Reports by The Guardian, The Washington Post, and other outlets said the NSA and FBI used the PRISM program to collect emails, video, photos, documents, and connection logs from major U.S. internet companies including Microsoft, Yahoo, Google, Facebook, AOL, Skype, YouTube, Apple, and PalTalk. U.S. officials acknowledged the program existed and said it operated under the Foreign Intelligence Surveillance Act to gather foreign intelligence on non-U.S. persons outside the United States, while a separate disclosure about Verizon call-record collection intensified scrutiny of U.S. surveillance powers.
Subsequent reporting alleged Microsoft worked with U.S. intelligence and law enforcement to help enable interception across Outlook.com, Hotmail, SkyDrive, and Skype, including capabilities that reportedly bypassed encryption for web chats and expanded collection of Skype video calls. Microsoft and other named companies publicly denied granting the government direct or blanket server access or building backdoors, saying they only complied with lawful, specific requests such as court orders and subpoenas, even as the disclosures fueled a global privacy controversy over the scale of U.S. digital surveillance and data sharing with agencies including the FBI and CIA.

See the reporting duties and controls this puts on the clock.
7 events from the most recent confirmed update back to the earliest known activity.
The Guardian reported from leaked documents that Microsoft had helped U.S. intelligence and law enforcement facilitate interception across Outlook.com, Hotmail, SkyDrive and Skype, while Microsoft denied providing blanket access or backdoors.
Microsoft, Google, Facebook, Apple, Yahoo, AOL, PalTalk, Dropbox and others publicly denied providing the government with direct access to their servers, saying they only complied with specific lawful requests.
Following the initial disclosures, Director of National Intelligence James Clapper acknowledged PRISM's existence and said it was lawful, congressionally authorized, and not intended to target U.S. persons or people in the United States.
On June 6, 2013, news reports revealed the NSA and FBI were collecting internet communications data under the PRISM program from major technology companies, triggering broad public scrutiny of U.S. surveillance practices.
According to top-secret documents later reported by The Guardian, Microsoft worked with the FBI in late 2012 to develop a capability allowing the NSA to circumvent encryption for Outlook.com web chats.
Leaked documents reported that a new capability introduced in July 2012 led to a significant increase in NSA collection of Skype video communications.
Reporting on leaked NSA documents said the PRISM program had been in place since 2007, enabling collection of foreign intelligence data from major U.S. internet companies under FISA authorities.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See what this changes for your reporting obligations and which controls it puts on the clock.
5 references tracked. Mallory keeps watching after this page renders.
theguardian.com
Open sourceweb.archive.org
Open sourceweb.archive.org
Open sourcetechcrunch.com
Open sourceusatoday.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.