Germany’s BND Intelligence Agency Is Cutting Cooperation With The NSA

Entrance to the future BND Headquarters office in Pullach, Bavaria.

German intelligence has drastically reduced its cooperation with the US National Security Agency in response to a growing fall-out over their alleged joint surveillance of European officials and companies, according to media reports.

The BND, Germany’s foreign intelligence agency, ceased the online surveillance it is believed to have been carrying out on behalf of the NSA at its satellite listening station in Bad Aibling, Bavaria, at the start of the week, pending an investigation into the scandal. The end of the operation was reported by the national daily newspaper Süddeutsche Zeitung and other German media, citing sources close to a German parliamentary inquiry into the allegations.

Fax and phone intercepts were still being passed on, according to the reports.

The move was welcomed by Konstantin von Notz of the Green party ombudsman, who is in the parliamentary committee investigating the Edward Snowden revelations, of NSA spying. He said it was an acknowledgement that the operation was out of control.

“This is certainly a drastic step. It’s like pulling the emergency rip cord, because even in the year 2015 they’re still not able to control these search terms for Internet traffic,” he said, adding that Angela Merkel’s government had proven she was unable to protect German and European interests.

The decision was made after the NSA failed to provide a clear reason for each request for the surveillance of individuals or organisations. This had been demanded by the BND and Merkel’s office last month after BND’s chief, Gerhard Schindler, informed the chancellery that there was “massive doubt” about the veracity of the joint surveillance activities, which have been going on for a decade.

The government has yet to respond to the allegations. Members of her own party have joined calls for the government to release the list of 40,000 “selectors” – the IP addresses, search terms and names – used by the BND on behalf of the NSA.

Angela Merkel is under increasing pressure to reveal more about the nature of Germany’s cooperation with the NSA.

Wolfgang Bosbach, a prominent member of Merkel’s CDU and chair of the Bundestag’s home affairs select committee, said the lists were necessary in order to be able to establish whether or not the BND had acted illegally in assisting the NSA.

“It still remains to be seen whether this list can be released, as that depends on what arrangements were made with the US by the then government [of Gerhard Schröder] after the dramatic events of September 11 … I would like to know what was agreed with the Americans. It’s important in order to be able to answer the question as to whether the BND has acted within the law,” he told German broadcaster DLF.

Merkel has so far ruled out releasing the list until consultations with the US are completed. She has said she is prepared to go before the parliamentary committee and answer questions.

According to media reports citing those present at a secret session of the parliamentary committee, it is believed that on the request of Berlin for the NSA to justify each search request, the agency did provide necessary explanations for telephone numbers – believed to be in the millions – that it was wanting information on. But regarding other “selectors” such as those used to search emails, the response was sluggish, Peter Altmaier, Merkel’s chief of staff is reported to have told the committee.

It has also emerged that in his appearance before the committee, the BND boss Schindler, said that his agents had failed to record the data they had passed onto the NSA, making it nearly impossible to reconstruct what information they were provided with. He reportedly said they had no technical means of being able to retrieve the searches.

Whether the admission is just a convenient ploy to cover up any mistakes the BND might have made, as some MPs have inferred, has yet to be seen. The admission has added a further sting to the revelations, and does nothing to improve the position of the BND in the affair. The BND would appear to have at the best very careless if it indeed failed to record any details of the information transfers.

According to Schindler, no companies were on the surveillance list, rather European politicians, EU institutions and other officials.

Schindler, however, was at pains to play down the potential political damage caused. According to Spiegel Online, he told the committee the BND had only seized on communications originating in crisis areas of the world such as Africa and the Far East. He said with that in mind it was unlikely that the search of EU politicians’ emails would have been fruitful.

Schindler also said that most European authorities and almost all diplomats communicated via Virtual Private Networks (VPNs) rather than by email, which would have hindered BND attempts to intercept them.
Schindler repeated that he had first been made aware that the NSA was undertaking a massive sweep of European data by a colleague on March 13, and he had immediately informed the chancellery in Berlin.
Altmaier said the government was putting “considerable pressure” on the US to release the selectors list. A close advisor to Merkel told the committee that it expected an answer without delay.

Christine Lambrecht, parliamentary head of the opposition SPD faction, said despite calls for people to resign over the affair it was too early for conclusions to be drawn. She said it was important that the row did not overshadow the cooperation between intelligence agencies, “as it’s ever clearer that this work cannot be managed by one service alone … the question is only in what legal framework such cooperation takes place.”

Guardian: http://bit.ly/ZCp1oG

« What Do UK Consumers Think About SMEs’ Cyber Security?
Ex-CIA Chief: ‘If we don’t handle China well, it will be catastrophic’ »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Resecurity

Resecurity

Resecurity is a cybersecurity company that delivers a unified platform for endpoint protection, risk management, and cyber threat intelligence.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

ACIS Professional Center

ACIS Professional Center

ACIS provides training and consulting services in the area of information technology, cybersecurity, IT Governance, IT Service management, information security and business continuity management.

L3Harris United Kingdom

L3Harris United Kingdom

L3Harris UK (formerly L3 TRL Technology) designs and delivers advanced electronic warfare and cyber security solutions for the protection of people, infrastructure and assets.

Tendo Solutions

Tendo Solutions

Tendo Solutions provides intelligence, security, forensics and risk solutions to clients across different sectors and jurisdictions.

Operational Center for Information Systems Security (COSSI)

Operational Center for Information Systems Security (COSSI)

COSSI is responsible for the detection and mitigation of cyber attacks directed at French Government information systems.

Heimdal Security

Heimdal Security

Heimdal Security provides proactive protection against cyber threats including ransomware, exploit kits and financial malware.

Security Brokers

Security Brokers

Security Brokers focus services and solutions with a focus on strategic ICT Security and Cyber Defense issues.

NRD Cyber Security

NRD Cyber Security

NRD Cyber Security create a secure digital environment for countries, governments, and organisations and implement cybersecurity resilience enhancement projects around the world.

Zettaset

Zettaset

Zettaset’s XCrypt Data Encryption Platform delivers proven protection for Object, Relational/SQL, NoSQL, and Hadoop data stores…in the cloud and on-premises.

Corsa Security

Corsa Security

Corsa Security is leading the transformation of network security with a private cloud approach that helps scale network security services with unwavering performance and flexibility.

Solidified

Solidified

Solidified is the largest audit platform for smart contracts. Our community has the highest concentration of top Blockchain security specialists and best-in-class code auditors.

US Marine Corps Forces Cyberspace Command (MARFORCYBER)

US Marine Corps Forces Cyberspace Command (MARFORCYBER)

US Marine Corps Forces Cyberspace Command (MARFORCYBER) conducts full spectrum military cyberspace operations in order to enable freedom of action in cyberspace and deny the same to the adversary.

Secuna Software Technologies

Secuna Software Technologies

Secuna is the most trusted Cybersecurity Testing Platform in the Philippines. Our pool of vetted security researchers will find and ethically report security vulnerabilities in your product.

Information Systems Security Association (ISSA)

Information Systems Security Association (ISSA)

ISSA is the community of choice for international cybersecurity professionals dedicated to advancing individual growth, managing technology risk and protecting critical information and infrastructure.

Sendmarc

Sendmarc

Sendmarc automates the process of protecting your domain from being used in email impersonation and phishing attacks.

Surf Security

Surf Security

SURF Security has transformed the browser into your strongest security asset while providing complete end-user privacy – all with full compliance.

Anagram

Anagram

Anagram is the world’s first human-driven security awareness training platform that delivers real results.