April 16, 2008 3:30 PM PDT

Senator: Let's monitor P2P for illegal files

WASHINGTON--A prominent Senate Democrat on Wednesday said federal and local police should use custom software to monitor peer-to-peer networks for illegal activity, and he wants to spend $1 billion in tax dollars to help make that happen.

Biden

Sen. Joe Biden (D-Del.)

(Credit: Biden.senate.gov)

At an afternoon Senate Judiciary subcommittee hearing about child exploitation on the Internet, Sen. Joe Biden (D-Del.) said he was under the impression it's "pretty easy to pick out the person engaged in either transmitting or downloading violent scenes of rape, molestation" simply by looking at file names. He urged use of those techniques by investigators to help nab the most egregious offenders.

The software, dubbed "Operation Fairplay," was developed two years ago by Special Agent Flint Waters in the Wyoming Attorney General's Office, who, by Biden's description, is considered an expert in the field. The application is currently being used by all of the regional Internet Crimes Against Children (ICAC) task forces nationwide and internationally, Waters told the panel.

Waters describes the system as a "comprehensive computer infrastructure," housed in Wyoming, that grants law enforcement officers a "big picture" of what sort of child pornography file transfers are going on across the country. It's able to help investigators conduct undercover operations involving peer-to-peer file-sharing applications, chat rooms, Web sites, and mobile telephones, Waters said.

No one's trying to demonize those technologies, Waters said. "Blaming this problem on peer-to-peer innovation is like blaming the interstate highway system when someone uses it to transport drugs," he said.

But in 2008 alone, investigators using Fairplay have "seen" more than 1,400 IP addresses tied to swapping child pornography files on at least 100 different occasions, Waters said. He didn't say how he identified what he viewed as child pornography, which can include photographs of fully-clothed teenagers taken with their parents' consent. In addition, as critiques of a 1995 law review article pointed out, trying to guess the contents of a file based on its name can be a problematic process.

Based on Waters' statements to the committee, the system appears to work like this: Investigators log onto peer-to-peer file-sharing networks as any other person would and search for files containing certain keywords that are likely to indicate child pornography is involved. Then they download the files--frequently videos, sometimes as long as 20 to 30 minutes, with names like "children kiddy underage illegal.mpg" and much more obscene--to their own machines. They're able to use the Fairplay software to obtain the IP address of the file's sender and, in some cases, display its geographic location in map form.

Once armed with an IP address and date and time of the download, investigators can subpoena the Internet service provider for more information, such as name and address of the subscriber who was assigned it at that moment. "It's not necessarily the suspect but it tells us the physical location to start," Waters said. (He didn't say whether any wiretaps were conducted to monitor ongoing file swapping.)

"We can get our arms around it, the worst aspect of it, if we provide the resources."
--Sen. Joe Biden

Investigators use the IP addresses to keep track of offenders on a "daily" basis, Waters told CNET News.com during a break at the hearing. But in about half its cases, for purposes of longer-term tracking, the software captures "unique serial numbers" from the person's computer and keeps a tally of how many allegedly illicit files that particular user is trading.

Waters provided the committee with a chart that said, for example, law enforcement had "seen" one user in Pennsylvania exchanging those files 2,792 times, one New Jersey user swapping them 1,182 times, and so on. It wasn't clear whether the so-called serial number corresponded to IP address, P2P username, or something else, and Waters wouldn't elaborate.

"It's unique to the computer, that's as far as I'll go," Waters added, saying he didn't want to divulge more details that suspects could use to circumvent detection. "We're able to get it when they're transferring child pornography."

So far, investigators have recorded more than 642,000 "unique serial numbers" that can be traced to the United States and another 650,000 of them that cannot be traced to a particular country, with the number of unique serial numbers rising steadily each month since "widespread capturing" of the details began in October 2005.

In addition to tracking the senders of the files, investigators use Fairplay to track the files themselves through their hash values or digital signatures. In one case, investigators found that an image of a toddler who'd been "horribly abused" was available in more than 1 million places around the world, Waters said.

Lt. Robert Moses, unit commander of the Delaware State Police High Technology Crimes Unit, told the committee that the software has been instrumental in allowing law enforcement to "proactively" identify criminals who possess and distribute child pornography, helping lead to arrests and prosecutions.

Grier Weeks, executive director of an anticrime nonprofit association known as the National Association to Protect Children, said the system has "revolutionized law enforcement" in the child pornography area.

Biden and Sen. Jeff Sessions (R-Ala.), the committee's ranking member, said they were troubled that because of limited resources, investigators are able to take on less than 2 percent of what they called "known" cases of child-pornography trafficking via the Internet. Biden said he also isn't pleased to see that the FBI currently has only 32 agents working in its "Innocent Images" unit, which focuses on child pornography. Still, Biden said he isn't out to "exaggerate" the problem and acknowledged that some of those cases may involve "accidental" exchanges of illicit material.

Biden pushed for passage of a bill known as the Combating Child Exploitation Act. It would authorize more than $1 billion over the next eight years to hire 250 new federal agents devoted to Internet crimes against children, provide additional funding to regional computer forensics labs, and give out more federal grants to the regional Internet Crimes Against Children (ICAC) task forces. The House of Representatives passed a companion bill in October.

"We can get our arms around it, the worst aspect of it," he said, "if we provide the resources."

Sessions cautioned the law enforcement officials to be smart about obtaining search warrants in such investigations. "You can't just go peruse everybody's computer," he said. "You train the officers in what is legal and established and approved and how to get warrants when they need a warrant?"

Waters said he "didn't know of any cases where (requests for warrants) had been overturned."

News.com's Declan McCullagh contributed to this report

Recent posts from News Blog
Yahoo tries to conceal lawsuit documents
HP to launch fall line of teen PC products
Hooray! Yahoo Mail ditches tagline ads
Conde Nast buys Ars Technica
Sugar Labs will make OLPC interface available for Eee PC, others
Add a Comment (Log in or register) 31 comments (Page 1 of 3)
Joe Biden = Idiot.
by Penguinisto April 16, 2008 3:57 PM PDT
[i]"Sen. Joe Biden (D-Del.) said he was under the impression it's "pretty easy to pick out the person engaged in either transmitting or downloading violent scenes of rape, molestation" simply by looking at file names. He urged use of those techniques by investigators to help nab the most egregious offenders."[/i] So if I were a child predator, wouldn't it stand to reason that pushing files out with innocuous-sounding names would be a quick and ready countermeasure? I mean, the paedoes may be sick and disgusting, but assuming they're stupid isn't exactly going to stop them. /P
Reply to this comment
Great Idea!
by SlimDan22 April 16, 2008 4:27 PM PDT
Lets spend money we don't have!! 1 Billion Can Go A Long Way To Other Not So Important Things Like....Healthcare, Schools, Maybe Our Economyyy I can see spending the money on protecting children from pervs but really how much is going to be devoted to stopping Joe Smoe from downloading MC Hammers Greatest Hits Common...
Reply to this comment View reply
This is crazy
by Nicholas Buenk April 16, 2008 4:57 PM PDT
First of all, it's very difficult to determine what the contents of a file is merely from it's name, files are commonly mislabelled. Secondly, just because someone downloads such a file doesn't mean they had any interest in it's content. They might have made a mistake, been after something else, or downloaded something poorly labelled. Also is the problem of identifying someone by an IP address, these days with NAT multiple people can share an IP address. In addition if someone has a wireless network.., if hacked or unsecured, that would be the preferred way of a clever pedophile to try and get child porn. Thirdly, and most importantly. It is absurd in a democracy that someone can be arrested merely for watching a video or a picture. They should go after the people making the videos, they are committing the child abuse. Even child abuse doesn't give the government an excuse to act like a totalitarian state and decide it has a right to censor things on the internet!
Reply to this comment
"unique seial number"?
by fuzionloungmd April 16, 2008 5:14 PM PDT
the uniqee serial number they are refering to is your computers MAC address. and a simple search on google will tell you what it is and how to change it or clone another persons computers mac address
Reply to this comment View all 2 replies
guard the guards with it
by mrcoder April 16, 2008 5:56 PM PDT
Let's do use custom software to monitor peer-to-peer networks for illegal activity by government workers. And it does not require a warrant. Oh, that's right, no government workers have committed crimes. bwahahaha
Reply to this comment
Get it over with!
by JRude667 April 16, 2008 8:01 PM PDT
Just have a compulsory cam and mike and keylogger in every home and get it over with. Who really wants Privacy anyway? Ben Laden doesn't log my Google searches...but EVERYBODY ELSE does!
Reply to this comment
Wouldn't politicians be shooting themeselves in the foot?
by Wookiee-1138 April 16, 2008 9:19 PM PDT
At any rate, a pedo who's stupid enough to use such descriptive filenames gets what he deserves.
Reply to this comment
Less Goverment Waste
by kieranmullen April 16, 2008 11:39 PM PDT
Let private business take care of this issue. The government can't even find a balanced budget, how can they find illegal files? Oh but that is an issue not politician wants to address... KieranMullen http://360Oregon.com
Reply to this comment
"I want to see this internet porno for myself"
by RainCaster April 17, 2008 8:04 AM PDT
What a wanker. He has no idea how intrusive this is on our civil liberties, and certainly doesn't care how much this will cost us.
Reply to this comment
let's monitor your call girls activity 24x7
by basraw April 17, 2008 8:21 AM PDT
Keep an eye on U
Reply to this comment
1 | 2 | 3 | Next 10 Comments >>
Powered by Jive Software
advertisement
  • About News Blog

  • Recent posts on technology, trends, and more.

Add this feed to your online news reader
Google
Yahoo
MSN

Most popular stories

  1. Images: Microsoft telescope puts universe on your desktop

  2. Photos: Cracking open the Atari 2600

  3. This VC forecast scares the pants off of me

  4. End of Intel, AMD duopoly near? Via readies Isaiah chip

  5. Photos: Microsoft previews 2008 Xbox games

Latest tech news headlines

Featured blogs

Beyond Binary by Ina Fried

Coop's Corner by Charles Cooper

Defense in Depth by Robert Vamosi

Geek Gestalt by Daniel Terdiman

Green Tech

One More Thing by Tom Krazit

Outside the Lines by Dan Farber

The Iconoclast by Declan McCullagh

The Social by Caroline McCarthy

Underexposed by Stephen Shankland

advertisement
On TechRepublic: 3 habits of highly ineffective employees
Advanced
search
Advanced
search
Visit other CNET Networks sites: