Oracle, Which Promised To Protect TikTok User Data From China, Helps Chinese Law Enforcement Snarf Through Lots Of Private Data

from the oh-look-at-that dept

As you'll recall, last summer there was a whole performative nonsense thing with then President Trump declaring TikTok to be a national security threat (just shortly after some kids on TikTok made him look silly by reserving a million tickets to a Trump rally they never intended to attend). Trump and his cronies insisted that TikTok owner ByteDance had to sell the US operations of TikTok to an American firm. The whole rationale about this was the claim -- unsupported by any direct evidence -- that TikTok was a privacy risk, because it was owned by a firm based in Beijing, and that firm likely had connections to the Chinese government (as do basically all large Chinese firms). But how was that privacy risk any worse than pretty much any other company? No one ever seemed to be able to say.

Eventually, after Trump blocked both Microsoft and Walmart from doing the deal, he "approved" a non-sale, but "hosting" deal with Oracle, whose founder/chair, Larry Ellison, and CEO, Safra Catz, were both big Trump supporters. It quickly came out that TikTok's investors deliberately went hunting for a company that they knew Trump liked, and that's why they asked Oracle.

But, part of the announcement of the "deal" was that Oracle would make sure that US TikTok users had their data protected, and that Oracle would keep that data outside the hands of the Chinese government. That seemed somewhat rich, considering that Oracle's initial rise to being a tech giant was built almost entirely on its close connections to the US government, and specifically the intelligence agencies. But it's become even more rich now that the Intercept reports that Oracle actually has a lucrative business helping repressive law enforcement in China do surveillance work. The long story is absolutely full of totally shocking -- but somehow not surprising -- details. It starts off by noting that Oracle hosted a presentation on its own website, literally describing how it helped police in Liaoning province better sort through all of the surveillance data they collected:

Police in China's Liaoning province were sitting on mounds of data collected through invasive means: financial records, travel information, vehicle registrations, social media, and surveillance camera footage. To make sense of it all, they needed sophisticated analytic software. Enter American business computing giant Oracle, whose products could find relevant data in the police department’s disparate feeds and merge it with information from ongoing investigations.

So explained a China-based Oracle engineer at a developer conference at the company’s California headquarters in 2018. Slides from the presentation, hosted on Oracle’s website, begin with a “case outline” listing four Oracle “product[s] used” by Liaoning police to “do criminal analysis and prediction.” One slide shows Oracle software enabling Liaoning police to create network graphs based on hotel registrations and track down anyone who might be linked to a given suspect. Another shows the software being used to build a police dashboard and create “security case heat map[s].” Apparent pictures of the software interface show a blurred face and various Chinese names. The concluding slide states that the software helped police, whose datasets had been “incomprehensible,” more easily “trace the key people/objects/events” and “identify potential suspect[s]” — which in China often means dissidents.

And, yes, if you're wondering, apparently Oracle is helping police in Xingjiang, where there has been ongoing genocide happening against Uyghur Muslims.

In marketing materials, Oracle said that its software could help police leverage information from online comments, investigation records, hotel registrations, license plate information, DNA databases, and images for facial recognition. Oracle presentations even suggested that police could use its products to combine social media activity with dedicated Chinese government databases tracking drug users and people in the entertainment industry, a group that includes sex workers. Oracle employees also promoted company technology for China’s “Police Cloud,” a big data platform implemented as part of the emerging surveillance state.

Several Oracle materials imply that the company has gone substantially further than marketing to Chinese police, which operate as part of the country’s Ministry of Public Security: One presentation detailing Oracle’s database and data security products contains a slide titled “Oracle and the national defense industry.” That title is followed by a list of multiple Chinese military entities, including the People’s Liberation Army, China National Nuclear Corporation, and China Aerospace Science and Technology Corporation. Defense entities are also the apparent target for two additional Oracle Chinese-language presentations, the most recent of which is dated 2015, and for events called the “People’s Armed Police ForceOracle Cloud Computing Exchange Forum” and the “Oracle Xi’an Aviation and National Defense Industry Informatization Seminar” listed in Chinese on Oracle’s site.

Yikes.

So the whole blasted pitch about taking control over TikTok was about keeping the data away from the Chinese, while at the very same time, the same company is helping Chinese law enforcement scan through tons of surveillance data to better suppress its people?

If you're wondering how Oracle responded to the report, it had a spokesperson claim that the examples in these documents were "theoretical" pitch decks to show how the technology could be used, not how they were being used. But as the article notes, that appears to not be true, and the presentation makes it clear that it's talking about an actual case study, and even points out that the police supplied their own data, which they then analyzed with Oracle's technology.

The article is quite long, but turns up a shocking number of smoking guns:

Some of the Chinese-language presentations on Oracle’s site are labeled “CONFIDENTIAL,” despite being publicly available. It is easy to see why someone might have wanted to keep them hidden. Taken together, they show an extreme willingness to aid in the construction of the surveillance state. One Chinese-language presentation, for example, promotes “Oracle’s recommendation: a more complete platform to meet the needs of public security big data processing.”

[....]

Another pitch depicts a broad array of sensitive citizen data being converted into ones and zeros, including DNA, mental illness records, and other medical information. Still other documents from China boast that Oracle technology can help police trawl internet activity to “analyze potential suspected criminal behavior among hundreds of millions of netizens,” capture license plate data from “tens of thousands of cameras,” and analyze call records to build out criminal networks, then link them to fingerprint and facial recognition images.

Of course, it's not clear if the Oracle TikTok deal will ever happen. It seems that no one was much interested in it beyond the headlines, and the Biden administration doesn't seem keen on enforcing the executive order that created the need for Oracle to step in. And, honestly, after reading this report, perhaps that's much better for the privacy of Americans using TikTok.

Hide this

Thank you for reading this Techdirt post. With so many things competing for everyone’s attention these days, we really appreciate you giving us your time. We work hard every day to put quality content out there for our community.

Techdirt is one of the few remaining truly independent media outlets. We do not have a giant corporation behind us, and we rely heavily on our community to support us, in an age when advertisers are increasingly uninterested in sponsoring small, independent sites — especially a site like ours that is unwilling to pull punches in its reporting and analysis.

While other websites have resorted to paywalls, registration requirements, and increasingly annoying/intrusive advertising, we have always kept Techdirt open and available to anyone. But in order to continue doing so, we need your support. We offer a variety of ways for our readers to support us, from direct donations to special subscriptions and cool merchandise — and every little bit helps. Thank you.

–The Techdirt Team

Filed Under: china, law enforcement, police, privacy
Companies: bytedance, oracle, tiktok


Reader Comments

Subscribe: RSS

View by: Thread


  • icon
    That One Guy (profile), 26 Feb 2021 @ 12:35pm

    ... and you think that makes you look better?

    If you're wondering how Oracle responded to the report, it had a spokesperson claim that the examples in these documents were "theoretical" pitch decks to show how the technology could be used, not how they were being used.

    Even if you take them at their word(and you shouldn't) that 'defense' isn't doing them as much good as they might wish it did, because if the concern is the company helping the chinese government surveil people and pour through piles of data then 'we aren't doing that we're just telling them that we could and would be willing to' doesn't actually refute those concerns, it validates them.

    reply to this | link to this | view in chronology ]

  • icon
    crade (profile), 26 Feb 2021 @ 2:30pm

    The most surprising thing about this article is that Oracle is actually working on something that isn't a lawsuit

    reply to this | link to this | view in chronology ]

    • identicon
      Anonymous Coward, 27 Feb 2021 @ 12:24pm

      Re:

      Oracle is known for lawsuits and marketing. Pretty much everything the article describes is marketing—documents, "pitch decks", speeches. Don't worry, it gives no evidence that they've done any actual technical work in the last decade.

      reply to this | link to this | view in chronology ]

  • This comment has been flagged by the community. Click here to show it
    identicon
    A reminder of your friendly rainbow Googly surveil, 26 Feb 2021 @ 6:35pm

    Snowden said GOOGLE gives NSA "direct access".

    Along with other big corporations. But Maz, who's "supported" by Google and other Silicon Valley capital, has overlooked that entirely for going on nine years now.

    It's quite a feat, requiring constant intense focus and close editing, but gotta hand it to Maz here: he rarely slips up and mentions the surveilling by world's three biggest surveillance corporations: Facebook, GOOGLE, and Twitter.

    reply to this | link to this | view in chronology ]

    • icon
      AC Unknown (profile), 26 Feb 2021 @ 6:41pm

      Re: Snowden said GOOGLE gives NSA "direct access".

      [Citations needed]

      reply to this | link to this | view in chronology ]

      • This comment has been flagged by the community. Click here to show it
        identicon
        A reminder of your friendly rainbow Googly surveil, 26 Feb 2021 @ 7:08pm

        Re: Re: Snowden said GOOGLE gives NSA "direct access".

        Lood Gord! So well know doesn't NEED one!

        If YOU don't know that, and are at all honest, then look up Snowden cause you're pitiably ignorant.

        And I see that "AC Unknown", who didn't comment here for 58 months in 43 and 15 stretches, NOW is monitoring the site closely late on a Friday night!

        YOU ARE TIMOTHY GEIGNER, and YOU ARE ASTROTURFING.

        reply to this | link to this | view in chronology ]

        • This comment has been flagged by the community. Click here to show it
          identicon
          A reminder of your friendly rainbow Googly surveil, 26 Feb 2021 @ 7:09pm

          Re: Re: Re: Snowden said GOOGLE gives NSA "direct acces

          That browser session was blocked, by NO coincidence since Timothy Geigner using his "AC_Unknown" sock puppet responded to me.

          Techdirt cannot stand facts.

          reply to this | link to this | view in chronology ]

          • icon
            AC Unknown (profile), 26 Feb 2021 @ 9:04pm

            Re: Re: Re: Re: Snowden said GOOGLE gives NSA "direct a

            Still hanging on to that crackpot conspiracy theory, eh? How much of a dullard are you, really?

            reply to this | link to this | view in chronology ]

            • identicon
              Anonymous Coward, 26 Feb 2021 @ 10:22pm

              Re: Re: Re: Re: Re:

              It took blue three months to stop grieving the Trump defeat. I'm frankly more impressed he started breathing oxygen instead of Republican cum.

              reply to this | link to this | view in chronology ]

              • icon
                Scary Devil Monastery (profile), 1 Mar 2021 @ 2:00am

                Re: Re: Re: Re: Re: Re:

                "I'm frankly more impressed he started breathing oxygen instead of Republican cum."

                To be fair, he has never satisfactorily proven that he isn't. Which by his own logic means that you having asserted such, reality will conform to your hypothesis.

                reply to this | link to this | view in chronology ]

  • identicon
    Pixelation, 26 Feb 2021 @ 10:22pm

    Shocking

    Large corporation decides to be a government whore. One whore begets another.

    reply to this | link to this | view in chronology ]

  • identicon
    Anonymous Coward, 27 Feb 2021 @ 5:33am

    There should be a law against tech companys providing tech surveillance software to china, russia ,india, countrys who have a bad record on
    human rights .
    how many companys sell weapons and drones to russia and china.
    Companys exist to make money,
    only laws and regulation will stop them dealing with dictators . OF Course at this point china has data on almost every american who uses apps or
    the internet, asocial media from constant hacking and buying data on the dark web.

    reply to this | link to this | view in chronology ]

    • icon
      Tanner Andrews (profile), 28 Feb 2021 @ 4:22am

      Re:

      There should be a law against tech companys providing tech surveillance software to [...] countrys who have a bad record on human rights

      Easier said than done. Assuming you want a U.S. law, because Oracle is a U.S. company, you would have us essentially banning doing business with ourselves. That is not going to be an awkward position, even if might seem like ``grace itself compared with that of a man engaged in the act of cutting off his own head.'' [W.S. Gilbert, The Mikado, Act 1, dialogue between #9 and #10]

      reply to this | link to this | view in chronology ]

      • icon
        Scary Devil Monastery (profile), 1 Mar 2021 @ 2:04am

        Re: Re:

        "Easier said than done. Assuming you want a U.S. law, because Oracle is a U.S. company, you would have us essentially banning doing business with ourselves."

        There's an easy remedy though. Try being a nation which doesn't have a horrible human rights record and you can swing the banhammer all you like with no fear of hitting your own thumb all the time.

        Of course that sentence begs prefixing it with "In this the best of all possible worlds, my dear Tartúffe..." on account of it being just slightly more naíve than preaching idealist philosophy to Otto von Bismarck.

        reply to this | link to this | view in chronology ]

  • identicon
    Pixelation, 27 Feb 2021 @ 8:58pm

    Renamed

    Whoracle.

    reply to this | link to this | view in chronology ]

  • identicon
    Cowardly Lion, 1 Mar 2021 @ 3:29am

    Empty handed

    It looks like Oracle have gone full Orwell.

    Everyone knows you should never go full Orwell.

    reply to this | link to this | view in chronology ]

  • identicon
    Anonymous Coward, 1 Mar 2021 @ 4:44am

    yikes

    So the whole blasted pitch about taking control over TikTok was about keeping the data away from the Chinese, while at the very same time, the same company is helping Chinese law enforcement scan through tons of surveillance data to better suppress its people?

    and then double dipping and selling it back to the US.......

    reply to this | link to this | view in chronology ]


Add Your Comment

Have a Techdirt Account? Sign in now. Want one? Register here



Subscribe to the Techdirt Daily newsletter




Comment Options:

  • Use markdown. Use plain text.
  • Remember name/email/url (set a cookie)

Close

Add A Reply

Have a Techdirt Account? Sign in now. Want one? Register here



Subscribe to the Techdirt Daily newsletter




Comment Options:

  • Use markdown. Use plain text.
  • Remember name/email/url (set a cookie)

Follow Techdirt
Insider Shop - Show Your Support!

Advertisement
Report this ad  |  Hide Techdirt ads
Essential Reading
Techdirt Deals
Report this ad  |  Hide Techdirt ads
Techdirt Insider Chat
Advertisement
Report this ad  |  Hide Techdirt ads
Recent Stories
Advertisement
Report this ad  |  Hide Techdirt ads
.

This site, like most other sites on the web, uses cookies. For more information, see our privacy policy. Got it
Close

Email This

This feature is only available to registered users. Register or sign in to use it.