House vote on cyberthreat sharing bill CISPA scheduled for Friday

Democrats and other critics continue to point out privacy concerns
  • Grant Gross (IDG News Service)
  • — 25 April, 2012 04:05

A vote in the U.S. House of Representatives on a controversial bill aimed at expanding the amount of cyberthreat information shared between private companies and the U.S. government is scheduled for Friday.

House debate on the Cyber Intelligence Sharing and Protection Act, or CISPA, is scheduled to begin Thursday, followed by a Friday vote, according to information from the House Intelligence Committee, where the bill originated.

Critics of the bill say it would trample the privacy rights of Internet users, and some Democratic lawmakers and outside groups have repeated those concerns. CISPA does not include "necessary safeguards" to protect privacy, 18 House Democrats said in a letter sent Monday to CISPA sponsors Representative Mike Rogers, a Michigan Republican, and C.A. "Dutch" Ruppersberger, a Maryland Democrat.

CISPA has "ambiguous" language about how much online activity Internet service providers and other businesses can share with each other and with government agencies, said the letter, signed by Representatives Bennie Thompson of Mississippi, John Conyers of Michigan, Jared Polis of Colorado and Zoe Lofgren of California, among others.

"Without specific limitations, CISPA would, for the first time, grant non civilian federal agencies, such as the National Security Agency, unfettered access to information about Americans' Internet activities and allow those agencies to use that information for virtually any purpose," the letter said.

Also on Monday, the American Library Association urged its members to oppose CISPA. The legislation would allow an "excessive amount of information" to be shared between the private sector and the government, Molly Raphael, president of the group, said in a statement. "We need balance between what our country must do for cybersecurity and the privacy values that we must protect."

Several tech trade groups and vendors have voiced support for CISPA. On Tuesday, three trade groups -- CTIA, the United States Telecom Association and the National Cable and Telecommunications Association -- called on Congress to pass CISPA and three other cybersecurity bills.

"Congress can advance national cyber defense by passing these measures," the three groups said http://chsdemocrats.house.gov/sitedocuments/cispa.pdf.

CISPA would allow private companies to share customer communications related to cyberthreats with a wide number of government agencies. The bill would allow agencies to use the shared information for a wide range of purposes, as long as there's also a "significant" cybersecurity or national security purpose for sharing the information, critics have said.The bill exempts private companies that share cyberthreat information in "good faith" from lawsuits from customers. Critics have said that the bill supersedes all U.S. privacy laws and puts few restrictions on how government agencies can use the shared information.

Grant Gross covers technology and telecom policy in the U.S. government for The IDG News Service. Follow Grant on Twitter at GrantGross. Grant's e-mail address is grant_gross@idg.com.

Comments are now closed.
CSO Corporate Partners
  • Webroot
  • Trend Micro
  • NetIQ
rhs_login_lockGet exclusive access to CSO, invitation only events, reports & analysis.
CSO Directory

NetIQ PCI DSS Compliance Suite

The pressure to satisfy compliance requirements can be overwhelming.

Security Awareness Tip

Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).


  1. Have an incident response plan.

  2. Pre-define your incident response team 

  3. Define your approach: watch and learn or contain and recover.

  4. Pre-distribute call cards.

  5. Forensic and incident response data capture.

  6. Get your users on-side.

  7. Know how to report crimes and engage law enforcement. 

  8. Practice makes perfect.

For the full breakdown on this article

Security ABC Guides

Warning: Tips for secure mobile holiday shopping

I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.