Two UK Broadband ISPs Trial New Internet Snooping System
ispreview.co.uk
ispreview.co.uk
[1] https://en.wikipedia.org/wiki/Tempora
[2] https://en.wikipedia.org/wiki/XKeyscore
[3] https://en.wikipedia.org/wiki/PRISM_(surveillance_program)
[4] https://en.wikipedia.org/wiki/Global_surveillance_disclosure...
We should absolutely keep it in the public eye lest it be relegated to acceptance.
Unfortunately unlike right to repair, this is a fight against a government which already has too much leverage on anyone and gaining more, making the fight progressively more difficult. It's clear that the gov't will use any power at it's disposal to fight against any such citizen initiative.
What was disappointing about this was that I remember the day this bill got passed. I remember refreshing BBC news repeatedly. Not one article was written about the snoopers charter within the days leading up to it (or the day itself). Now, back to the "bad" again... The list of people who can access these records, without a warrant is just utterly insane. It starts off legit-ish but honestly some of these are pretty hard to justify:
* Metropolitan police force
* City of London police force
* Police forces maintained under section 2 of the Police Act 1996
* Police Service of Scotland
* Police Service of Northern Ireland
* British Transport Police
* Ministry of Defence Police
* Royal Navy Police
* Royal Military Police
* Royal Air Force Police
* Security Service
* Secret Intelligence Service
* GCHQ
* Ministry of Defence
* Department of Health
* Home Office
* Ministry of Justice
* National Crime Agency
* HM Revenue & Customs
* Department for Transport
* Department for Work and Pensions
* NHS trusts and foundation trusts in England that provide ambulance services
* Common Services Agency for the Scottish Health Service
* Competition and Markets Authority
* Criminal Cases Review Commission
* Department for Communities in Northern Ireland
* Department for the Economy in Northern Ireland
* Department of Justice in Northern Ireland
* Financial Conduct Authority
* Fire and rescue authorities under the Fire and Rescue Services Act 2004
* Food Standards Agency
* Food Standards Scotland
* Gambling Commission
* Gangmasters and Labour Abuse Authority
* Health and Safety Executive
* Independent Police Complaints Commissioner
* Information Commissioner
* NHS Business Services Authority
* Northern Ireland Ambulance Service Health and Social Care Trust
* Northern Ireland Fire and Rescue Service Board
* Northern Ireland Health and Social Care Regional Business Services Organisation
* Office of Communications
* Office of the Police Ombudsman for Northern Ireland
* Police Investigations and Review Commissioner
* Scottish Ambulance Service Board
* Scottish Criminal Cases Review Commission
* Serious Fraud Office
* Welsh Ambulance Services National Health Service Trust
She probably envisioned the Home office doing mass denial of visas based on a lookup of applicant names with IP addresses deemed to be related to terrorist activity.
If it's that serious, have them ask an intelligence agency to investigate and report - as they do anyway today. They don't need direct access.
But yes, crazy that the Food Standards Agency always end up on this list. Must be someone who knows someone.
It's like asking why does the king of Saudi Arabia need to have the power to jail his subjects for no reason? Why does Putin need to have the right to jail or kill political opponents?
The UK doesn't give you right to remain silent (your silence will be used against you), you are compelled to bear witness against yourself (you must surrender passwords), and there are super-injunctions where you are gagged and not even allowed to discuss the legal issue with your lawyer.
This is the country that sent government thugs to force journalists to physically destroy their own laptops and hard drives.
With religious clergy overtly and explicitly being part of government power (in house of lords).
Hell, it's super recent that government power in house of lords stopped being inherited.
Imagine if the US senate was staffed solely by inherited power. Not just in the style of Bust Sr/GWB, but actually inherited. It's not the same, since the US senate is more powerful than the house of lords, but "it's complicated".
So your confusion here may come from the fact that you look at the UK as "like the US, but they talk weird", where it's a couple of step closer to "Like Saudi Arabia, but part of political power is elected".
Obviously Saudi Arabia is much further away along this spectrum, but I hope you see my point anyway. You seem to be saying "how can a free society do this?", where the answer is "because it's not that free, your assumption is flawed".
But there's a difference. The US is not living up to its ideals of equality and democracy, or even equal treatement under the law (e.g. lying to congress about not "collecting" data about US citizens). The UK is not even aspiriting to living up to those standards.
For example take torture. The best way to paint this is to "do horrible things for the protection of freedom and democracy". It's Realpolitik.
I'm still absolutely against torture, but it's a difference in kind to the UK putting religious clergy into positions of government power.
It's possible to defend torture as an instrumental goal to the ultimate goal of freedom & democracy. But the UK is not aiming for the same ultimate goal.
Similarly it's a difference in kind when Trump or Bolsanaro practice nepotism, compared to when some asshat gets a peerage in the UK.
We can list flaws all day, but the difference between the US and the UK here is that the US really does have an ideal of equality, freedom, and democracy, and the UK does not. The UK has not outgrown the Monarchy. And I'm not just talking about the royal family, but the whole aristocracy.
Another way to explain this: If you tell the story of Plebgate to an American, they won't fully get it. It's an insult, yes, but merely saying it's an insult is missing the point. It's bad because the class society is still there. People owning their homes often still literally pay a land tax to someone with a lord title. A land Lord.
It's a step on the spectrum to Saudi Arabia, where within its borders every grain of sand, and every person, is the personal property of the king.
If you take the US and add a permanent unelected head of state, add 20 dedicated priest posts to the senate, remove the first, second, fourth, and fifth amendment, and on top of that have a society that generally feels like this is a good idea, then you have a completely different country.
And it's not a country that even aspires to be as free or democratic as the US. And since the UK doesn't try, it also isn't.
Under Trump we saw that the US institutions were (mostly) holding. What's being "held" in the UK is not even a goal on the level of the US.
You point out many things. And probably those kinds of things the US has done more than Saudi Arabia has done. But nobody would therefore conclude that Saudi Arabia is more freedom&democracy than the US, would they?
https://news.sky.com/story/sarah-everard-baroness-who-sugges...
This idiot (who is clearly making a completely idiotic contraproductive and divisive point, since I'm charitable enough to not take her at face value) is there for life. She can't even be voted out. She's there for life.
But what can you expect from the Green Party? Are they actually competent at what they do in any country?
She claimed some massive disability following an operation, and the hospital's own investigations team followed her and filmed her jogging, drinking, etc.
It would have been using these same powers to do the surveillance work.
To the point that we agonized over and sabotaged contact tracing apps, which could have helped a lot in fighting COVID, over claims to privacy and government control.
Now this shit. Fuck it.
You either are or you’re not. So if my privacy is to be made sausages, chopped and sold at the market for FB, ad-tech and spooks, then give me at least some upside! As it is, we’re just bovines with ear tags...
Ask minority groups in China like Christians wanting to build a church or Uyghurs how well the model works.
https://www.independent.co.uk/news/uk/politics/conservative-...
(+) however, you need an ID card if you're an immigrant, or want to open a bank account, rent or buy a house, or have a job.
It’s not even amazingly secure. A few years ago a TV news investigator managed to get a provisional driving license in the name of the blind then-Home Secretary, David Blunkett.
- It gives justification to obscene spending on the military
- It justifies imperialist actions which violates international law
- It blinds the local populacy with "patriotism"
- It allows to create draconian local policies which would not be accepted in "peaceful times"
- It protects the government because any local or foreign criticism can be discarded by using _whataboutism_ about the enemy du jour.
Oldest trick in the book.
The real governors operate from their country clubs and banquettes. No proper kingmaker would be so obvious as to grab headlines or make public announcements. Where is the personal enrichment in that?
A simple rule of thumb: if you know who they are, they're not the people in control.
We always ask for total transparency from our governments, yet if they ask even a little of it from us, it's bad. Why? Also, in our society, wanting too much of anything makes you a weirdo and an outcast. Why has advocating for total privacy become normal(ized)?
Since time immemorial governments have used the seal of secrecy to hide their daily embarrasments, failures, and corruption.
UK government has ordered a report into whether Sauidi is promoting Jihadism in Uk, and then decraled it secret. Same for Russia report. Recently the government has been sued for handing out multi-billion contracts to pals without challenge, and obviously they immediately reached out for the secrets act.
We are sensitive about private data, because if you believe in a right to remain silent, well, now you can't stay silent.
Evem if you are innocent, spurrious charges can ruin you financially.
Covid killed what, 0.1% of the population at most, and the average age of death was over 80. Stalin, Mao and Pol Pot killed well over an order of magnitude more than that.
Unconstrained spread would’ve been a bit over one order of magnitude worse, even if that hypothetical somehow managed to avoid overwhelming the NHS with exponential growth making half of all cases happen in the final doubling period.
> "police obtained the fingerprints of every male aged 16 and over who had been in the vicinity of Blackburn on the night of 14-15 May to compare their fingerprints to those left at the crime scene by the perpetrator. ... a milestone in the history of forensic science; this being the first time a mass fingerprinting exercise had been implemented to solve a murder in the United Kingdom."
> Just weeks prior to the execution of Peter Griffiths, all the fingerprint records obtained from individuals who had been in the vicinity of Blackburn between 14 and 15 May were publicly destroyed [emphasis my own] in a mass pulping exercise at a local papermill. Several local journalists were present to record the destruction of the records.
Why was society so vigilant about giving data that might be abused to authorities, and now, when the data is so much more vast and powerful, no one seems to care?
[0] https://en.wikipedia.org/wiki/Murder_of_June_Anne_Devaney
It's easier for people to connect with the reason _for_ doing it. Stop the terrorists, it may happen to you, etc. But the other way round is harder because it's invisible and you can live your life without caring. Even the warnings fall on deaf ears because "come on, you're being irrational" or "meh, doesn't affect me".
There is a good chance that if everyone had to pay their income tax manually, the tax burden would shift quite a bit.
Isn't this basically the US model though? And ...
> the tax burden would shift quite a bit.
Hasn't really happened for them (unless you're in the 1%, obvs.)
It is far easier and more enjoyable to believe that Britain is peace- and freedom-loving, which is the continual message from the tabloids, than to keep track of these developments and their implications.
Remember that most computer users are hazy at best about whether `natwest.my-account.co.uk` is a phishing scam. There isn't the necessary baseline of informed opinion to have a reasonable discussion about this kind of snooping.
It's easier to stand against something when there is something stand against - The end of the cold war meant the west didn't have a "At least we don't do <insert Stasi tactics">" to oppose itself to.
Now we routinely do things that would have made the Stasi wet themselves in excitement.
I see no reason why bodies like this can have access to sensitive data about individuals without requiring a warrant.
https://www.google.com/amp/s/amp.theguardian.com/world/2020/...
The event was polarising and you had your anti-rioter camp and anti-police camp. It should not be hard to see how there would have been direct chains of command on either side which could facilitate data misuse.
If you want a hard example, look at Hong Kong: protestors getting arrested via all manner of tracking, but also police's family being doxxed by protestors.
Also see Belarus and now Myanmar.
Things are all fine and dandy, until they aren't.
This is why you need checks and balances.
I'm very unlikely speak up enough to become a target, but the next Dr. King, the next Snowden, the opponents of the next Trump or next J. Edgar Hoover are going to have big problems if privacy continues on its present course.
Privacy isn't currently a big problem for the average citizen in our society, but it's very important fat-tail event insurance to have in the future. By the time you realize you need to worry about privacy, it's probably already too late. History has shown liberal democracies are at best metastable (all governments tending toward authoritarianism if not actively maintained) and whistleblowers are an important stabilizing force.
[0] https://www.insidermonkey.com/blog/7-easiest-felonies-to-com...
[1] http://thinkaboutnow.com/2016/07/average-americans-commit-3-...
It is very different to the newer methods where you don't necessarily know what is being collected or what it is being used for.
I saw discussed online the other day some alarmist comments about the government wanting to know "what your bedroom activities are" in response to receiving the census letter in the post and seeing a mention of sexuality. Putting aside the ignorance of conflating sex with sexuality, I thought it was interesting how hard this problem is for most people to deal with.
That same person no doubt uses multiple mainstream social media sites, has browsers full of tracking cookies, uses loyalty cards and has their data collected, sold and used for all sorts of things. But it's the letter through the front door, for, of all things, a function of society that is over 200 years old, that causes alarm.
Few seem to care
2. Further degrades the privacy of the general public: Check
Just another day in internet legislation.
There are smart people working for them, why do they keep bringing in this stuff that doesn't actually have an effect against the baddies?
Is it possible that they are self-sabotaging because they actually realize they don't want to live in the world they are rushing headlong towards? Or is that giving them too much credit?
Great when you know where the microphone is but can’t leave the area for a private chat; not so useful when the microphone is any nearby substance that reflects some wavelength and which vibrates enough when exposed to sound that the reflected light can be decoded.
Had the government gone all-in trying to stop piracy, or drugs, back in the day they'd have kicked off this privacy awareness years ago, when they were much less ready. Now they've had a chance to gear up and get behind the terrorist attacks as they happen with stories about the chat clients they use, or how their iphones kept police from reading their texts, etc. With a little more of this by the time they do crack down not only will the tech be much more refined but there'll be a properly trained group of people who defend the censorship on safety, or moral, or whatever grounds, to keep the heat away from those who made the decisions.
Police powers are routinely shown to be useful in actual criminal investigations.
For you and me, yes. For Joe Public no. I think it's fair for people to expect a modicum of privacy inside their own home.
Is constant surveillance of a nation's citizens OK? I don't think so.
If the shit hits the fan, you want to know the political stance of all the citizens, and who the troublemakers will be, if something large is happening. ...and for that, it's enough to know which political sites they're visiting, even if you don't know the content itself.
Very few of the capitol-riot criminals (because I totally agree that they committed a bunch of crimes, and are absolutely criminals) were armed, even with the makeshift weapons seen in the previous year's street riots. And they weren't going to hurt anyone because the capitol police and the secret service were preparing the evacuation while Trump was still talking blocks away. Not because they legitimately feared a coup, but because it's just general safety protocol to not sit around and wait for a demonstration or a riot to walk up to you.
Following that you saw the Democrats care as hard as they could. Some are still caring now. But the message didn't resonate with anyone other than their base - it cost them moderate democrat support and hardened moderate republicans again them. They largely stopped because the voters said "It's a non-issue, we don't believe it as told". (I present this as a self-evident fact, despite having seen poles supporting it, because we all know nobody stops beating on an effective drum.)
Also this is done in america for commercial reasons to sell to adtech, like t-mobile recently or comcast for quite a while and probably all the others.
How very democratic and transparent of them
Kinda in two minds about this...tempted to implement a VPN to a VPS but not super keen on killing my gbps speeds.
Cryptography is fast and cheap enough to handle SSD encryption — it’s plenty fast enough to handle your network traffic too.
The only downside is the packet overhead. Can you survive going from 1500 down to 1420 bytes per packet? (Yes.)
You've gone from your ISP being the point at which interception can happen to your VPS provider and/or their ISP being the point at which interception can happen.
But yeah, you're swapping your ISP and your government for your VPN and maybe their government.
If you're a dissident, you're probably fine. If you're a pirate and the VPN isn't in certain countries, you're probably fine. If it's something both countries disagree with, you're in trouble.
Know your personal risks.
It’s not a bad idea, but you’ll need something more sophisticated.
So all you have to do to avoid surveillance is to make a bunch of connections so the system gets overwhelmed and ignores you?
Terrorists (as well as a CIA director) have for years used a simple trick to communicate without leaving suspicious looking metadata: https://www.washingtonpost.com/news/worldviews/wp/2012/11/12...
I find this type of legislation works like DVD copy protection: the innocent and non tech savvy will be disproportionately affected and it won't do anything to deter those with sufficient knowledge.
I calculate with 50% reduction from compression (After the required back-ups to comply with the law the number will be much worse for the ISP). That somone on VM 500Mbits using less than 10% of their connection for this could increase their log size by 200GB per day or 73TB over the 12 months.
And the government would just ignore them because of lobbying
You know, because of the... unpleasantness.
But no worries, you go ahead with what you're doing, UK. Good job. Maybe IBM can offer some technical experience in this area.
Regular healthy frogs just jump out of the pan when it gets uncomfortable.
It's not like governments haven't tried to backdoor computing devices via the legal route before.
If you connect to IP xxx.xxx.xxx.xxx a few milliseconds after looking up the IP for badsite.com then you're probably connecting to badsite.com. Then they can get a warrant for badsite.com's web server logs, or cloudflares logs if badsite.com is using it...
Then you ask ISP to lookup subscriber info (via account id) based on that.
You can do that already in some EU countries, just by lodging a complaint with police as a service provider (say you have an e-shop) for example. ISPs have to store these logs for some months.
However, you don't want that: you want a subject access request. This covers data from private sector companies too. Not responding is illegal and you can take them to the Information Commissioner and eventually the Information Tribunal.
This is the information commissioner's office's guide to making a request:
https://ico.org.uk/your-data-matters/your-right-to-get-copie...
Source: trained as a journalist and am quite good at media law stuff. Not a lawyer, but have had substantial training and think this is worth a punt.
Same as getting a request from the NCA asking for details on an individual, can't disclose that you received one.
Because the real link has too many redirects behind my pihole. ;-)
* https://www.wired.co.uk/article/internet-connection-records-...
But it would have to be outside the UK to avoid the same fate, since you are in the UK, this makes it harder to trust the service provider and their security services not to find your "foreign" traffic very interesting and not subject to their laws protecting their own citizens' data.
A lot of "we don't keep logs" vpn providers were found to very much keep logs of all your traffic. Some of the people in the VPN business are the last ones you would want to see all your traffic.
Tor might work, or at least change the threat model, but it cannot be used as a high bandwidth proxy.
Secondly, I really recommend Andrews & Arnolds [1] as an ISP if you can only get ADSL. I don't use them at home because I need the bandwidth afforded by cable -- for which there is one supplier in my town, Virgin (bah!) -- but AAISP supply my mother's home and are genuinely amazing. She had some issues due to BT and they let me raise an issue via IRC; the few times I have had to get in touch with them it's been an absolute pleasure; they disclose their support as "xkcd/806 compliant". Their owner also is a strong campaigner for digital privacy.
[1]
I'm currently with a BT reseller and am thoroughly disappointed with the service so looking to move.
You can pay by cash or cryptocurrencies, you don't need to provide them with your email address, headquartered in the EU, Mozilla's VPN is a partnership with them, open source clients with reproducible builds, WireGuard support.
Latency from the UK to (say) Germany or the Netherlands isn't too bad either.
Data you send out over the internet unencrypted doesn't have an expectation of privacy. Yet lots of people assume stuff like this is private.
The only way to close the gap is to publish the data so everyone can see exactly what they and others are inadvertently telling the world.
It listed a bunch of stuff that I never downloaded though...
So for one thing, using the data collected for anything else or providing it to anyone else would be an immediate and severe breach of both data protection and security laws. That would have serious consequences for the ISP doing it.
For another, it would bring that monitoring system into disrepute and damage the credibility of a government that wants to be seen as strong on security. As a previous government learned to its cost when it tried to introduce personal ID cards here, even voters in the UK (who traditionally have a majority in favour of tough policing and security measures) still have lines they aren't willing to cross.
In short, while there is plenty of scope to debate whether a system like this is necessary or justified as a security measure, it's highly unlikely that it will also be turned into the kind of sell-all-your-data exercise that might be a concern in some other parts of the world.
> Today 6 October 2020, the Court of Justice of the European Union (CJEU) delivered its verdict on four data retention cases in France, Belgium and the UK, in the context of these countries surveillance programmes. The European Court of Justice ruled that the surveillance laws of France, Belgium, and the United Kingdom fail to safeguard fundamental rights and freedoms. The CJEU rules that general and indiscriminate data retention is allowed under EU law when the State faces a “serious threat to national security” that is present or foreseeable, but only under the scrutiny of courts or independent administrative bodies and when this is done only temporarily. Finally, the CJEU specifies that national courts cannot use information obtained from bulk retention regimes against suspects in criminal proceedings.
> “Today’s judgement is a massive blow to existing laws in France, UK and Belgium and to other current data retention practices by Member States”, said Diego Naranjo, Head of Policy at European Digital Rights (EDRi). “With this judgement, the CJEU essentially rules that, States can only engage in general and indiscriminate data retention when they face a “serious threat to national security” that is present or foreseeable, when subject to a court or administrative body review. The CJEU has put a stop to current illegal practices and disregards practices that are not under a national court’s scrutiny in the name of national security or in the fight against “terrorism””, he added.
> Data retention practices entail the storage of traffic and location data (metadata) by telecommunications companies for an extended period of time in order to ensure the availability of such data for law enforcement purposes. As electronic communications technologies are increasingly used in the course of criminal activity, electronic communications data can play an important role in criminal investigations. Mandating the bulk retention of this data, however, poses serious risks to the right to privacy and communications freedoms.
https://edri.org/our-work/press-release-the-data-retention-r...
This was October 2020. The CJEU still held jurisdiction over the U.K court during the transition period after brexit (31 jan 2020 - 1 jan 2021) per the withdrawal agreement.
> The Court of Justice of the European Union continues to have jurisdiction over the United Kingdom during the transition period. This also applies to the interpretation and implementation of the Withdrawal Agreement.
https://ec.europa.eu/commission/presscorner/detail/en/qanda_...
The U.K. is free to do whatever with little to no recourse for U.K. citizens beyond appeal to their own Supreme Court to challenge the constitutionality of data retention / surveillance laws.
That said, the EU is not without it's own particular faults and shortcomings, but there are times when it does pay off to be able to challenge national legislation and policy making when it threatens human rights and freedoms such as they are purported to be upheld on the West-European continent.
As far as "governments" go, across the EU, the separation of powers is a thing. If data retention laws are enacted, that's a reflection of the prevailing winds / power balances between the legislative, executive and judicial bodies.
Of course, a computer trying to hide like that would also raise a red flag.
https://www.youtube.com/watch?v=QwiUVUJmGjs
https://www.youtube.com/watch?v=oYNXVgYhPOc
And then lying about lying about it.
Diabolical!
I'm not sure if the "URL" column in a table in the article is supposed to contain URLs. In the example it only has domain names. I don't think full URLs can be obtained from SSL/TLS connections.
When your browser tries to display https://www.example.com/some/directory?someParameter=Value#A... ::
#Appendix isn't sent anywhere, your browser only needs that locally
The path /some/directory and the query ?someParameter=Value are encrypted using keys which should be known only to the browser and server, today in most cases the keys are random and will be forgotten soon afterwards
The scheme https is implied by your browser's connection to an HTTPS web server. Modern browsers also explicitly transmit ALPN requesting h2 (HTTP/2) if available in their ClientHello, this will not be encrypted today.
The server name www.example.com is somewhat implied by your browser's connection to an IP address for this server. Any browser that still works in 2021 explicitly transmits the SNI requesting this name, so as to enable Virtual Hosting which offers multiple distinct web servers on a single IP address. SNI is also in the ClientHello and thus not encrypted.
The full server name will also be looked up by the browser in DNS. In many cases this means an unencrypted UDP query for that name, and this may in turn trigger a query for example.com, and in theory at least, com itself because DNS is hierarchical and the hierarchy may need to be discovered.
You can secure some of this last step by using any of the DPRIVE technologies, including DNS over HTTPS (DoH) or DNS over TLS (DoT) and some day DNS over QUIC (DoQ). Eventually DPRIVE might also secure the recursion, but even today if snoopers can see that Google's DNS service asked about example.com that does not pin down who wanted them to do that, let alone why.
If you've secured DNS, this will pave the way for ECH, a forthcoming standard to Encrypt the ClientHello. It is likely that popular browsers will begin just doing ECH (silently enabling it for at least some users) in the next year or so, but right now it isn't quite finished.
Even with an Encrypted ClientHello, the IP gives away roughly who you connected to. The Internet Archive, the Fox News web site, and Wikipedia have no interest in sharing IP addresses with Porn Hub so as to throw off snoopers who are wondering roughly what you're doing. On the other hand, Encrypted ClientHello would hide whether you're looking at the German Wiktionary or the English Wikipedia page about the Hitler Youth, and it would mean there was no longer a privacy advantage to a site using directory prefixes to categorise things versus using server names.
Here is a post about the IP address part:
"What can you learn from an IP?" https://irtf.org/anrw/2019/slides-anrw19-final44.pdf
https://blog.apnic.net/2019/08/23/what-can-you-learn-from-an...
https://www.eff.org/deeplinks/2013/08/dea-and-nsa-team-intel...
Your Article 8 protections only matter as much as they're enforced and respected by the government. If Article 8 was the defense you imagine it to be, then the Investigatory Powers Bill wouldn't have passed in the first place.
It's very hard for me to square the text of Article 8 with a bill that allows warrantless access of every single IP address you visit. If that's consistent with the government's interpretation of the text, then it doesn't sound to me like the text is doing its job.
Like shooting fish in a barrel; total surveillance state achieved.
He's a terrible example to cite if you want to support the actual left.
Their own citizens are an entirely different ballpark, as you might say.
My understanding is that they originally used film, which had to be retrieved, so trying to burn it down with a well placed tyre had a chance of avoiding a fine.
When you track and log everything - for up to a year - that's not snooping.
That's surveillance.
Using candy-coated language for such things is as (almost as) harmful as the acts themselves.
'Snooping' isn't candy-coated language in British English, and this is a British article. It's just another way to say surveillance. You're imagining a meaning that isn't there.
Snooping describes this perfectly.
Surveillance is a whole other level.
When your ISP is logging your every move for a year. And making it available to the government. Regardless of country, that's not snooping. It's surveillance.
The fact that some of you accept snooping as being legitimate description simply proves my point about candy-coating it.
But that's just not true in British English.
I don't know anything about you but your comments imply you're not British? If so, you'll just have to accept you don't know the meaning of these words in written British English.
You're mistaken. I don't know what else to tell you?
Your school nemesis snoops on what you're up to to try to embarrass or one-up you in some way.
Surveillance can be good or bad. Snooping is always bad.
This is a couple ISPs in bed with the government. Under what conditions is that good surveillance?