메뉴
BL
404 Media 49일 전

미국 FCC, 신원 확인 의무화로 '베너폰' 사용 중단 추진

IMP
7/10
핵심 요약

미국 연방통신위원회(FCC)가 통신사들에게 모든 고객의 신원 정보와 주소 수집을 의무화하는 방안을 추진하고 있습니다. 이는 익명성을 보장하는 '베너폰(Burner Phone)'의 사용을 사실상 불가능하게 만드는 조치로, 사기 범죄 예방을 목적으로 하지만 사생활 침해와 사이버 보안 역풍에 대한 우려도 큽니다.

번역된 본문

미국 연방통신위원회(FCC)는 구매 시점에 사용자의 신원과 명확히 연결되지 않는 일명 '베너폰(Burner Phone)'의 구매를 사실상 불가능하게 만드는 방안을 추진하고 있습니다. 이는 개인정보 보호를 중시하는 사람들부터 가정폭력 생존자, 언론인 등 수많은 사람들에게 큰 영향을 미칠 것입니다.

FCC는 통신사들이 정부 발급 신분증 번호와 실제 주소를 포함한 모든 휴대전화 고객의 방대한 개인정보를 법적으로 의무적으로 저장하도록 할 계획입니다. 이에 따라 신원을 포기하지 않으면 휴대전화 요금제를 구매하기 어려운 권위주의 국가의 조치에 비유하며 프라이버시 옹호자들과 시민권 활동가들의 우려를 낳고 있습니다.

이러한 변화는 미국 내 사람들이 휴대전화 요금제를 구매하는 방식을 극적으로 뒤흔들어 놓을 것이며, 프라이버시와 사이버 보안에 온갖 연쇄적인 파급 효과를 가져올 것입니다. FCC가 이 같은 데이터 수집을 제안한 것은 부분적으로 사기꾼들을 퇴치하기 위한 방안으로, 통신사들은 대량의 휴대전화 요금제 구매 목적 및 IP 주소와 같은 비즈니스 및 외국 고객에 대한 기타 정보 수집을 의무화 받게 됩니다. 하지만 이러한 변화는 통신사들이 모든 신규 및 갱신 고객의 데이터를 수집해야 함을 의미하며, FCC는 수집된 데이터가 당국에 도움이 될 수 있는 긴 목록의 다른 사항들도 제시했습니다.

💡 이번 제안된 변화에 대해 추가로 아시는 내용이 있나요? 제보를 환영합니다. 업무용 기기가 아닌 개인 기기를 이용해 Signal(joseph.404)로 안전하게 메시지를 보내거나 joseph@404media.co로 이메일을 보내주시기 바랍니다.

미국시민자유연맹(ACLU)의 언론, 프라이버시 및 기술 프로젝트 수석 정책 분석가인 제이 스탠리(Jay Stanley)는 404 미디어와의 이메일 인터뷰에서 "수십 년 동안 시민자유주의자들은 정부가 사람들의 추적을 보장하기 위해 휴대전화를 구매할 때 등록하도록 요구하는 해외 권위주의 국가들을 지켜봐 왔다. 우리는 그런 일이 여기서 일어날 것이라고는 생각하지 못했다"며 "하지만 분명히 말하건대, 이번 규칙 제정을 통해 정부는 사람들이 베너폰을 구매할 수 있는 능력을 빼앗는 것을 고려하고 있으며, 이는 저소득층, 가정폭력 피해자, 그리고 개인정보 보호를 중시하는 모든 사람들에게 피해를 줄 것"이라고 밝혔습니다.

제안된 변화에 대한 개요에서 FCC는 "구체적으로, 우리는 서비스 제공 업체가 서비스에 대한 액세스를 허용하기 전에 최소한 신규 및 갱신 고객의 이름, 실제 주소, 정부 발급 신분증 번호 및 대체 전화번호를 획득하고 유지하도록 의무화하는 것에 대한 의견을 구한다"고 밝혔습니다.

FCC는 이 데이터를 수집하는 목적이 사기꾼들이 처음부터 통신망에 접속하는 것을 방지하고, 결과적으로 "사기꾼들이 사기를 칠 때 집행 기관이 이들을 더 잘 식별할 수 있도록" 하는 것이라고 설명했습니다. FCC는 이러한 변화를 자금 세탁을 방지하기 위해 은행이 수집하는 데이터의 종류에 비유했습니다.

한 섹션에서는 새로 수집된 데이터가 "음성 서비스 제공자가 정확하고 완전한 고객 정보를 보유하도록 보장함으로써 법 집행 기관이 네트워크를 사용하여 범죄를 저지르는 발신자를 더 쉽게 식별하도록" 도울 것이라고 강조했습니다. 또한 이 데이터가 불법 상품을 매매하는 사람들을 식별하는 데 도움이 되는지; "국가 안보를 훼손하는 사기, 첩보 또는 영향력 작전"에 대한 조사; 그리고 "문자 메시지 네트워크의 남용 문제 해결"에 도움이 될 것인지 묻고 있습니다.

한 섹션은 "범죄자들은 전화와 문자 메시지가 제공하는 익명성을 계속 악용하여 미국인들을 사기 치고, 다른 범죄를 저지르기 위해 통신망을 착취하고 있다"고 지적했습니다.

현재 FCC는 제안된 변화에 대한 공개 의견을 수렴하고 있으며, 통신 회사, 법 집행 기관 또는 프라이버시 옹호자들과 같은 관심 있는 당사자나 우려하는 사람들이 의견을 제시할 수 있습니다. 하지만 FCC의 의도는 명확합니다. 즉, 통신사들이 신규 및 기존 고객에 대해 훨씬 더 많은 개인 식별 정보를 수집하여 이를 고객의 전화번호 및 휴대전화 사용 데이터와 직접 연결하도록 법적 의무를 부여하겠다는 것입니다. FCC는 또한 수집되는 데이터의 양이 고객이 비싼 요금제를 구매하는지 여부에 따라 변경되어야 하는지에 대한 질문도 던지고 있습니다.

원문 보기
원문 보기 (영어)
The Federal Communications Commission (FCC) wants to make it effectively impossible for people to buy what many call burner phones—a phone not explicitly linked to your identity at the point of purchase—which would impact privacy-conscious people, to domestic abuse survivors, to journalists, and many more. The FCC plans to do this by legally forcing the country’s telecoms to store a wealth of personal information about essentially all phone customers, including a government issued identification number and their physical address, alarming privacy advocates and civil rights activists who compare the measures to those from authoritarian countries where it can be difficult to buy a mobile phone plan without giving up your identity. The proposed change would drastically shake up how people obtain phone plans in the U.S., and have all sorts of privacy and cybersecurity knock-on effects. The FCC is proposing the data collection partly as a way to combat scammers, with telecoms being required to collect other information on business and foreign customers like the intended use case of their bulk phone plan purchase and their IP address. But the changes would mean telecoms collect data on all new and renewing customers, and the FCC provides a long list of other things that the collected data could help authorities with. 💡 Do you know anything else about this proposed change? I would love to hear from you. Using a non-work device, you can message me securely on Signal at joseph.404 or send me an email at joseph@404media.co. “For decades, civil libertarians have looked overseas at authoritarian countries where the government requires people to register to get a mobile phone to ensure they can be tracked. We never thought that would happen here,” Jay Stanley, senior policy analyst at the American Civil Liberties Union’s (ACLU) Speech, Privacy, and Technology Project told 404 Media in an email. “But make no mistake: with this rulemaking, the government is contemplating taking away people’s ability to get a burner phone, which will hurt low-income people, domestic violence victims, and anyone else who cares about their privacy.” In a synopsis of the proposed changes , the FCC writes, “Specifically, we seek comment on requiring originating providers to, at a minimum, obtain and retain the name, physical address, government issued identification number, and an alternate telephone number of any new and renewing customer before granting access to its services.” The goal of collecting this data, the FCC writes, is to deter some scammers from getting onto a telecom network in the first place, and so “enforcers will be better able to identify the scammers when they do.” The FCC compares the changes to the sort of data collected by banks to prevent money laundering. One section stresses that the newly collected data would help “law enforcement to more easily identify callers that use the network to perpetuate crimes by ensuring that voice providers have accurate and complete customer information.” It goes on to ask if the data would help identify people buying and selling illicit goods; the investigation of “fraud, espionage, or influence operations that undermine national security”, and “address abuse in text messaging networks.” “Criminals continue to leverage the anonymity provided by phone calls and texts to defraud Americans and exploit communications networks to further other crimes,” one section reads. At the moment, the FCC is seeking comments about its proposed changes, with interested or concerned parties—think telecom companies, law enforcement, or privacy advocates—able to weigh in. But the intention of the FCC is clear: the agency wants telecoms to be legally obligated to collect much more personally identifying information on new and returning customers, linking them directly to their phone number and phone usage data. The FCC also asks whether the amount of data collected should change depending on whether a customer is seeking a prepaid or a postpaid service plan. Multiple privacy and technology experts strongly pushed back against the proposed changes. “This proposal by the FCC will do little to combat scams and robocalls, since most people doing that will have no trouble creating fake documentation or identities,” Cooper Quintin, security researcher and senior public interest technologist with the Electronic Frontier Foundation (EFF), told 404 Media. “Given this administration’s crackdown on free expression, protest, immigrants, and women’s health we have trouble seeing this as a bold attack on freedom of communication. They want to take away our ability to make an anonymous phone call.” Eric Null, the director of the Privacy & Data Project at the Center for Democracy & Technology, told 404 Media in an emailed statement “To address the scourge of illegal robocalls, the FCC has unfortunately proposed to force every wireless subscriber in the nation to sacrifice their privacy and give up significant personal details before receiving or renewing a wireless line. While some carriers already collect such details, there are specific circumstances where a person may need privacy and anonymity when seeking a cell phone, including if that person is a victim of domestic violence, or is a journalist or whistleblower. This proposal represents a loss of privacy across the board, and from an agency whose remit includes protecting privacy. The FCC might let a few bad apples spoil the whole bunch.” Cape is a privacy-focused telecom company that limits the amount of data it collects on its customers. John Doyle, the company’s CEO, told 404 Media in an emailed statement “We hate robocalls and support eliminating them, but entrusting telecom carriers to effectively create a nationwide ID registry for every American with a phone is not the solution. Mobile carriers have been breached time and again because the incentives to secure trillions of dollars of legacy architecture aren’t there. Further enriching compromised telecom datasets with government ID, physical addresses, and alternate phone numbers harms our security rather than improving it.” Given this proposal is in the comments stage, the FCC has many questions it is hoping to receive information on, such as whether “renewing” customers should be only those new to the provider, or those switching plans with their current telecom; or whether they should not allow the use of P.O. boxes or shared office locations as the required “physical address.” The FCC did not respond to 404 Media’s request for comment. The proposal is open to comments until June 25. About the author Joseph is an award-winning investigative journalist focused on generating impact. His work has triggered hundreds of millions of dollars worth of fines, shut down tech companies, and much more. More from Joseph Cox