Documents / FOIA release
This is a report of investigation by the Central Intelligence Agency's Office of Inspector General, dated 18 July 2014. It covers Agency access to Senate Select Committee on Intelligence staff files on RDINet, the network built for the Senate review of the rendition, detention and interrogation program. The report found that five Agency employees improperly accessed the SSCI Majority shared drive and that three IT staff lacked candor. It also found no factual basis for the CIA crimes report against SSCI staff.
Read from the scan by GLM-OCR; expect the odd misread word.
## SECRET//NOFORN of SSCI staffers on RDINet, using data previously collected by the Agency on the system. Both attorneys informed the monitoring team that the tasking was directed by the D/CIA; however, the OIG investigation showed no evidence that the D/CIA ordered the tasking or was even aware of the tasking at the time it was made. Based upon this tasking, the monitoring team staff performed a limited review of SSCI staff activity, using the previously collected data. ## (U) Office of Security Review of SSCI Staff Activity (U) On 14 January 2014, the D/CIA became aware that the monitoring team had been engaged to review the questioned activities of the SSCI staff on RDINet, and immediately ordered a standdown on any and all investigative activities. The D/CIA briefed SSCI Chairman Feinstein on 15 January that, based upon information provided to him by the attorneys, SSCI staff members had improperly accessed Agency documents. The D/CIA recommended to the SSCI Chairman and Vice Chairman a joint forensic review of the activities of SSCI staffers and Agency personnel on the SSCI shared drive. The D/OS was then asked by the Office of the D/CIA to prepare to conduct a joint forensic review with SSCI. Prior to the commencement of this joint review, the SSCI Security Officer informed D/OS that, per Chairman Feinstein, the SSCI was on standdown for any joint review. Despite this notice that SSCI was no longer interested in a joint review, D/OS requested concurrence from the D/CIA's office to proceed with a unilateral review of Agency and SSCI activity on the SSCI shared drive. Without waiting for concurrence from D/CIA, D/OS directed an investigation by her staff that resulted in the generation of a report of SSCI activity on the SSCI Majority shared drive, which included forensically reconstructed some RDINet emails between SSCI staffers. The review was also based, in part, on information previously collected by the monitoring team. ## (U) Agency Crimes Report On Alleged Misconduct by SSCI Staff (U) On 7 February 2014, the then-Acting General Counsel, who had previously recused himself from RDI-related matters and was therefore largely unaware of programmatic details, filed a crimes report with the DOJ, as required by Executive Order 12333 and the 1995 Crimes Reporting Memorandum between the DOJ and the Intelligence Community based on inaccurate information provided to him by D/OS. The crimes report stated that SSCI staffers may have exploited a software vulnerability on RDINet to obtain access to the intelligence summaries created by the Agency, in violation of the Computer Fraud and Abuse Act, 18 U.S.C. $ 1030. The report was solely based on inaccurate information provided by the two OGC attorneys to D/OS and was not supported by, or consistent with, the results of the limited investigation conducted by OS team. The OIG investigation determined that there was no factual basis for the allegations made in the CIA crimes report.
Not linked to a story yet.
FOIA release, from the cia-readingroom collection. The PDF is mirrored here; the original link is above. The text was read from the page images by GLM-OCR; expect the odd misread word. 57 pages are in the text index: search them above, or from the library's search.