PDA

View Full Version : Job Seekers Leak NSA Program Names on LinkedIn




tangent4ronpaul
06-20-2013, 08:16 PM
Want to know the names of some of the NSA’s classified intelligence programs? Just scan LinkedIn.
http://news.clearancejobs.com/2013/06/19/job-seekers-leak-nsa-program-names-on-linkedin/

Want to know the names of some of the NSA’s classified intelligence programs? Just scan LinkedIn.

A technologist with the American Civil Liberties Union recently posted that the same classified program names recently published by media outlets including the Washington Post can also be found on some professionals’ public social networking profiles. Some profiles list dozens of sensitive storage and analysis systems, including things that appear to be project names for equally sensitive work – all listed publicly on searchable social networking sites.

What’s the problem, you ask? Well, even if program names are common knowledge (which many are, even if the program is classified), the NSA’s own resume guidelines specifically note that program and project names for classified work SHOULD NOT be used in a resume. Can you discuss the work you do? Of course, in a sanitized nature (including referencing skills, unclassified technology, etc). But when in doubt, avoid specifics, especially on unsecure profiles.

In the example referenced above, the use of a more common interagency programs such as MARINA may not be a problem, but in an era of spear phishing, data mining and rampant leaks, you have to ask if LinkedIn is the best place to share a detailed overview of the work you do, especially a detailed listing of programs.


Christopher Soghoian Christopher Soghoian ‏@csoghoian

Linkedin profiles of people in Maryland that mention MARINA & NUCLEON have some fun other codenames like TRAFFICTHIEF
http://t.co/7DQ5uaJ1BP

Sortica ‏@Sorti_ca 15 Jun

@csoghoian see also two resumes from NSA analysts which mention NUCLEON here https://t.co/MqRIQOwZC0 & here https://t.co/OuKYn8N9W8

-t