Code blues.Phil Zimmerman gave electronic privacy protection to the masses, and for that he may go to jail.
IN 1991 PHIL ZIMMERMAN DEVELoped a software program called Pretty Good Privacy (PGP (Pretty Good Privacy) A data encryption program from PGP Corporation, Palo Alto, CA (www.pgp.com). Published as freeware in 1991 and widely used around the world for encrypting e-mail messages and securing files, PGP is available for commercial use and as freeware for ), designed to shield electronic information from prying eyes, and gave it away for free. Zimmerman, a Boulder, Colorado The City of Boulder (, Mountain Time Zone) is a home rule municipality located in Boulder County, Colorado, United States. Boulder is the 11th most populous city in the State of Colorado, as well as the most populous city and the county , software consultant, thereby provided unbreakable "military-grade" encryption to the masses. After he released PGP, someone put it on the Internet, making it available, with a few keystrokes, to the whole world. In a short time, PGP could be found in London or Moscow. This has upset some powerful people in Washington, especially the National Security Agency.
Agents from the U.S. Customs Service visited Zimmerman in February 1993 to ask him about the "export" of PGP. Under the current interpretation of the International Traffic in Arms Regulations “ITAR” redirects here. For the Russian news agency, see Information Telegraph Agency of Russia.
International Traffic in Arms Regulations (ITAR) is a set of United States government regulations that control the export and import of defense-related articles , cryptographic software like PGP is classified as "munitions mu·ni·tion
War materiel, especially weapons and ammunition. Often used in the plural.
tr.v. mu·ni·tioned, mu·ni·tion·ing, mu·ni·tions
To supply with munitions. " and cannot be legally exported without permission from the federal government. "The mere posting of encryption software Encryption software is software whose main task is encryption and decryption of data, usually in the form of files on hard drives and removable media, email messages, or in the form of packets sent over computer networks. is tantamount to exporting it," explains Danny Weitzner of the Electronic Frontier Foundation See EFF.
(body) Electronic Frontier Foundation - (EFF) A group established to address social and legal issues arising from the impact on society of the increasingly pervasive use of computers as a means of communication and information distribution. .
Zimmerman says he has been told that he is the primary target of an ongoing federal grand-jury investigation. In September, he says, an encryption company was served with a subpoena subpoena (səpē`nə) [Lat.,=under penalty], in law, an order to a witness to appear before a court. A subpoena ad testificandum [Lat. to produce documents related to "ViaCrypt |the commercial version of PGP~, PGP, Philip Zimmerman Philip Zimmerman is a leading American iconographer.
An Orthodox Christian, he has created hundreds of religious icons for churches and private collectors throughout the world. Through his workshops and seminars he has worked with more than 1,200 students in six countries. , and anyone or any entity acting on behalf of Philip Zimmerman for the time period June 1, 1991, to the present." Assistant U.S. Attorney William Keane, who is in charge of the grand-jury investigation, says he cannot comment on an on-going case, but there may be "some activity shortly."
If Zimmerman is convicted of "exporting munitions," he could go to jail for four years. He would probably view himself as a political prisoner. "I didn't do it to make money," he says. "I did it to inoculate in·oc·u·late
1. To introduce a serum, a vaccine, or an antigenic substance into the body of a person or an animal, especially as a means to produce or boost immunity to a specific disease.
2. the body politic BODY POLITIC, government, corporations. When applied to the government this phrase signifies the state.
2. As to the persons who compose the body politic, they take collectively the name, of people, or nation; and individually they are citizens, when considered ." In October he told a congressional subcommittee: "When making public-policy decisions about new technologies for the government, I think one should ask oneself which technologies would best strengthen the hand of a police state. Then, do not allow the government to deploy those technologies. This is simply a matter of good civic hygiene."
Zimmerman believes the expansion of digital communications Transmitting text, voice and video in binary form. See communications. networks could pose a serious threat to individual liberty. He makes the point by contrasting how government agencies can monitor regular mail with how they can sift through electronic mail. Previously the authorities could only intercept and steam open envelopes sent to a few people. This is like using a hook to catch a fish. With the development of data networks, officials can scan thousands of electronic messages simultaneously for key words. This is like using a drift net.
IN A MOVE THAT COULD HELP WEAVE such a net, the federal government is trying to persuade the U.S. computer and telecommunications industry to adopt an encryption standard developed by the National Security Agency called the Clipper Chip. The Clipper Chip has a "back door" that allows government officials to tap and decode any messages encrypted with it. (See "Hide and Peek," November 1993.) Spooks For the music band, see .
For the Three Stooges film, see .
Spooks is a British television drama series, produced by the independent production company Kudos for BBC One. and law-enforcement officials say this back door is needed so they can monitor the communications of terrorists, drag runners, and wire-fraud artists. They say ordinary citizens would enjoy the same constitutional protections as in the past, since tapping a phone or reading some-one's e-mail would still require a court order.
"The government has the balance of costs and benefits all wrong," says the EFF's Weitzner. "We grant that there are some number of people who would use cryptography to further illegal acts, but should we compromise the privacy of all American citizens just to do an ineffective job of trying to police terrorists and mobsters Mobsters is a 1991 crime drama detailing the creation of the National Crime Syndicate/The Commission. Set in New York City during the Prohibition era, it's a somewhat fictionalized account of rise of Charles "Lucky" Luciano, Meyer Lansky, Frank Costello, and Benjamin "Bugsy" ?" Philip Dubois, Zimmerman's attorney, puts it this way: "We can have the kind of country where people can speak freely and privately and take the consequences of that. Or we can have the kind of country where they can't and take the far worse consequences of that."
By creating and disseminating PGP, Zimmerman made it clear which side he comes down on. The program uses an unbreakable algorithm in combination with "public-key" cryptography. In public-key cryptography, everyone has two complementary keys, a public one and a secret one. Each key deciphers the code the other key makes, but the secret key cannot be deduced from the public key. The public key is disseminated widely so that anyone can use it to encode messages to its originator, who decodes them using his secret key. No one but the recipient can decrypt To convert secretly coded data (encrypted data) back into its original form. Contrast with encrypt. See plaintext and cryptography. a message sent using his public key, not even the person who encrypted it.
PGP made it easy for the average computer jockey to use public-key cryptography to protect his or her electronic data and messages from snoops SNOOPS - Craske, 1988. An extension of SCOOPS with meta-objects that can redirect messages to other objects. "SNOOPS: An Object-Oriented language Enhancement Supporting Dynamic Program Reeconfiguration", N. Craske, SIGPLAN Notices 26(10): 53-62 (Oct 1991). , be they government, criminal, or corporate. Zimmerman named his program Pretty Good Privacy as a folksy folk·sy
adj. folk·si·er, folk·si·est Informal
1. Simple and unpretentious in behavior.
2. Characterized by informality and affability: a friendly, folksy town.
3. homage to Ralph's Pretty Good Grocery in Garrison Keillor's mythical Lake Wobegon. He proudly points out that breaking PGP would take "more computing resources than are currently available"--a mathematician's understated way of saying that there aren't enough computers on earth to break it.
Versions of PGP, including the updated PGP 2.3a, are widely available throughout the Internet. (Those interested in getting a freeware copy of PGP can obtain a list of sites by contacting Hugh Miller via e-mail at hmiller For news updates on encryption issues, contact Internet Usenet newsgroups alt.security.pgp, talk.politics.crypto, and sci.crypt.) ViaCrypt, the commercial version of PGP, can be purchased at your local computer software store. Indeed, a wide variety of software with encryption capabilities is available at stores, from mail-order houses, and on computer bulletin boards. Anyone can buy such programs or download them; they can be carried or mailed out of the United States on a floppy disk or blipped via modem to anywhere in the world.
CLEARLY, THE CAT IS OUT OF THE BAG. Yet the feds are frantically trying to stuff it back in. "The National Security Agency's opposition is the last vestige vestige /ves·tige/ (ves´tij) the remnant of a structure that functioned in a previous stage of species or individual development.vestig´ial
n. of a Cold War bureaucracy holding on," Weitzner says. "After all, what's their mission now?" Zimmerman adds, "The NSA NSA
National Security Agency
Noun 1. NSA - the United States cryptologic organization that coordinates and directs highly specialized activities to protect United States information systems and to produce foreign views this as their twilight of the gods, their Armageddon." (Asked about PGP, NSA spokesperson Judi Emmel says, "It is a private encryption technique and it is not our place to comment on it.")
Cryptography used to be something the NSA could control because it was very expensive and the government could break just about any code that could be used affordably. The sole purpose of the supersecret agency is signals intelligence: monitoring communications and deciphering codes. Every year that the NSA delays the widespread adoption of unbreakable encryption is another year in which the agency can provide intelligence to government officials and justify its budget.
Over the long term, however, cryptography is simply too important for the NSA to have its way. "I hope that the administration understands the devastating dev·as·tate
tr.v. dev·as·tat·ed, dev·as·tat·ing, dev·as·tates
1. To lay waste; destroy.
2. To overwhelm; confound; stun: was devastated by the rude remark. importance this has to expanding the information superhighway," Weitzner says. "People need to know that their communications on it are secure."
Computer companies strongly oppose the Clipper Chip, arguing that its adoption would dampen exports of American products. After all, why would foreign customers want to own computers or software with encryption systems designed for U.S. government access? Some members of Congress realize the growing importance of encryption to the computer industry. Rep. Maria Cantwell (D-Wash.) introduced a bill last November that would liberalize lib·er·al·ize
v. lib·er·al·ized, lib·er·al·iz·ing, lib·er·al·iz·es
To make liberal or more liberal: "Our standards of private conduct have been greatly liberalized . . . export controls on software with encryption capabilities. In introducing her bill, Cantwell noted that American software companies stand to lose between $6 billion and $9 billion annually in sales to foreign customers because of the government prohibition on encryption exports. A similar bill has been introduced in the Senate.
The Electronic Frontier Foundation is organizing an electronic mail campaign to support the Cantwell bill. "If we lift export controls, it will make really stupid ideas like the Clipper Chip obsolete," says Weitzner. It would also probably end Zimmerman's legal troubles. Meanwhile, his lawyers have created a fund to help pay his legal bills. (Information about the fund can be obtained by contacting his attorney via e-mail at dubois
Lately Zimmerman has been working on a voice encryption system that would turn every multimedia computer into a secure telephone. Expected to be available later this year, the system could spell the end for wiretaps. Zimmerman sees it as a logical follow-up to PGP. "PGP empowers people to take their privacy into their own hands," he says. "If privacy is outlawed, then only outlaws will have privacy."
Contributing Editor Ronald Bailey is the author of ECO-SCAM: The False Prophets of Ecological Apocalypse, which will be issued in paperback by St. Martin's Press this spring. He is the 1993 Warren Brookes Fellow in Environmental Journalism at the Competitive Enterprise Institute and the producer of Ben Wattenberg's new national weekly PBS PBS
in full Public Broadcasting Service
Private, nonprofit U.S. corporation of public television stations. PBS provides its member stations, which are supported by public funds and private contributions rather than by commercials, with educational, cultural, TV series, Think Tank.