palin_email.png

It was being reported generally yesterday (BBC News, New York Times) that hackers, a group called Anonymous, broke in to Governor Sarah Palin's Yahoo email accounts and copied some material which they then made public.

It doesn't seem as though the material taken will in any way compromise or even embarrass the Governor — except in so far as it reveals her injudicious use of a large public email system in connection with government and important personal matters. It's unlikely that any of us will suddenly find ourselves nominated for vice-president of a country, even a small one, and therefore the object of a hacker's attention; but we do deal with confidential matters of course and this should be yet another warning to us all to stay away from Hotmail or Gmail etc. when dealing with sensitive material. Or, learn about encryption.

"Anonymous" sent the stolen material to Wikileaks, where you can see it even now.

Simon Fodden is the founder of Slaw. He taught law at Osgoode Hall Law School for more than 30 years before he retired to focus on writing, publishing, and IT and law.
[click on the author's name for more information]

up

5 Comments on “The Palin Email Break-In”

  1. Really, its not just web-based email like gmail/hotmail that is at risk.

    All email servers, even private, internal firm servers are vulnerable. We are fortunate that we haven't seen this exploited, but be assured it is only a matter of time before the highly sensitive and valuable data sitting on the email servers of some of our most respected law firms is compromised.

    Unfortunately, it's probably going to take some serious incident before people recognize how vulnerable their privileged data is and law firms implement encryption policies.

  2. …it is only a matter of time before the highly sensitive and valuable data sitting on the email servers of some of our most respected law firms is compromised.

    Especially if there's no realistic possibility of prosecution.

  3. There is a helpful discussion here of what we can all learn from this incident, as well as links to the mechanics of what actually happened on the hack.

    Chief lesson is that Wikipedia and online bios may enable a hacker to answer the security validation questions. You can't Google my mother's birthname, but I know it's accessible in any university library. So much for that sort of security.

    Roll on biometrics

  4. John G says:

    The incident does not show that law firms' (or other serious) emiail systems are particularly vulnerable. It does show that one should not choose security questions (usable to reset passwords) that are searchable by others (or already known to others that you shouldn't trust).

    As to the realistic chance of prosecution, I suspect that what the hacker did would have violated the Criminal Code of Canada if done here. The article cited by Omar deals with a technical interpretation of a relevant US statute – and the US Dept of Justice does not like the 9th circuit interpretation because it puts much more email off limits to law enforcement seizure or tapping.

    Yes, it would be ironic, or maybe morally satisfactory, if the interpretation intended to give law enforcers a freer hand in investigating people's emails prevented them from prosecuting the breach of someone they wanted to protect.

    But lawyers figure out the way through such contradictions all the time…

  5. There's a new chapter in the Pallin break-in.

    Bill O'Reilly, yours and my favorite Fox news host, debated with co-anchor and lawyer, Megyn Kelly, over whether the 1st Amendment would protect media organizations that forwarded the contents of Pallin's email.

    Kelly said,

    They think it's newsworthy, even though the information was absolutely, illegally obtained.

    Of course O'Reilly responded with is trademark,

    That's crazy.

    In retaliation, a hacker has claimed to hack O'Reilly's email. Proof of the hack was provided through Wikileaks.

SlawTips      

SlawTips Top 10 Financial Errors: #9 Avoid Having a Written Office-Sharing or Partnership Agreement
Thursday, February 9

Max Amsterdam once said: “Business is the art of extracting money from another man’s pocket without resorting to violence.” The purpose of having a written agreement between all … »»

Practice

SlawTips Open Access Journals
Wednesday, February 8

There is good leagal content that doesn’t necessarily come in the neat packages that we usually look in.  Though our commercial legal database subscriptions have linked, vetted, edited, and easily. […] »»

Research

SlawTips Use join.me to Get on the Same Page Across the Web
Wednesday, February 8

When you need to collaborate on a document displayed on your screen, it’s great to have a colleague from down the hall come into your office and look over your … »»

Technology

noted on Slaw    

MLB Selected Case Summaries    

These summaries of selected recent cases are provided each week to Slaw by Maritime Law Book.
More information.

  • Banks and Banking - Liability of banks to third parties - Negligence - General

    The plaintiffs were the former shareholders of a company that failed. They sued the defendant bank alleging that it breached its contract with the company and the plaintiffs and breached a duty ...

  • Actions - Cause of action - General principles - New or extended cause of action - Opening of floodgates

    The plaintiff and defendant worked at different branches of the same bank. The defendant’s common-law husband was the plaintiff’s ex-husband. Over a four year period, the defendant ...

  • Aliens - Definitions and general principles - Immigration consultants

    The Canadian Society of Immigration Consultants (CSIC) had been designated as the sole regulatory body of immigration consultants in Canada from 2004 until June 2011. On June 30, 2011, Bill C-35 came into force, which significantly amended ...

  • Criminal Law - Sexual offences, public morals and disorderly conduct - Public morals - Obscenity - Possession of child pornography

    The accused was convicted of making child pornography available and two counts of possession of child pornography (see [2010] Sask.R. Uned. 197). Subsequently, he was sentenced ...

  • Criminal Law - Procedure - Charge or directions - Jury or judge alone - Directions regarding pleas or evidence of witnesses, co-accused and accomplices

    Rowe was convicted by a jury of five offences. He appealed.

    The Ontario Court of Appeal allowed ...

  • Narcotic Control - Offences - Possession - General

    The accused wished to access marijuana for medicinal purposes but did not have an authorization to possess marijuana issued under the Marihuana Medical Access Regulations. He was notified that a package of marihuana addressed to him had been ...

  • Narcotic Control - General - Legislation - Exemptions - Medicinal marijuana

    McCrady, who had an application pending under the Marihuana Medical Access Regulations (MMAR) to possess and grow marijuana, was convicted of possession of marijuana (Controlled Drugs and Substances Act (CDSA), s. 4(1)). Hearn pleaded guilty ...

  • Criminal Law - Sentence - Trafficking in hashish or marijuana (incl. possession for purposes of trafficking)

    The accused pleaded guilty to one count of possession of marijuana for the purpose of trafficking. He was sentenced to 30 days’ imprisonment to be served intermittently and 11 months’ ...

  • Municipal Law - Powers of municipalities - Particular powers - Imposition and collection of taxes or fees 

    Catalyst Paper Corp. operated a paper mill in the District of North Cowichan. Catalyst objected to the tax rate that it paid compared to residential ratepayers. In 2009, the ...


law foundation icon

The re-development
of Slaw is assisted by
a grant from the
Law Foundation of Ontario

TalkLaw/ParLoi    

This is a listing of a few upcoming events in Canada of interest to lawyers, law students, legal librarians, and others involved in the practice of law.

Clicking on any event in the list below will give you access to more information and to links allowing you to see the full entry and to add the event to your own calendar.

Click this link for a fuller version of the TalkLaw/ParLoi calendar of events and for instructions as to how to add events and calendars to your own calendar.

Switch to our mobile site