在1984年的小说中,乔治奥韦尔预测了个人没有预期隐私的未来,因为国家垄断了间谍技术。政府从出生到死亡时观察了其受试者的行为。没有人可以保护自己,因为监督和反监督技术由政府控制。本说明探讨了被称为Tempest的监控技术的法律地位[2]。使用Tempest技术可以拦截任何数字设备中的信息,并重建为有用的智能,而无需靠近他的目标。该技术特别有用于拦截存储在数字计算机中的信息或在计算机终端上显示。根据美国的法律[3]或英格兰,使用Tempest的使用并不违法。加拿大有具体的法律规定了暴风雨窃听,但法律妨碍监测对策,而不是防止暴风雨监测。在美国,个人对暴风雨监督有效的反措施是非法的。这导致了个人和政府为个人合法地侵犯了他人的隐私,而是非法为个人采取措施保护他们的隐私。 The author would like to suggest that the solution to this conundrum is straightforward. Information on protecting privacy under TEMPEST should be made freely available; TEMPEST Certified equipment should be legally available; and organizations possessing private information should be required by law to protect that information through good computer security practices and the use of TEMPEST Certified equipment.


间谍分为专业人士分为两种主要类型:人类智力聚集(亨特)和电子智能聚会(埃林特)。由于名称意味着,谦虚依赖于人工人员,而闪白依赖于技术操作员。在过去的雨处是收集智能的唯一方法。[4]谦卑的手术将窃取重要文件,观察部队和武器运动[5],引诱人们陷入困境,以提取秘密,并在房屋的屋檐[6]下面,窃听居住者。随着技术的进展,曾经只能由人类执行的任务已被机器接管。所以它一直在间谍。现代卫星技术允许以更高的精确度且从人类间谍可能希望实现更高的距离和武器运动。现在可以以电子方式执行对话的盗窃和窃听对话。这意味着对人类手术的安全性更大,其唯一受累可能是初始椭圆设备的放置。这导致了诸如荷花的Elint的升级,因为椭圆形设备的放置和监测可以由在屏幕上没有训练的技术人员来执行。 The gathered intelligence may be processed by an intelligence expert, perhaps thousands of miles away, with no need of field experience. ELINT has a number of other advantages over HUMINT. If a spy is caught his existence could embarrass his employing state and he could be forced into giving up the identities of his compatriots or other important information. By its very nature, a discovered ELINT device (bug) cannot give up any information; and the ubiquitous nature of bugs provides the principle state with the ability to plausibly deny ownership or involvement. ELINT devices fall into two broad categories: trespassatory and non-trespassatory. Trespassatory bugs require some type of trespass in order for them to function. A transmitter might require the physical invasion of the target premises for placement, or a microphone might be surreptitiously attached to the outside of a window. A telephone transmitter can be placed anywhere on the phone line, including at the central switch. The trespass comes either when it is physically attached to the phone line, or if it is inductive, when placed in close proximity to the phone line. Even microwave bugs require the placement of the resonator cone within the target premises.[7] Non-trespassatory ELINT devices work by receiving electromagnetic radiation (EMR) as it radiates through the aether, and do not require the placement of bugs. Methods include intercepting[8] information transmitted by satellite, microwave, and radio, including mobile and cellular phone transmissions. This information was purposely transmitted with the intent that some intended person or persons would receive it. Non-trespassatory ELINT also includes the interception of information that was never intended to be transmitted. All electronic devices emit electromagnetic radiation. Some of the radiation, as with radio waves, is intended to transmit information. Much of this radiation is not intended to transmit information and is merely incidental to whatever work the target device is performing.[9] This information can be intercepted and reconstructed into a coherent form. With current TEMPEST technology it is possible to reconstruct the contents of computer video display terminal (VDU) screens from up to a kilometer distant[10]; reconstructing the contents of a computer's memory or the contents of its mass storage devices is more complicated and must be performed from a closer distance.[11] The reconstruction of information via EMR, a process for which the United States government refuses to declassify either the exact technique or even its name[12], is not limited to computers and digital devices but is applicable to all devices that generate electromagnetic radiation.[13] TEMPEST is especially effective against VDUs because they produce a very high level of EMR.[14]



在美国,1968年的《综合街道和犯罪法案》第三章将非法侵入性电子信息(ELINT)定为故意窃听有线通信的犯罪行为正如最初通过的那样,第三章没有禁止非侵入性ELINT,因为法院发现非有线通信缺乏任何对p2iiirvacy的期望1986年的《电子通信隐私法》[19]修订了第三章,将非有线通信包括进来。ECPA是专门为电子邮件、计算机间通信和移动电话而设计的。为了做到这一点,我们消除了隐私测试的期望经修订后,第三章仍将电子通讯拦截视为非法行为。“交流”这个词表示某人试图与某人交流某事;它并不是指信息的无意传递。然而,接收和重建发射的瞬态电磁脉冲(ETEP)是基于获取目标不打算发射的信息。如果ETEP不打算作为通信,因此不以接近当前通信协议的形式进行传输,那么它不能被视为国会在修订第III条时所设想的通信。 Reception, or interception, of emanated transient electromagnetic pulses is not criminalized by Title III as amended.


在英国,1985年的《通讯拦截法案》将窃听通过公共电信线路发送的通讯视为犯罪行为对电信线路上的通信的拦截可以通过线路上的物理窃听进行,也可以通过微波或卫星链路的被动拦截进行这些形式的被动拦截不同于TEMPEST ELINT,因为它们拦截的是预期的通信;TEMPEST ELINT拦截意外通信。窃听计算机的信号与窃听电信线路没有任何关系,因此不属于法规的范围


加拿大已经采取直接措施限制对电脑的窃听。1985年的加拿大刑事修正案将间接使用计算机服务视为犯罪对“电磁装置”的具体提及清楚地表明了立法机关将TEMPEST ELINT设备的使用纳入立法范围的意图。获得“任何计算机服务”的限制确实会引起一些混乱。加拿大立法机关还没有弄清楚“计算机服务”是指计算机服务局还是仅仅是一台计算机的服务。如果加拿大人指的是访问任何计算机,为什么他们提到任何“计算机服务”。考虑到(b)中包含的语言,这尤其令人困惑。计算机系统的任何功能。即使加拿大立法将窃听所有电脑定为犯罪,它也不能解决保护信息隐私的问题。刑法的目的是控制犯罪 Merely making TEMPEST ELINT illegal will not control its use. First, because it is an inherently passive crime it is impossible to detect and hence punish. Second, making this form of eavesdropping illegal without taking a proactive stance in controlling compromising emanations gives the public a false sense of security. Third, criminalizing the possession of a TEMPEST ELINT device prevents public sector research into countermeasures. Finally, the law will not prevent eavesdropping on private information held in company computers unless disincentives are given for companies that do not take sufficient precautions against eavesdropping and simple, more common, information crimes.[27]


暴风雨是被动的。计算机或终端源自令人妥协的辐射,该辐射由Tempest设备拦截并重建为有用的信息。与传统的ellint不同,无需身体侵入或甚至靠近目标。窃听可以从附近的办公室或甚至在合理的距离停放的范围内进行。这意味着犯罪没有经典场景;在该法案中发现犯罪的几乎没有机会。[28]如果发现犯罪,那将是一些其他调查的辅助。例如,如果对Insider交易调查个人来搜索他的住所可能会产生一个临时闪烁的设备。该设备将解释被告如何获得内部信息;但它是内幕交易,而不是设备,送走了犯罪。 This is especially true for illegal TEMPEST ELINT performed by the state. Unless the perpetrators are caught in the act there is little evidence of their spying. A trespassatory bug can be detected and located; further, once found it provides tangible evidence that a crime took place. A TEMPEST ELINT device by its inherent passive nature leaves nothing to detect. Since the government is less likely to commit an ancillary crime which might be detected there is a very small chance that the spying will ever be discovered. The only way to prevent eavesdropping is to encourage the use of countermeasures: TEMPEST Certified[29] computers and TEMPEST Certified equipment is theoretically secure against TEMPEST eavesdropping. terminals. In merely making TEMPEST ELINT illegal the public is given the false impression of security; they lulled into believing the problem has been solved. Making certain actions illegal does not prevent them from occurring. This is especially true for a TEMPEST ELINT because it is undetectable. Punishment is an empty threat if there is no chance of being detected; without detection there can be no apprehension and conviction. The only way to prevent some entity from eavesdropping on one's computer or computer terminal is for the equipment not to give off compromising emanation; it must be TEMPEST Certified. The United States can solve this problem by taking a proactive stance on compromising emanations. The National Institute of Standards and Technology (NIST[30]) is in charge of setting forth standards of computer security for the private sector. NIST is also charged with doing basic research to advance the art of computer security. Currently NIST does not discuss TEMPEST with the private sector. For privacy's sake, this policy must be changed to a proactive one. The NIST should publicize the TEMPEST ELINT threat to computer security and should set up a rating system for level of emanations produced by computer equipment.[31] Further, legislation should be enacted to require the labeling of all computer equipment with its level of emanations and whether it is TEMPEST Certified. Only if the public knows of the problem can it begin to take steps to solve it. Title III makes possession of a surveillance device a crime, unless it is produced under contract to the government. This means that research into surveillance and counter-surveillance equipment is monopolized by the government and a few companies working under contract withthe government. If TEMPEST eavesdropping is criminalized, then possession of TEMPEST ELINT equipment will be criminal. Unfortunately,this does not solve the problem. Simple TEMPEST ELINT equipment is easy to make. For just a few dollars many older television sets can be modified to receive and reconstruct EMR. For less than a hundred dollars a more sophisticated TEMPEST ELINT receiver can be produced[32]. The problem with criminalizing the possession of TEMPEST ELINT equipment is not just that the law will have little effect on the use of such equipment, but that it will have a negative effect on counter-measures research. To successfully design counter-measures to a particular surveillance technique it is vital to have a complete empirical understanding of how that technique works. Without the right to legally manufacture a surveillance device there is no possible way for a researcher to have the knowledge to produce an effective counter-measures device. It is axiomatic: without a surveillance device, it is impossible to test a counter-measures device. A number of companies produce devices to measure the emanations from electrical equipment. Some of these devices are specifically designed for bench marking TEMPEST Certified equipment. This does not solve the problem. The question arises: how much radiation at a particular frequency is compromising? The current answer is to refer to NACSIM 5100A. This document specifies the emanations levels suitable for Certification. The document is only available to United States contractors having sufficient security clearance and an ongoing contract to produce TEMPEST Certified computers for the government. Further, the correct levels are specified by the NSA and there is no assurance that, while these levels are sufficient to prevent eavesdropping by unfriendly operatives, equipment certified under NACSIM 5100A will have levels low enough to prevent eavesdropping by the NSA itself. The accessibility of supposedly correct emanations levels does not solve the problem of preventing TEMPEST eavesdropping. Access to NACSIM 5100A limits the manufacturer to selling the equipment only to United States governmental agencies with the need to process secret information.[33] Without the right to possess TEMPEST ELINT equipment manufacturers who wish to sell to the public sector cannot determine what a safe level of emanations is. Further those manufacturers with access to NACSIM 5100A should want to verify that the levels set out in the document are, in fact, low enough to prevent interception. Without an actual eavesdropping device with which to test, no manufacturer will be able to produce genuinely uncompromising equipment. Even if the laws allow ownership of TEMPEST Certified equipment by the public, and even if the public is informed of TEMPEST's threat to privacy, individuals' private information will not necessarily by protected. Individuals may choose to protect their own information on their own computers. Companies may choose whether to protect their own private information. But companies that hold the private information of individuals must be forced to take steps to protect that information. In England the Data Protection Act 1984[34] imposes sanctions against anyone who stores the personal information[35] on a computer and fails to take reasonable measures to prevent disclosure of that information. The act mandates that personal data may not be stored in any computer unless the computer bureau or data user[36] has registered under the act.[37] This provides for a central registry and the tracking of which companies or persons maintain databases of personal information. Data users and bureaux must demonstrate a need and purpose behind their possession of personal data. The act provides tort remedies to any person who is damaged by disclosure of the personal data.[38] Reasonable care to prevent the disclosure is a defense.[39] English courts have not yet ruled what level of computer security measures constitute reasonable care. Considering the magnitude of invasion possible with TEMPEST ELINT it should be clear by now that failure to use TEMPEST Certified equipment is prima facie unreasonable care. The Remedies section of the act provides incentive for these entities to provide successful protection of person data from disclosure or illicit access. Failure to protect the data will result in monetary loss. This may be looked at from the economic efficiency viewpoint as allocating the cost of disclosure the persons most able to bear those costs, and also most able to prevent disclosure. Data users that store personal data would use TEMPEST Certified equipment as part of their computer security plan, thwarting would-be eavesdroppers. The Data Protection Act 1984 allocates risk to those who can bear it best and provides an incentive for them to keep other individuals' data private. This act should be adopted by the United States as part of a full-spectrum plan to combat TEMPEST eavesdropping. Data users are in the best position to prevent disclosure through proper computer security. Only by making them liable for failures in security can we begin to rein in TEMPEST ELINT.


不要将TEMPEST ELINT定为犯罪。TEMPEST ELINT帮助的大多数犯罪,如内幕交易,已经是非法的;现行法律已经足够。美国国家标准与技术研究所(National Institute of Standards and Technology)应立即启动一项计划,对私营部门进行有关暴风雨的教育。只有当个人意识到威胁时,他们才能采取适当的预防措施或决定是否有必要采取任何预防措施。应制定立法,要求所有电子设备在显著位置显示其辐射水平,以及是否经过TEMPEST认证。如果个人要选择保护自己,他们必须能够就保护的程度做出明智的决定。应向私营部门提供经TEMPEST认证的设备。目前禁止向非政府机构出售信息的禁令阻止了需要保护信息的个人拥有保护信息的技术。


关于防止个人电脑电磁窃听的说明。TEMPEST是与限制数据处理和相关设备产生的有害电磁辐射相关的技术的代码名称。它的目标是限制对手收集计算机设备内部数据流信息的能力。大多数有关TEMPEST规格的资料是由美国政府分类的,不能供其公民使用。TEMPEST技术的原因是特别重要的在电脑和其他电子数据处理设备的各种信号组件在计算机使用交谈(平方波)和他们的时钟速度(以兆赫)产生一个特别丰富的无意在很大部分的电磁信号光谱。由于杂散辐射占据了光谱的很大一部分,用于阻挡其中一部分光谱的技术(如拉上窗帘阻挡可见光部分)在另一部分光谱中不一定有效。计算机系统的非故意排放可以被捕获和处理,以揭示目标系统的信息,从简单的活动级别到甚至远程复制击键或捕获监测信息。据推测,保护不力的系统可以在距离目标设备1公里左右的地方有效地监视。这说明将检查一些实际的方面,降低敏感性的个人计算机设备远程监控使用容易安装,广泛可用的售后市场组件。 I One way of looking at TEMPEST from the lay person's point-of-view is that it is virtually identical to the problem of preventing electromagnetic interference ("EMI") by your computer system to others' radios, televisions, or other consumer electronics. That is, preventing the emission of wide-band radio "hash" from your computers, cabling, and peripherals both prevents interference to you and your neighbors television set and limits the useful signal available to a person surreptitiously monitoring. Viewing the problem in this light, there are quite a few useful documents available form the government and elsewhere attacking this problem and providing a wealth of practical solutions and resources.

非常有用的地方是:射频干扰:如何找到它并修复它。Ed Hare,Ka1CV和Robert Schetgen,Ku7g,编辑美国广播电台联盟,纽丁顿,CT ISBN 0-87259-375-4(C)1991,第二印刷1992联邦通信委员会干涉手册(1991)FCC消费者援助分公司葛底斯堡,PA 17326 717-337-1212和MIL-STD-188-124B正在准备中(包括关于战术通信系统的军事屏蔽的信息)文件美国政府印刷办公室华盛顿州的文件,DC 20402 202-783-3238信息屏蔽特定件消费者电子设备可能可从:电子工业公司协会(EIA)2001 2001宾夕法尼亚州Ave NW华盛顿,DC 20006防止意外电磁排放是一个相对术语。减少到零所有意外排放是不可行的。例如,我的个人目标可能是减少杂散排放的数量和质量,直到监测范围一公里在我的前院之前必须有效地窃听我的电脑。具有未知邻居的公寓居民仅限英寸(通过墙壁)可能希望更加仔细地采用以下许多建议,因为可用于检测的信号随着从监控设备到计算机的距离的距离而减小。II从符合现代排放标准的计算机设备开始。在美国,计算机和外围设备的“最安静”标准被称为“B类”级别。(A类是用于在业务环境中使用的计算机的严格标准。)。 You want to verify that all computers and peripherals you use meet the class B standard which permits only one-tenth the power of spurious emissions than the class A standard. If you already own computer equipment with an FCC ID, you can find out which standard applies. Contact the FCC Consumers Assistance Branch at 1-717-337-1212 for details in accessing their database. Once you own good equipment, follow the manufacturer's recommendations for preserving the shielding integrity of the system. Don't operated the system with the cover off and keep "slot covers" in the back of the computer in place. III Use only shielded cable for all system interconnections. A shielded cable surrounds the core of control wires with a metal braid or foil to keep signals confined to that core. In the late seventies it was common to use unshielded cable such as "ribbon" cable to connect the computer with, say, a diskette drive. Unshielded cable acts just like an antenna for signals generated by your computer and peripherals. Most computer manufacturer supply shielded cable for use with their computers in order to meet FCC standards. Cables bought from third-parties are an unknown and should be avoided (unless you are willing to take one apart to see for yourself!) Try to avoid a "rat's nest" of wire and cabling behind your equipment and by keeping all cables as short as possible. You want to reduced the length of unintended antennas and to more easily predict the likely paths of electric and magnetic coupling from cable to cable so that it can be more effectively filtered. IV Block radiation from the power cord(s) into the house wiring. Most computers have an EMI filter built into their body where the AC line cord enters the power supply. This filter is generally insufficient to prevent substantial re-radiation of EMI voltages back into the power wiring of your house and neighborhood. To reduce the power retransmitted down the AC power cords of your equipment, plug them in to special EMI filters that are in turn plugged into the wall socket. I use a model 475-3 overvoltage and EMI filter manufactured by Industrial Communication Engineers, Ltd. P.O. Box 18495 Indianapolis, IN 46218-0495 1-800-ICE-COMM ask for their package of free information sheets (AC and other filters mentioned in this note are available from a wide variety of sources including, for example, Radio Shack. I am enthusiastic about ICE because of the "over-designed" quality of their equipment. Standard disclaimers apply.) This particular filter from ICE is specified to reduce retransmission of EMI by a factor of at least 1000 in its high-frequency design range. Although ideally every computer component using an AC line cord ought to be filtered, it is especially important for the monitor and computer CPU to be filtered in this manner as the most useful information available to opponents is believed to come from these sources. V Block retransmitted information from entering your fax/modem or telephone line. Telephone line is generally very poorly shielded. EMI from your computer can be retransmitted directly into the phone line through your modem or can be unintentionally picked up by the magnetic portion of the EMI spectrum through magnetic induction from power supplies or the yoke of your cathode ray tube "CRT" monitor. To prevent direct retransmission, EMI filters are specifically designed for modular telephone jacks to mount at the telephone or modem, and for mounting directly at the service entrance to the house. Sources of well-designed telephone-line filter products include ICE (address above) and K-COM Box 82 Randolph, OH 44265 216-325-2110 Your phone company or telephone manufacturer may be able to supply you with free modular filters, although the design frequencies of these filters may not be high enough to be effective through much of the EMI spectrum of interest. Keep telephone lines away from power supplies of computers or peripherals and the rear of CRTs: the magnetic field often associated with those device can inductively transfer to unshielded lines just as if the telephone line were directly electrically connected to them. Since this kind of coupling decreases rapidly with distance, this kind of magnetic induction can be virtually eliminated by keeping as much distance (several feet or more) as possible between the power supply/monitor yoke and cabling. VI Use ferrite toroids and split beads to prevent EMI from escaping on the surface of your cables. Ferrites are magnetic materials that, for certain ranges of EMI frequencies, attenuate the EMI by causing it to spend itself in heat in the material rather than continuing down the cable. They can be applied without cutting the cable by snapping together a "split bead" form over a thick cable such as a power cord or by threading thinner cable such as telephone several times around the donut-shaped ferrite form. Every cable leaving your monitor, computer, mouse, keyboard, and other computer peripherals should have at least one ferrite core attentuator. Don't forget the telephone lines from your fax, modem, telephone or the unshielded DC power cord to your modem. Ferrites are applied as close to the EMI emitting device as possible so as to afford the least amount of cable that can act as an antenna for the EMI. Good sources for ferrite split beads and toroids include Amidon Associates, Inc. P.O. Box 956 Torrance, CA 90508 310-763-5770 (ask for their free information sheet) Palomar Engineers P.O. Box 462222 Escondido, CA 92046 619-747-3343 (ask for their free RFI information sheet) and Radio Shack. VII Other practical remedies. Other remedies that are somewhat more difficult to correctly apply include providing a good EMI "ground" shield for your computer equipment and other more intrusive filters such as bypass capacitor filters. You probably ought not to think about adding bypass capacitors unless you are familiar with electronic circuits and digital design. While quite effective, added improperly to the motherboard or cabling of a computer they can "smooth out" the square wave digital waveform -- perhaps to the extent that signals are interpreted erroneously causing mysterious "crashes" of your system. In other cases, bypass capacitors can cause unwanted parasitic oscillation on the transistorized output drivers of certain circuits which could damage or destroy those circuits in the computer or peripherals. Also, unlike ferrite toroids, adding capacitors requires actually physically splicing them in or soldering them into circuits. This opens up the possibility of electric shock, damage to other electronic components or voiding the warranty on the computer equipment. A good EMI ground is difficult to achieve. Unlike an electrical safety ground, such as the third wire in a three-wire AC power system, the EMI ground must operate effectively over a much wider part of the EMI spectrum. This effectiveness is related to a quality known as electrical impedance. You desire to reduce the impedance to as low a value as possible over the entire range of EMI frequencies. Unlike the AC safety ground, important factors in achieving low impedance include having as short a lead from the equipment to a good EMI earth ground as possible (must be just a few feet); the gauge of the connecting lead (the best EMI ground lead is not wire but woven grounding "strap" or wide copper flashing sheets; and the physical coupling of the EMI into the actual earth ground. An 8 ft. copper-plated ground may be fine for AC safety ground, but may present appreciable impedance resistance to an EMI voltage. Much better would be to connect a network of six to eight copper pipes arranged in a six-foot diameter circle driven in a foot or two into the ground, electrically bonded together with heavy ground strap and connected to the equipment to be grounded via a short (at most, several feet), heavy (at least 3/4-1" wide) ground strap. If you can achieve a good EMI ground, then further shielding possibilities open up for you such as surrounding your monitor and computer equipment in a wire-screen Faraday cage. You want to use mesh rather than solid sheet because you must preserve the free flow of cooling air to your equipment. Buy aluminum (not nylon) screen netting at your local hardware store. This netting typically comes in rolls 36" wide by several feet long. Completely surround your equipment you want to reduce the EMI being careful to make good electrical bonds between the different panels of netting and your good earth ground. I use stainless steel nuts, bolts, and lock washers along with special non-oxidizing electrical paste (available from Electrical contractors supply houses or from ICE) to secure my ground strapping to my net "cages". A good Faraday cage will add several orders of magnitude of EMI attenuation to your system. VIII Checking the effectiveness of your work. It is easy to get a general feeling about the effectiveness of your EMI shielding work with an ordinary portable AM radio. Bring it very close to the body of your computer and its cables in turn. Ideally, you should not hear an increased level of static. If you do hear relatively more at one cable than at another, apply more ferrite split beads or obtain better shielded cable for this component. The practice of determining what kind of operating system code is executing by listening to a nearby AM radio is definitely obsolete for an well-shielded EMI-proof system! To get an idea of the power and scope of your magnetic field emissions, an ordinary compass is quite sensitive in detecting fields. Bring a compass within a few inches of the back of your monitor and see whether it is deflected. Notice that the amount of deflection decreases rapidly with distance. You want to keep cables away from magnetic sources about as far as required not to see an appreciable deflection on the compass. VIIII Summary If you start with good, shielded equipment that has passed the FCC level B emission standard then you are off to a great start. You may even be able to do even better with stock OEM equipment by specifying "low-emission" monitors that have recently come on the market in response to consumer fears of extremely low frequency ("ELF") and other electromagnetic radiation. Consistently use shielded cables, apply filtering and ferrite toroids to all cabling entering or leaving your computer equipment. Finally, consider a good EMI ground and Faraday cages. Beyond this there are even more effective means of confining the electrical and magnetic components of your system through the use of copper foil adhesive tapes, conductive paint sprays, "mu metal" and other less common components.


