CanadaCanada's Cyberspy Agency Accused of Illegally Targeting Citizen

Canada’s Cyberspy Agency Accused of Illegally Targeting Citizen

Key Takeaways:

  • The spy watchdog report highlights the tension between CSIS’s mandate to collect and share information about Canadians and CSE’s prohibition against directing its activities at Canadians.
  • The report reveals that CSE analyzed information from a Canadian’s device, which was obtained by CSIS, in order to gather foreign intelligence information.
  • The watchdog concluded that CSE’s actions were not justified under the exception for incidental collection and recommended that CSE update its policies to prohibit the analysis of information relating to Canadians.
  • The report also recommends that CSIS stop making requests to CSE for action or further information in relation to Canadians or people in Canada through lead information messages.
  • The federal response to the review agrees with some of the recommendations, but CSIS disagrees with the recommendation to stop making requests to CSE.

Introduction to the Spy Watchdog Report
The spy watchdog report, released in November 2024, highlights the tension between the Canadian Security Intelligence Service (CSIS) and the Communications Security Establishment (CSE) regarding their respective mandates and legal frameworks. The report, which was made public in response to an Access to Information request, reveals that CSIS uses lead information messages to share details with CSE that may be relevant for foreign intelligence purposes. In one instance, CSIS sent CSE information concerning the contents of a Canadian’s device, which was obtained through a warrant. However, the CSE’s analysis of this information raised concerns about the agency’s actions being directed at a Canadian, which is prohibited under its core mandate.

The CSE’s Actions and the Exception for Incidental Collection
The CSE analyzed the information from the Canadian’s device with the intent to obtain foreign intelligence information. However, the spy watchdog concluded that this action was not justified under the exception for incidental collection, which allows the CSE to acquire and use Canadian information if it is collected incidentally, meaning it was not deliberately sought and its collection was not directed at a Canadian or a person in Canada. The report states that the CSE’s actions were directed at a Canadian, and therefore, the exception did not apply. The watchdog recommended that CSE update its policies to prohibit the analysis of information relating to a Canadian or person in Canada for the purposes of identifying foreign intelligence.

Federal Response to the Review
In response to the review, the CSE agreed with the recommendation to update its policies and stated that it would adjust policy training material for operational analysts to address any ambiguity about which actions are permitted. The CSE emphasized the importance of upholding its enabling legislation and considers lawfulness to be a core corporate value. However, CSIS disagreed with the recommendation to stop making requests to CSE for action or further information in relation to Canadians or people in Canada through lead information messages. CSIS argued that a complete cessation of such requests would have a negative impact on its ability to investigate threats to Canada’s national security.

Importance of Collaboration and Governance
The spy watchdog emphasized the importance of effective collaboration between CSIS and CSE, which are core pillars of the security and intelligence community. The report states that their collaboration is critical to protecting national security and advancing Canada’s interests. However, the report also notes that their differing mandates and legal frameworks require careful planning and the establishment of guardrails to ensure that their actions are lawful and respectful of Canadians’ rights. The report recommends that structures for governance, clear demarcation of roles and responsibilities, and information-sharing must be paramount in each effort involving the two spy agencies.

Conclusion and Recommendations
The spy watchdog report highlights the need for CSIS and CSE to carefully plan their collaboration and establish clear guidelines to ensure that their actions are lawful and respectful of Canadians’ rights. The report’s recommendations, including the update of CSE’s policies and the cessation of CSIS’s requests to CSE for action or further information in relation to Canadians, aim to address the tension between the two agencies’ mandates and prevent similar incidents in the future. The federal response to the review demonstrates a commitment to upholding the law and respecting Canadians’ rights, but also highlights the challenges of balancing national security with individual rights and freedoms. Ultimately, the report emphasizes the importance of transparency, accountability, and effective governance in the security and intelligence community.

- Advertisement -spot_img

More From UrbanEdge

Queensland Flood Alerts: Storms to End Extreme Heatwave

Queensland Flood Alerts: Storms to End Extreme Heatwave Projected Rainfall...

Queensland Flood Warning, Alerts & Weekend Forecast

Queensland braces for heavy rain and potential flooding as a low-pressure trough stalls over the state. With predicted rainfall of 100-300mm through Sunday, authorities urge preparedness. SE regions may face disruptions, extending the alert to northeast New South Wales. Prepare emergency kits and plans now...

Brisbane Flood Risk: Storms Predicted to End Heatwave

Brisbane residents brace for storms set to end the relentless heatwave. Expect heavy rainfall, with up to 150mm in some areas, increasing flood risks, especially in low-lying regions. Flash floods are possible, and temperatures could drop by 10 degrees. Prepare emergency kits and stay updated on weather developments...

Apple Zero-Day Fix: Sophisticated Attack Solution & Patch

Apple has urgently patched two zero-day vulnerabilities in WebKit used in highly complex attacks targeting specific individuals. Security experts emphasize immediate updates to protect against these threats, linked to advanced actors, possibly nation-states. The overlapping nature of these exploits suggests a coordinated effort...

Windows 11 Notepad Vulnerability: Silent File Execution via Markdown Links

A critical vulnerability in Windows 11 Notepad's Markdown feature allows remote code execution via malicious links, posing a serious risk to users. Microsoft has issued a patch, but immediate updates and extra defenses are essential to prevent exploitation and ensure secure computing environments...

Microsoft Store Outlook Add-in Hijack Steals 4,000 Accounts

A sophisticated attack on Microsoft Outlook users has emerged, compromising over 4,000 accounts through the hijacked AgreeTo add-in. Hackers exploited an abandoned domain to steal Microsoft credentials directly from the Marketplace, bypassing usual security measures and impacting both user data and financial information...

CISA Mandate: Upgrade & Identify Unsupported Edge Devices for Agencies

CISA mandates federal agencies to replace unsupported edge devices prone to advanced threat actor exploits. Agencies have three months to identify, 12 months to begin upgrades, and 18 months for full remediation to protect network perimeters from cyber threats. SecureEdge Solutions offers assistance in securing network vulnerabilities...

Coinbase Insider Breach: Leaked Support Tool Screenshots

In May 2025, Coinbase experienced a sophisticated insider breach affecting 70,000 users. Hackers bribed support agents to leak sensitive data, resulting in over $2 million in theft through targeted scams. Coinbase responded by refusing ransom, launching a bounty program, and refunding victims...

Sector Impact Overview: Architecting the AI Integration Era

Sector Impact Overview: Architecting the AI Integration Era 1. Introduction:...
- Advertisement -spot_img