Italys Surveillance Toolbox Riccardo Coluccini @ORARiccardo - - PowerPoint PPT Presentation

italy s surveillance toolbox
SMART_READER_LITE
LIVE PREVIEW

Italys Surveillance Toolbox Riccardo Coluccini @ORARiccardo - - PowerPoint PPT Presentation

Italys Surveillance Toolbox Riccardo Coluccini @ORARiccardo 34C3 27th-30th December 2017 OSINT OSINT Google Search VAT numbers OSINT Payments by Ministry of Interior due to transparency law n33/2013 OSINT Google


slide-1
SLIDE 1

Italy’s Surveillance Toolbox

Riccardo Coluccini @ORARiccardo

34C3 27th-30th December 2017

slide-2
SLIDE 2
slide-3
SLIDE 3
slide-4
SLIDE 4
slide-5
SLIDE 5

OSINT

slide-6
SLIDE 6

OSINT

  • Google Search VAT numbers
slide-7
SLIDE 7

OSINT

  • Payments by Ministry of Interior due to

transparency law n°33/2013

slide-8
SLIDE 8

OSINT

  • Google Search Tender Identification Codes
slide-9
SLIDE 9

OSINT

  • Public Procurement datasets available in xml

format due to anti-corruption law n°190/2012

slide-10
SLIDE 10
slide-11
SLIDE 11

How does it work?

Public Procurement dataset xml List of companies participating Tender Identification code Invoices Technical and economic offers *FOIA law recently introduced in Italy

slide-12
SLIDE 12

Companies

slide-13
SLIDE 13
slide-14
SLIDE 14
slide-15
SLIDE 15

IMSI-catchers

  • CPM Elettronica official reseller of CellXion
slide-16
SLIDE 16

IMSI-catchers

  • Who are the participants?
slide-17
SLIDE 17

IMSI-catchers

  • Specs
slide-18
SLIDE 18

IMSI-catchers

slide-19
SLIDE 19
slide-20
SLIDE 20

IP Interception

  • Public money used to fund interception probes
slide-21
SLIDE 21

IP Interception

slide-22
SLIDE 22
slide-23
SLIDE 23

SOCMINT (CRAIM)

  • Web scraping to collect audio, speech-to-text,

speaker identification, and voice fingerprints

slide-24
SLIDE 24

SOCMINT (CRAIM)

  • FOIA request to obtain technical offers: access

partially granted

slide-25
SLIDE 25

SOCMINT (CRAIM)

slide-26
SLIDE 26
slide-27
SLIDE 27

Face Recognition (SARI)

  • System Architecture
slide-28
SLIDE 28

Face Recognition (SARI)

  • System specs for Enterprise and Real-Time
slide-29
SLIDE 29

FOIA

  • Invoices
slide-30
SLIDE 30

Secret tenders

  • Transparency laws differs for the Ministry of

Defense

slide-31
SLIDE 31

Secret tenders

  • BEAGLE (sort of weaker version of XKeyscore)
slide-32
SLIDE 32
slide-33
SLIDE 33
slide-34
SLIDE 34

What’s next?

  • FOIA requests to obtain:
  • Invoices
  • Technical and economic offers
  • Expand the database of companies
  • Monitor Government expenditures
  • Analyze the legal framework for the use of each tech
  • Involve activists from other countries
slide-35
SLIDE 35

Workshop @ Rights & Freedoms assembly

slide-36
SLIDE 36

Thank you!

  • Contacts

riccardo.coluccini@hermescenter.org 34C3 27th-30th December 2017