudulent website or email is made to look like it comes from a legitimate source -- have caused a huge amount of destruction, leading to untold numbers of virus infections and money lost through scams. Google has just rolled out a powerful way to fight phishing in its Chrome browser, however, and it could help you avoid falling victim.

As part of Chrome’s 15th-anniversary update, Google will be pushing its Enhanced Safe Browsing feature to all users in the coming weeks. This checks website URLs against a list of malicious sites stored on Google’s cloud servers, all in real time. If a match is found, the website is blocked and a warning is displayed to users.

Read more
Lapsus$ hackers convicted of breaching GTA 6, Nvidia, and more
A hacker typing on an Apple MacBook laptop, which shows code on its screen.

The Lapsus$ hacking gang caused havoc in 2021 and 2022 with a series of high-profile security breaches and ransom demands. Yet things have been very quiet since then, and two alleged members of the group have just been convicted in the U.K., potentially bringing an end to one of the most notable hacking sprees in recent times.

According to Bloomberg and the BBC, two people accused of being members of the gang were convicted in the U.K. of a number of crimes, including serious computer misuse, blackmail, and fraud. The defendants included Arion Kurtaj, 18, and a 17-year-old male who could not be named due to his age. Both defendants are autistic and psychiatrists deemed that Kurtaj was not fit to stand trial, so he did not give evidence. They will both be sentenced at a later date.

Read more