Skip to main content

Bill would require warrants to search email, cell phones

patrick+leahyNow here’s some legislation privacy advocates can get behind: A new bill made public Tuesday by Sen. Patrick Leahy (D-VT) would provide a much-needed overhaul of a 25-year-old digital privacy law, and require the government to obtain search warrants to access citizens’ email accounts, cell phones, instant messages, cloud storage services and social networks.

The bill is an update of the Electronic Communication Privacy Act (ECPA), which was also written by Sen. Leahy, and became a law all the way back in 1986. Sen. Leahy’s ECPA Amendments Act of 2011 would also require that, in most cased, the government obtain a search warrant before being able to access real-time cell phone location data from a wireless provider. (The bill provides an exemption for emergency 911 calls.)

Sen. Leahy’s bill does away with the so-called “180-day rule,” which allows the government to access citizens’ emails 180 days after they were sent, in most circumstances. In its place would be “one clear legal standard for the protection of the content of emails and other electronic communications,” said Sen. Leahy in a statement.

“Just in the past few weeks, we have witnessed significant data breaches involving Sony and Epsilon that impact the privacy of millions of American consumers,” said Leahy. “We are also learning that smartphones and other new mobile technologies may be using and storing our location and other sensitive information posing other new risks to privacy.

“When I led the effort to write the ECPA 25 years ago, no one could have contemplated these and other emerging threats to our digital privacy.  Updating this law to reflect the realities of our time is essential to ensuring that our Federal privacy laws keep pace with new technologies and the new threats to our security.”

Sen. Leahy’s efforts have been applauded by privacy advocacy group the Electronic Frontier Foundation (EFF), who calls the bill “a welcome first step in the process of providing stronger and clearer privacy protections for our Internet communications and location data.”

The EFF warns that, while the legislation is a step in the right direction, it “isn’t absolutely free of problems. The bill “would also and unfortunately preserve the current statutory rule allowing the government to get historical records of your location without probable cause,” writes EFF legislative analyst Kevin Bankston in a blog post. It also expands the government’s authority to use National Security Letters to obtain rich transactional data about who you communicate with online and when, without probable cause or court oversight.”

Still, when we’ve become used to the government doing everything they can to stick their heads further up our digital rear ends, any move in the opposite direction is more than welcomed.

(Image via)

Andrew Couts
Former Digital Trends Contributor
Features Editor for Digital Trends, Andrew Couts covers a wide swath of consumer technology topics, with particular focus on…
A dangerous new jailbreak for AI chatbots was just discovered
the side of a Microsoft building

Microsoft has released more details about a troubling new generative AI jailbreak technique it has discovered, called "Skeleton Key." Using this prompt injection method, malicious users can effectively bypass a chatbot's safety guardrails, the security features that keeps ChatGPT from going full Taye.

Skeleton Key is an example of a prompt injection or prompt engineering attack. It's a multi-turn strategy designed to essentially convince an AI model to ignore its ingrained safety guardrails, "[causing] the system to violate its operators’ policies, make decisions unduly influenced by a user, or execute malicious instructions," Mark Russinovich, CTO of Microsoft Azure, wrote in the announcement.

Read more