Police granted powers to install spyware and Trojans

The Australian police have been given the power to install spyware and Trojans on suspected criminals' computers under the new Surveillance Devices Act.

The Surveillance Devices Act allows both Federal and State police to use keylogging and tracking software when investigating Commonwealth offences that carry a maximum sentence of three years, according to the Sydney Morning Herald.

Neil Campbell, the national security manager of IT services company Dimension Data, who previously spent six years working with the with the Australian Federal Police Computer Crime Team, said the laws needed updating because of confusion when dealing with new technologies.

"If the police intercept SMS messages that have not yet been delivered, should that be classified as a telephone interception or as a regular search? Getting a search warrant is relatively easy -- you need to show reasonable grounds that executing the search will provide evidence as to the commission of an offence but getting an interception warrant is difficult," said Campbell.

However, Campbell said the law may clarify the situation for the Police but there needs to be a provision for companies that monitor the activities of their employees, which could fall foul under the Telecommunications Interception Act, which was written before the Internet age.

"If you are a corporate security admin and it is your job to protect the employees in accordance with various workplace regulations, such as the Sex Discrimination Act. Companies need to protect employees from malicious and obscene content but at the same time the Telecommunications Interception Act doesn't address appropriately the issue of data interception in a corporate environment.

"There is the potential that this activity is interpreted as an interception. But I don't think this has been sufficiently tested in court," said Campbell.

Additionally, Campbell said the police may find it difficult to install spyware onto a suspected criminal's computer, especially if the suspect is competent with IT security practices.

"It is going to be very hard to use spyware for monitoring the activities of a paranoid tech-savvy criminal. How do they get it on the machine? Do they physically install it?" asked Campbell.

Adam Biviano, senior systems engineer at antivirus firm Trend Micro, said that security tools have quite often been in conflict with monitoring techniques and criminals have been using technologies such as encryption to make the monitoring of communications very difficult.

"Tech-savvy criminals will be watching for this kind of thing, especially if they know that law enforcement agencies are using these techniques. They can look at process lists, what is using memory on their PC and what applications are running. If they know enough about their computer they will be able to detect the [spyware] programs," said Biviano.

Advertisement

Talkback 0 comments

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Suzanne Tindal Love me, tender
    Considering how expensive and drawn-out tender processes can be to solve problems that might be very immediate, it's little wonder that the Victorian Police IT department tried to work the tender exemptions system.
  • Array 2009 funding drought rolls on
    For Australian start-ups looking for venture capital, 2009 was a very bad year. 2010 may be no better.
  • Array Can not-so-smart meters help the NBN?
    It was interesting to witness Conroy's recent enthusiasm to spruik the NBN's role in supporting the Smart Grid, Smart City initiative. What a pity that Conroy hadn't yet seen the damning report from the Victorian auditor-general about that state's smart-meter roll-out.
  • More blogs »

Tags

Back to top

Featured