Felony charges for citizen deleting phone data at US Border (nytimes.com)
214 points by floathub 8 hours ago
btbuildem an hour ago
The naivete of some of the comments here is astounding. It doesn't matter whether you're right, it doesn't matter whether it's the law, it's irrelevant that you have rights, etc. Those things are of the past now, for the US.
I think it would be easier to understand the playing field and choose your actions accordingly, if you accept the US has entered its East Germany / late 20th century Soviet era -- except of course with 1000x more invasive and effective surveillance tech.
The social dynamics are the same - the abuses, the selective enforcement, the lack of recourse, the same characters in the roles of various levels of "law enforcement" and "politics". I'm so very sorry, but the best you can do from here is speedrun the collapse.
deepfriedbits 8 minutes ago
With all due respect, this is a wild take. Things aren't great in the U.S. right now, but they're not even in the same universe as what the Stasi was doing.
> I think it would be easier to understand the playing field and choose your actions accordingly, if you accept the US has entered its East Germany / late 20th century Soviet era -- except of course with 1000x more invasive and effective surveillance tech.
dijit 3 minutes ago
its only with the benefit of hindsight (and being on the winning side- thus the propaganda was never dispelled) that we consider the stasi and so on the way we do.
If it walks like a duck, and quacks like a duck.. might just be a duck.
I don’t believe those living “normal lives” in East Germany or the Soviet era considered the police to be evil and invasive the way we do today.
Morromist 2 minutes ago
I mean its so much easier to do stuff the Stasi could only dream of with technology today.
leptons 21 minutes ago
>Those things are of the past now, for the US.
It's a temporary situation, it isn't necessarily a permanent situation.
Tell me how you think East Germany is doing these days.
And no, it doesn't have to take 40 years to right the ship, so long as people get their heads out of their asses and vote. Things are likely to change by the end of this year, and in another 2 years we could have a very different government that could undo a lot of the bullshit going on right now.
adamors 12 minutes ago
Tens of millions have voted for this 3 times in the past 10 years, it succeeded twice. This is not going away, half the voting population of the US wants to live under authoritarian rule and will do anything to take the whole country with them.
eclipticplane 3 minutes ago
Does anyone on the other side have a credible plan to undo the damage?
Where's the Project 2028 book?
Is there anyone credible putting together the Executive Orders to undo the stack of shit, is anyone putting together a short list of District Attorneys to interview on January 21, etc?
Zak an hour ago
For exactly the border search scenario, I wish smartphones could be imaged and restored as easily as PCs. Imagine booting the phone from a flash drive, making an encrypted image of the phone on said drive, and writing a fresh OS before reaching the border.
There's no deception required to protect sensitive data or avoid the seizure of an expensive phone. Consent to unlocking the phone, refuse to unlock the drive. The drive gets seized and you go on your way (if you're a US citizen entering the USA).
Some time ago, Android with a custom recovery could come close to that, but it was fussy and as far as I know, no longer viable. Increased use of TPMs for storing credentials seems to be at least one of the reasons.
solid_fuel an hour ago
It may be fun to fantasize about these things some times, but there is no technical solution to tyranny. Laws are not like code, intent matters. Ultimately if the intent is that the government wants to see your private data, hiding it in any way will be charged - it doesn't matter if you jump through hoops to avoid this specific instance.
Zak an hour ago
This is a half-truth. In a full banana republic, technical compliance with the law will not prevent consequences for failing to do what the authorities want. In a jurisdiction with perfect rule of law, it always will. The USA is somewhere in between.
One of the laws that's enforced pretty well in the USA is the protection against unreasonable search. Most of the time, a search requires showing a judge evidence that the search is more likely than not to reveal evidence of a crime. Exceptions are narrow and specific; the government's options to punish someone who refuses to decrypt data at the border are limited to brief detention and seizure of the medium.
Not yet tested is the idea that erasing data on the spot satisfies the purpose of the border search exception, which is to prevent importation of things that are illegal to import. This case might address that question.
_heimdall 43 minutes ago
paimapi 25 minutes ago
leonidasrup 19 minutes ago
XorNot 3 minutes ago
Normally I agree, but making the implementation initially ineffective is a good way to complicate more far reaching measures.
Americans aren't standing up against this, but they might have considerably more interest if the government was instead trying to ban encrypting data in cloud storage for everyone.
There's also just the fact it's ridiculous I can't have a spare phone ready to go in a few minutes and get it back exactly as I left it.
tamimio 21 minutes ago
Yes, trying to solve a regulation or legal issue by some technical workaround will never work, you have to fight it at the same level, legally, or system-wise, otherwise, you will be like the person who tries to wash the stairs from the bottom all the way up, it rarely works, you gotta go up to down, collectively go against the matter rather than individually duct taping it for your own specific needs. In that example, it won’t be far fetched the same ones who made it illegal to wipe your phone to make illegal to install xyz OS or using abc protocol, in fact, that’s exactly what they are trying to do under the disguise of “protect the kids” and going after encryption or similar privacy related issues.
rootusrootus 22 minutes ago
I've restored iPhones before, and it does seem pretty simple. Easier than PCs for sure. It's not instant, but the basic configuration is restored pretty quickly while the bulk data restoration happens in the background while you're able to use the phone.
fhdkweig an hour ago
Also, it is just a nice idea if you are prone to losing phones. Backups are good for all kinds of reasons.
panny 21 minutes ago
Think for a moment. What is the difference between giving them a password which wipes the phone and giving them a password which opens a blank phone?
It's the same thing. They punched in a code, they are presented with a wiped phone. Can they prove the guy gave them a distress password and wasn't simply carrying a wiped phone to begin with? No, but they just need to imply that is the reason to charge him with the felony.
teiferer 12 minutes ago
Tyranny does not care about "proof".
It doesn't even care about plausible deniability.
Best you can get away with is lack of suspicion. Have a secondary phone with some standard apps on that you use now and then so theyhave a history and just look like you are just not a technical person and read novels on dead trees instead. A lot of work but likely works.
namibj 14 minutes ago
Have you considered "no password set"?
echelon_musk 15 minutes ago
> ...making an encrypted image of the phone on said drive... refuse to unlock the drive
How is this any different than refusing to unlock the phone? It just seems you've added unnecessary extra steps.
victorbjorklund 41 minutes ago
Really? Does it take a long time to recover the phone? Haven’t really ever needed to recover a backup
nphardon a few seconds ago
He's lucky they didn't ship him right off to the Dilley Detention Center
patcon an hour ago
I used to play around on projects adjacent to Tor and TailsOS, and had an idea for a setup I was researching. It's a little intense and probably has annoying failure modes, but sharing in case anyone else finds it helpful:
- Tasker is an automation app for setting up rules for triggers and actions. It allows extension apps to be created to add new triggers and actions.
- someone at one point made an extension to add an action for wiping or factory resetting when triggered
- there was an existing extension (or core feature) to trigger when certain signals are lost or found (e.g., wifi signals, Bluetooth LE beacons, etc)
So the idea is to carry a BLE beacon (any "item tracking" one works) on your keychain, and an unassuming faraday cage pocket alongside it. If you want to wipe your phone, slip the fob into the pocket, the signal disappears, and your phone wipes. And if you don't have the keychain on you, just refuse to open it right away, as when they put the phone itself in a faraday cage (to prevent it from being remote wiped), they cause the signal to be lost, and it gets reset.
Not sure if all the pieces still exist (I dont think the tasker extension for wiping existed outside a forum post...)
sebmellen 43 minutes ago
I used to contribute to this https://en.wikipedia.org/wiki/USBKill
patcon 33 minutes ago
Ah I recall I used to see the creator around :) thanks for your work!
Regarding the motivation for usbkill mentioned in the article: I too was motivated to think on this stuff in relation to my sense of injustice around Ross Ulbrecht, and wanting to think of some way that someone in his position could avoid getting caught. One creative variant in my thinking involved embedding the BLE beacon inside a rubber ball that could be launched and lost track of. Or maybe embedded in heel of a shoe and ditched in transit haha
hamdingers 23 minutes ago
Or keep it in a faraday bag and have the phone wipe if it sees it. If you're ever searched (or otherwise indisposed), they'll open the bag and wipe your phone for you.
echelon_musk 9 minutes ago
With no third party apps you can set an iPhone to wipe itself after 10 failed passcode attempts.
simonebrunozzi 2 hours ago
All Archive pages, when accessed from Italy, now are blocked by the Government:
"PAGINA INTERDETTA DAL CENTRO NAZIONALE PER IL CONTRASTO DELLA PEDOPORNOGRAFIA ONLINE (C.N.C.P.O.)"
“PAGE BLOCKED BY THE NATIONAL CENTER FOR COMBATING ONLINE CHILD PORNOGRAPHY (C.N.C.P.O.)”
Oh, we live in an interesting age.
kioleanu an hour ago
I am currently in Italy (just passing through) and was able to open the archive link with the article
teiferer 6 minutes ago
Then you probably had a home country IP and they filter based on IP.
trollbridge an hour ago
U.S. citizens are going to need obtain a burner phone before returning, and load it with the absolute minimum to load boarding passes, etc., perhaps some reading material or a movie to watch on the plane, and be prepared to share full credentials for thing at the border.
(I used to do some travel patterns where taking a certain client laptop wasn’t an option. It was an absolute gigantic pain for the type of work I did, but it was just too risky to have a laptop seized and be expected to input credentials.)
pkulak an hour ago
I think it's enough to shut down you phone. Then it needs a pin, and you're entitled to not give that over, I believe. So you should be safe, apart from some kind of rubber-hose cryptanalysis.
overfeed 37 minutes ago
> So you should be safe, apart from some kind of rubber-hose cryptanalysis.
There are vendors that sell the technology to adversarially access phone data, the "Before First Unlock" is the safest state a phone can be, but it's not infallible. The safest option is to have a burner or factory-reset phone with nothing on it, even if the hack succeeds.
TheqO an hour ago
If you don't give a pin, they can seize your devices (Andrew Tate on his 1st visit to Florida said that he refused to give pin and they seized phone and laptop)
stickfigure 37 minutes ago
gbriel an hour ago
If you’re a U.S. citizen: CBP cannot deny you entry to the United States merely because you refuse to unlock the phone. If you’re a non-citizen seeking admission: refusal is much riskier.
The important wrinkle is that CBP’s published policy expressly guarantees that a person being admitted as a U.S. citizen won’t be denied entry solely because CBP couldn’t inspect the device. It doesn’t give lawful permanent resident (green card holders) that same explicit statement. Instead, it says refusal by a “foreign national” can be considered in an admissibility determination.
cesarepavese a minute ago
rootusrootus 20 minutes ago
QuantumNoodle an hour ago
Giving up knowledge (password) is something that is typically scrutinized at the border as well. Had he just handed over the phone and the phone had abilities to self destruct if tampered with (e.g too many incorrect pin entries) -- well the gov's case wouldn't been much harder. If they seized property and accidently destroyed the data, then that's on them.
TheqO an hour ago
As everything on your phone should be backed up, you could just wipe your phone to new.
Then log in with another temp account and use that for border pass etc, and then after border checks log back into your normal account?
rootusrootus 19 minutes ago
Just get a boarding pass from the counter old school style. They still print them.
tiahura an hour ago
Why would they need to do that?
paulpauper an hour ago
leave electronics at home. never take electronics to any airport unless you don't care if everything is read. your only option now.
or have a good enough decoy or encryption system in place. Such as pressing a button to lock or replace key documents but keep the rest intact. So what looks like a sensitive document omits key information but still appears to be legit to observer.
rootusrootus 18 minutes ago
That's probably a bit overkill. TSA doesn't have nearly as much power as CBP, so it's only a concern when coming back across the international border.
floathub 8 hours ago
According to the article, he was actually using GrapheneOS and gave the border official the Duress PIN. So I guess technically it was the official that erased the data :-)
victorbjorklund 37 minutes ago
Not how the law works. If I put a bomb in a box. It will explode if a certain pin is put in. And you ask ”can I open the box? What is the pin?” And I say ”here is the pin to open it” and the bomb explodes. Do you think I can claim they blew up themselves ?
jbird99 37 minutes ago
A better feature would be a 2nd PIN that unlocks the phone to a secondary profile, which you would leave pretty bare for situations like these.
dkga an hour ago
Interesting. So is this GrapheneOS indeed operationally good for keeping one‘s data private?
michaelt an hour ago
I mean, it sounds like it would be even better if the duress response was more subtle.
A duress code might let me wipe my phone when someone holds a gun to my head and demands I unlock it. Problem is, there’s still someone holding a gun to my head.
bengt an hour ago
spencerflem an hour ago
Yes if you don’t mind getting arrested by our fascist border police
spacebanana7 8 hours ago
I wonder whether it'd be better for a duress PIN to delete existing data and also create a semi plausible artificial profile to hide the deletion event.
dredmorbius 6 hours ago
This discussion was raised last time this story was discussed. I was among its advocates: <https://news.ycombinator.com/item?id=49061890>.
Briefly: no.
Less briefly: <https://news.ycombinator.com/item?id=49060780> and <https://news.ycombinator.com/item?id=49060716> (from the grapheneos HN account directly).
spacebanana7 5 hours ago
Gabrys1 an hour ago
Maybe it could cause the phone to "randomly" bootloop or something? "Oh no, my phone is broken again, last time this happened I needed to do a factory reset"
NDlurker an hour ago
Or put a dead man's switch on there
grapheneos an hour ago
> I wonder whether it'd be better for a duress PIN to delete existing data
Reliably deleting data at the scale of the whole data partition, a secondary user or a Private Space is fully supported but requires a reboot or shutdown to truly complete it.
After wiping key derivation material needed to obtain the key encryption keys in multiple ways and wiping the encrypted disk encryption keys, the OS can still access the data. It still has data in the page cache, in registers and elsewhere. There are still a bunch of system processes with data tied to what was removed. The OS is still fully functional after the nearly instant wipe of everything needed to recover the data again. It can still access all data other than what's encrypted with hardware keystore keys and not currently decrypted.
The wiping process for the duress PIN/password is completed with a shutdown which tears down everything, zeroes memory and provides at least a small time window where the hardware is powered off too. A reboot would also work and the boot process has explicit zeroing of memory, registers, etc.
We decided to use shutdown for the duress PIN/pasword but a reboot is a valid approach too. Our locked device auto-reboot timer feature we first shipped in 2021 relies on the zeroing done by GrapheneOS for both the process of the OS tearing down and then again during booting to return the device to Before First Unlock state.
> also create a semi plausible artificial profile to hide the deletion event.
It isn't feasible to fool forensic software so it largely wouldn't work against state actors. It nearly certainly wouldn't have helped in this situation in the news. They aren't reliant on a non-technical person sifting through a phone. They'll just hook it up to a laptop and follow the data extraction procedure which involves enabling ADB. The software is aware of GrapheneOS can guide people through dealing with anything different about it. They've had a lot of trouble with extraction via ADB for GrapheneOS since the vulnerabilities they exploit via ADB keep getting patched or blocked it exploit protections but it isn't realistic to block extraction with them having the PIN/password. They could just enable the encrypted backup service in the OS instead and then use CLI tools to extract the data from there with the seed phrase. They don't do that because they want everything rather than only nearly all app data. They also have special code to deal with apps such as Signal with their own layer of data encryption since the data taken from their app data directory is nearly all useless by itself.
There's also quite a difference between wiping and rebooting into a not very plausible environment with decoy data set up by the user in advance compared to not properly wiping and giving access to a decoy profile. Bear in mind the OS can still access nearly all data after the wipe until a reboot. It could make a best effort attempt at purging as much as possible from memory, but the OS is not designed to continue functioning with all of the data disappearing. It can't just wipe all loaded encryption keys without crashing and rebooting anyway. It also has a ton of data still around in caches and elsewhere. We don't want to just do a best effort job cleaning up as much as we can but rather reliably prevent recovering any of the deleted data.
We could definitely add a duress PIN/password which wipes only specific secondary profiles, reboots and has the device still functional with whatever data was in the main user still there. That's a feature we can add, but it's important to note that it will not hide that there was deletion of data. It's easy to detect, and it's not feasible to hide that it happened. Many steps can be taken to make it less obvious, but it will still be easy for software aware of it to detect. Even a massive overhaul designed to perfect it would not address the SSD itself giving away what happened for more advanced analysis.
We aren't going to add a decoy profile compromising the security of the device and providing a way to recover data in a state where it isn't at all unrecoverable yet. We did already plan to consider a 2nd duress PIN/password which only wipes specific secondary profiles, but we need to make it clear that it cannot stealthily wipe them to users.
nkrisc 8 hours ago
I don’t think that would fly as a defense in court.
phoghed 8 hours ago
He’ll just have to pray the scene wasn’t recorded and his real PIN was one digit off
fsckboy 2 hours ago
>I don’t think that would fly as a defense in court
but that's not the point, the point is to not wind up in court by presenting a phone that no long contains evidence but seems plausibly like your phone so doesn't arouse suspicion
dmitrygr 2 hours ago
OutOfHere 7 hours ago
No, to my knowledge, they ask you to enter your PIN/password yourself. They don't enter it for you. I believe he entered it himself, at which point the erasure began. The erasure process was witnessed by the officer.
foo12bar an hour ago
From https://arstechnica.com/gadgets/2026/07/activist-charged-wit...
> Tunick provided this code to an agent, who entered it on the phone, after which “the screen went blank, flashed several times and the phone appeared to restart.”
thomasjeff1 2 hours ago
Why American authorities are always attacking their citizens freedom?
attila-lendvai an hour ago
i think it's just that the American population is the last bunch who gives a damn about it, and the pockets of resistance still makes the news... the same happens mostly everywhere else, just without much complaints.
e.g. in Hungary the authorities treat it as a felony to possess an equipment that can record video or sound and it's not obvious when looking at it. 2-8 years in prison for mere posession, i.e. even if it's turned off in your backpack. random nonsense that if it can also make phone calls then it doesn't qualify (the above is the law paraphrased).
ab5tract 17 minutes ago
Since there are zero devices that are released that don’t indicate recording, it doesn’t seem unreasonable to outlaw modification of recording equipment to hide recording.
You know, the same way we would be rightfully outraged if Apple was allowing applications to turn on the web cam without signaling to the user that the camera is engaged.
That’s all aside from the fact that Hungary was run by authoritarian minded people. But just as I think it should be illegal for cameras installed in glasses to work without an indicating light, I don’t see how this recording light situation you are describing is really such a highlight of Orban’s excesses.
TheqO an hour ago
It's not just America. It's many countries.
UK is same.
nutjob2 an hour ago
This is a bit worse than that. They're specifically targeting this guy because they don't like his politics, an act that is unconstitutional, but Trump and his administration has had contempt for the constitution since day one.
Republicans might as well rename their party the Democratic Fascists of America at this point.
nphardon 2 minutes ago
> Republicans might as well rename their party the Democratic Fascists of America at this point.
I'm reading Stefan Zweig right now, he was a prolific Jewish author from 1890s until his suicide in 1942, living as an exiled Jew from Austria in South America. He has written many words, over a century ago, that would support your claim.
neom 8 hours ago
Legal Eagle just covered this, it's quite interesting analysis: https://www.youtube.com/watch?v=_2rokxux5cU
bena 8 hours ago
Not even a minute in. "Oh, he's protesting Cop City, got it. This is just police harassment."
knute 7 hours ago
The guy from Game Changer?
tavavex 4 hours ago
I'm not a legal expert, but all this seems to check out with US law. Americans need to remember that some of their constitutional rights don't really apply at ports of entry by design. This inconvenient truth for the land of the free has existed for a long time, this situation is just drawing attention to it. Their powers are far-reaching.
hylaride an hour ago
Fun fact, there is a long standing exemption to the unreasonable search and seizure protection laws if you're out on a boat (it may only be on the open ocean and Great Lakes, though IANAL). One of the earliest Supreme Court rulings essentially said that without it, it would be impossible for the US to enforce tariffs, which were the main source of revenue at the time. Anybody who boats often enough has been boarded by the coast guard for various safety checks that allows them to poke around and there's little you can do about it.
joshka 4 hours ago
So the part of this that feels like it triggers the government issue here is that in effect you have a locally stored encryption key which gates access to the device, which was removed from the device due to duress password.
What if we flipped this to instead be something that's explicitly not on the device?
The border search stuff only applies to information on the device. It cannot compel you to provide access to e.g. emails stored in a cloud provider.
If instead of making the process of stopping searches like this be a destructive one, we instead pre-purge the key but store it offsite with the ability to get it from an online location, then this feels like it's probably reasonable here. In the sense that the 4th amendment explicitly allows "The right of the people to be secure in their persons, houses, papers, and effects, ..."
There's probably some sort of technical problem I'm missing here (or maybe this functionality is available already).
fedpost 2 hours ago
Yeah, so caveat emptor: the legal system isn't something you can hack like a computer...
But...
The issue at hand is the "locality" of the encryption header. He merely facilitated its deletion, not the data.
If he had a backup at home, is that still a felony?
What about if he had a backup on a flash drive with him?
What if he never had the header on the phone to begin with and used a detached header on a flash drive?
Are detached headers (a thing you can easily do with LUKS) now de-facto illegal?
This whole thing is making me feel rather uneasy about the bigger picture.
joshka an hour ago
See https://www.cbp.gov/document/directives/cbp-directive-no-334...
> The border search will include an examination of only the information that is resident upon the device and accessible through the device's operating system or through other software, tools, or applications. Officers may not intentionally use the device to access information that is solely stored remotely. To avoid retrieving or accessing information stored remotely and not otherwise present on the device, officers will either request that the traveler disable connectivity to any network ( e.g., by placing the device in airplane mode and disabling Bluetooth and Wi-Fi connections) or where warranted by national security, law enforcement, officer safety, or other operational considerations, officers will themselves disable network connectivity. Officers should also take care to ensure, throughout the course of a border search, that they do not take actions that would make any changes to the contents of the device.
and
> Passcodes or other means of access obtained during a border inspection will only be utilized to facilitate the inspection of devices and information subject to border search. Passcodes or other means of access may not be utilized to access information that is only stored remotely. Passcodes or other means of access should only be recorded by the officer in a temporary format and should not be uploaded into CBP systems. Passcodes or other means of access recorded by the officer will be deleted or destroyed when no longer needed to facilitate the search of a given device.
fedpost an hour ago
vineyardmike 2 hours ago
> or maybe this functionality is available already
Basically already exists depending on specific trade offs and risk profile.
You already can encrypt your data and store the encryption key offsite. But then you couldn’t use your phone during travel, if you toss the key locally.
You can encrypt the data at rest and leave the decryption key in RAM and just turn off your phone. But they can still take the phone and copy the encrypted data, if they think they’ll get the key later.
My understanding is that this individual would t want the government to access the encrypted data either.
joshka an hour ago
I'm talking specifically about the graphene OS ability for that approach, not the ability to add an external key to some generalized encryption. The threat model here is that the traveler was required to provide a passcode unlocking a key they had with them on their phone. If that threat is not there, then this bypasses problem.
righthand 2 minutes ago
What about everyone does this at the border. Then what is normalized is deleting your encryption key while entering, they won’t prosecute everyone on their baseless prosecutions. Join in I say, there is no law being broken only scare tactics being applied to prevent this kind of thing. Normalize the act not the consequences.
gchamonlive 2 hours ago
It's like those notices "by clicking accept below you agree to giving up your data", by purchasing a ticket to visit US all your data are belong to the US.
juancn 7 hours ago
I don't get the legal contradiction.
The search is supposed to be lawful without a warrant because you're not really in the US yet per-se, hence if you're not there, how deleting the data can be a felony?
tavavex 4 hours ago
I think you legally are in the US while at an American border crossing - at least if the crossing is on US land, which it was in this case. It might be more complicated for preclearance spots. It's just that normal rights are suspended there despite being in the US, even for citizens. Make of that what you will.
someguydave 2 hours ago
Your rights are not suspended, but border agents don’t need a reason to investigate you
superxpro12 2 hours ago
OutOfHere 2 hours ago
The Constitution makes no exemption for a suspension of rights at the border.
empressplay 2 hours ago
jdlshore an hour ago
The alleged crime is knowingly interfering with a lawful search (by providing a duress password that deleted the phone). Location has nothing to do with it.
bengt an hour ago
The location is the crux of the "lawful" part of the search.
OutOfHere 7 hours ago
That is a most interesting and underrated point.
joshka 5 hours ago
It's a fairly shallow point that ignores how laws work.
The premise that the law doesn't apply because you're not in the country is false. The constitution applies generally everywhere to all Americans, it's just that what's regarded as reasonable differs during a border search. IANAL, so just my lay opinion on this. Just to validate this, it's only because the constitution exists that the border authorities have any legal basis in doing inspections.
OutOfHere 2 hours ago
HDThoreaun 3 hours ago
It doesn’t matter where he was when he deleted the data. He could be in China, it’s still a crime in the us to destroy evidence wanted by American authorities.
OutOfHere 2 hours ago
insane_dreamer 4 hours ago
right, there's a contradiction here:
- if you're deemed to be on US soil, constitutional protections (4A) apply; can't be destroying "evidence" unless you're accused of a crime or found to have committed a crime
- if you're deemed _not_ yet on US soil, then how can you be charged with a crime under _US_ law?
freeone3000 an hour ago
The US views that US law applies worldwide. There is no requirement that you be anywhere near the US to be under US jurisdiction for an alleged offense against the US, according to the US.
Also, that constitutional protections are suspended within 100 miles of a land, sea, or air border.
decimalenough an hour ago
groby_b 12 minutes ago
4A still doesn't permit you to destroy the evidence. Resist on 4A grounds, destroy the evidence, 4A reasons get overturned - you've got yourself a conviction. US v. Akram Musleh.
steviehicks78 13 minutes ago
Obstruction to what? Also thought this would be covered by the fourth and fifth amendment.
marcosdumay 2 hours ago
Goes to show that he should have made an LLM do it instead.
34679 8 hours ago
Amendment 4:
"The right of the people to be secure in their persons, houses, papers, and effects, against unreasonable searches and seizures, shall not be violated, and no Warrants shall issue, but upon probable cause, supported by Oath or affirmation, and particularly describing the place to be searched, and the persons or things to be seized."
Amendment 5:
"..nor shall be compelled in any criminal case to be a witness against himself, nor be deprived of life, liberty, or property, without due process of law; nor shall private property be taken for public use, without just compensation."
robviren 8 hours ago
But the bar for hauling someone to court and defacto punishing them financially and smearing them in the eyes of the public is so low. And the path to getting compensation for wrongful prosecution so fraught. What an easy tool the justice system is to punish uppity citizens thinking they don't have a king.
gruez 8 hours ago
>Amendment 4:
He was charged for destroying evidence, not refusing a search
>Amendment 5:
Destroying evidence isn't testimony. Moreover he would have been in the clear if he just kept his mouth shut.
sgc 2 hours ago
It seems like the best course of action would be to argue he did not destroy evidence, just made it unavailable at the location to force the requirement for a search warrant. It would probably be a hard sell, but I can't think of a better argument (not a lawyer).
fedpost 2 hours ago
Problem is, he didn't destroy shit. "He" (by which I mean, technically the agents) deleted a header that's used to encrypt data but can restored from a backup.
MBCook an hour ago
hamper653 7 hours ago
> He was charged for destroying evidence, not refusing a search
Evidence with regard to which investigation?
someguydave 2 hours ago
cube00 2 hours ago
> Moreover he would have been in the clear if he just kept his mouth shut.
Although then you get a possible delay of undefined duration, additional questioning and seizure of your device.
krapp 8 hours ago
"Evidence" of what, exactly? What specific crime did they expect to find evidence of on his phone?
myrmidon 7 hours ago
josefritzishere 8 hours ago
Evidence of what? Destroying evidence assumes he is guilty of a crime which there be evidence of. Our system is predicated on an assumption of innocence. The normal threshold to accuse is a "reasonable, articulable suspicion." This does not meet that criteria.
gruez 7 hours ago
tempodox 6 hours ago
jfengel 6 hours ago
The original text is basically useless. They're more like a mission statement rather than directives. They set up broad aspirations, but the implementation has to be aggregated over literally millions of pages of judicial decisions.
Even lawyers with extremely different ideologies will give you convergent answers in a lot of cases, even when those answers conflict with an apparently obvious reading of the original text. Explaining that would require drilling down into details of thousands of court cases -- like reading a complex proof of a seemingly simple theorem.
I don't like that any more than you do. It's not mathematics, and even when given all the details, I usually find their inferences laughably bad -- even when I agree with the conclusion. It's not "logic" as I apply it as a logician, philosopher, or software developer. Lawyers (people on my side ideologically) will insist on the soundness of reasoning for decisions that they don't like but accept as valid.
So I don't find quoting the Constitution to be of any utility. None of those words what you think they mean. And fixing that requires basically throwing out the entire system of American jurisprudence. Which would be fine with me, to be honest.
tempodox 6 hours ago
> None of those words what you think they mean.
And that alone is already a pretty scandalous problem. If the law is not stated in a way that ordinary people can understand, how the hell are they supposed to obey it? Those who cannot afford the highly paid law explainers are basically locked out of society.
krapp 5 hours ago
bad_haircut72 2 hours ago
The words are actually extremely clear and its exceptionally prudent to quote them, because nobody with a brain can read them and fail see that the government is simply being unconstitutional - all over the place. Even when the people are powerless, we dont have to give up our powers of seeing the truth. Your post and this whole idea that "the words dont mean what they say they mean" is frankly doublespeak of the lowest form.
petesergeant 2 hours ago
psunavy03 2 hours ago
> None of those words what you think they mean. And fixing that requires basically throwing out the entire system of American jurisprudence. Which would be fine with me, to be honest.
The Constitution is written in plain English. And for the most part, Supreme Court decisions are written in plain English that any reasonably literate US citizen can understand. Yes, the law has technicalities and terms of art just like any other profession.
But one of the most damaging mentalities in modern times is the idea that the common man is incapable of understanding the law at even a basic level. This is flat-out not the case. Which leads to the follow-on problem: people who think lawyers have the ability to cast magic mumbo-jumbo spells that "get their clients off on a technicality" somehow. The best quote I ever heard about that from an attorney was "any time someone says a person 'got off on a technicality,' you can pretty much just safely replace that in your head with 'had their constitutional rights egregiously violated.'"
Yes, there are problems. Qualified immunity is a problem. Prosecutorial misconduct can be a problem. Abuse of discretion at the border is a problem. But that's different from doomerism about the entire justice system to the degree Very Online people express it.
joshka 4 hours ago
I'm just guessing here, but the most problematic word on the 4th amendment to attack from the government's perspective is "unreasonable". It's easy to see how a phone border search could be construed as reasonable, and (without digging into this deeply) I suspect that's where most of the push back on this will be.
I suspect the 5th amendment is probably more valuable to the defense here as the password is effectively testimonial and the give us your password or we'll ... is compelled speech.
Either way, it's gonna be many 10s of thousands of dollars in lawyers fees to fight this. Which sucks.
Erem an hour ago
> It's easy to see how a phone border search could be construed as reasonable
I'm curious, is there any case law from the pre digital age regarding people forced to open their briefcase and let the border guard read all their documents at a port of entry?
someothherguyy 7 hours ago
you don't have those protections at the border: https://en.wikipedia.org/wiki/Border_search_exception
OutOfHere 7 hours ago
There is no such exception allowed in the Constitution. And if a case is made that they're not legally in the US yet, then by the same logic, they should not be subject to all the same laws of the US yet.
empressplay 2 hours ago
josefritzishere 7 hours ago
Even Wikipedia spells out that invasive searches require "reasonable suspicion." So we return to the core question... suspicion of what? Suspicion is not a crime. https://en.wikipedia.org/wiki/Border_search_exception
someothherguyy 6 hours ago
phoghed 8 hours ago
Seems like it would be better to have a truecrypt type of situation, where if you put in a certain pin, then it just logs you into a separate OS with nothing you want to hide.
Obviously have the duress pin if what’s in your phone is worse than the obstruction charges too.
dredmorbius 6 hours ago
phoghed 5 hours ago
In the truecrypt scenario you’d be using the hidden and encrypted volume only for what you explicitly want to keep hidden and use the other one for your daily life.
So in the article situation, the guy is a protestor and presumably suspects he’s going to be targeted by the police for it. He’d keep that stuff isolated from his usual activity. There’d be no need to generate convincing fake activity.
Certainly more of a hassle than having a PIN that can destroy everything.
yellow_lead 8 hours ago
groby_b 17 minutes ago
While I think it's an abuse of power from a moral point of view - yes, that would be the expected legal outcome. Under any administration.
You can refuse to hand over access. You can't go torch evidence. Caught Ollie North as well.
maxglute 3 hours ago
What about none citizens? Customs kicks you out or throws you into a camp first.
E: but seriously, what happens to non citizens. What happens if you bring a burner/wiped phone? I assume digit forensics can confirm it was pre wiped but what's topping them from alleged you wiped on US soil.
bad_haircut72 2 hours ago
That famous phrase from the constitution, "all men are created equal, except the ones not born in America"
azernik an hour ago
The original you're riffing on is from the Declaration of Independence (a purely rhetorical document), not the Constitution of a decade later.
twothreeone an hour ago
The implicit "men born outside the US are not men" is arguable worse.
thomasjeff1 2 hours ago
So non-citizens should avoid visiting US. Got it
poulpy123 10 minutes ago
One more reason to not go to the US
CrzyLngPwd an hour ago
The land of the free!
adfm 7 hours ago
I don't know about you, but don't people use encryption to retain privacy? And are people still free to manage their personal information? Doesn't a duress PIN present that information in its intended form? I'm confused.
0xbadcafebee an hour ago
So we're presumed guilty until proven otherwise (the presumption is, any data we delete must be illegal; couldn't possibly be nude selfies that the government has no right to see)
heyitsmedotjayb 34 minutes ago
FAFO
IncreasePosts an hour ago
What I don't understand is if he just didn't give any password, he would have been fine. It's only because he gave him a duress pin that he's in trouble.
So, in both cases the government wouldn't have access to the contents of the phone
twothreeone an hour ago
In the first case they (the US govmnt) could hold him (the citizen) in contempt (in a cell) indefinitely.
RunSet 14 minutes ago
18 months is, by precedent, the limit on contempt for refusal to decrypt[0], but this administration is happy to disregard any precedent that does not agree with them.
[0] https://arstechnica.com/tech-policy/2020/02/man-who-refused-...
wffurr an hour ago
Actually no, they are required to allow you to enter the country, but they will make it a hassle, to the point of dehydrating you and/or refusing bathroom access, and confiscate the device in the end and access is through other technical means.
blkhp19 an hour ago
Is that allowed? Can you refuse to give a pin when asked?
sweetjuly 32 minutes ago
It's complicated.
> Courts have generally found that compelling individuals to provide their numeric or alphanumeric passcode is potentially testimonial under the Fifth Amendment, as it forces the defendant to reveal “the contents of his own mind.” In Re Grand Jury Subpoena Duces Tecum 670 F.3d at 1345; see also U.S. v. Apple MacPro Computer, 851 F.3d 238 (3d Cir. 2017). It is analogous to compelling production of the combination to a wall safe, which is testimonial, as opposed to surrendering the key to a strongbox, which is not. See Doe v. U.S., 487 U.S. 201, 220 (1988). However, even if a court finds that providing the passcode is “testimonial,” it may still fall under the “foregone conclusion” exception
https://www.nacdl.org/Content/Compelled-Decryption-Primer
In short, you can't be compelled to give up the code in a dragnet attempt to find evidence against you (e.g. a boarder guard can't riffle through your text messages to see if you might have done something illegal), but if it's already certain that particular evidence exists on the device as a result of other evidence, they may be able to compel you to give up your passcode.
Note though that the cases where this has come up are very few and far between, and there isn't a super clear overriding precedent to follow.
In general though, the best choice here is to say nothing at all and work with a lawyer to figure out how to proceed.
carefulfungi an hour ago
amazingamazing 8 hours ago
If the government wants you no amount of technical gotchas will prevent this.
jijji an hour ago
amatuer... when you leave the us you bring a wiped phone, never bring your primary phone/laptop/camera/etc
quickthrowman 8 hours ago
Would it be permissible to wipe your phone before going through customs to get back into the US? If they ask to search your already wiped phone, you aren’t destroying any evidence.
dredmorbius 6 hours ago
There are apparently problems with wipe/restore under GrapheneOS:
<https://news.ycombinator.com/item?id=49060780>
(From the HN GrapheneOS account about a month ago.)
TheqO an hour ago
That link says you can't take a image of the disk prior to wiping.
OP is talking about just backing up what you need off-phone and then wiping it.
HybridStatAnim8 2 hours ago
What problems are you referring to?
OutOfHere 7 hours ago
Yes. Of course it is permissible. It is your device. The wipe must have completed before arriving at the counter.
laughing_man 2 hours ago
I wouldn't assume that to be the case. It's illegal under federal law to destroy evidence of a crime. Just what the government needs to do to show that you've destroyed evidence of a crime and not just the sexting you did with your girlfriend is a pretty murky area of law, from what I can tell.
I would not present a phone to customs that had clearly just been wiped.
jmyeet an hour ago
I don't agree with all this and this increasingly fascist regime but... this was the most predictable outcome. Consider these two scenarios.
1. You factory reset your phone before entering the US and give it to CBP blank. There's nothing to find;
2. You have a self-destruct PIN like this guy did and give it CBP so it destroys the phone's contents.
Tech people will say that these two things are functionally the same. This is a fundamental misunderstanding of how the law works. If you factory reset your phone first with the intention of restoring it after entry, that's completely fine (legally). You could've factory reset that for any reason. But as soon as an officer wants to search your phone, now you're engaging in evidence destruction (spoliation). The destruction to the phone's contents was done in response to an unfortunately lawful search.
Even if you don't want to factory reset your phone, you can probably just delete (or even log out) of key apps. They can still get messages but if you're so concerned about that, use WhatsApp or whatever.
None of this should be necessary but we are where we are. But whatever you do, don't use a self-destruct PIN if you don't want to be charged with a felon and likely to be found guilty.
pjc50 8 hours ago
Paywalled, but what is the actual charge? Is it some extremely generic "obstructing an investigation" one? The US is quite good about making court documents available on line, if someone can find it.
hoppyhoppy2 8 hours ago
The article says he was charged with obstruction.
You can try this "gift link" to the article: https://www.nytimes.com/2026/08/21/us/politics/samuel-tunick...
floathub 8 hours ago
He is charged with obstruction, but under domestic terrorism (as defined by a national security presidential memorandum).
superxpro12 an hour ago
OutOfHere 7 hours ago
The gift link shows only a fraction of the article text. Just stick to https://archive.is/SflVC.
hamper653 8 hours ago
Obstruction to what though?
c0l0 8 hours ago
stymaar 8 hours ago
jeroenhd 8 hours ago
Knowingly providing a PIN that would erase evidence is going to get tough in court.
But the man was also hated by the cops because of his activism. They were going to catch him for something, some day. This incident just provided the necessary excuse to lock him up.
myrmidon 7 hours ago
There is no duty to keep a copy of messages and private data on your phone for the FBI to peruse at its leisure. Quite the opposite, actually (according to the constitution).
It is pretty clear to me that law enforcement conspired to abuse a border crossing to effect basically an unconstitutional search ("fishing expedition"), which it would never have gotten a warrant for.
This is them being spiteful after that whole thing failed. Note how law enforcement basically admits this on the record. The whole thing is a disgrace; every decisionmaker involved in this should be sacked immediately.
hamper653 8 hours ago
Evidence of what?
jeroenhd 8 hours ago
gonzalohm 8 hours ago
How can they prove that? What if it was a glitch?
jeroenhd 8 hours ago
tosti 7 hours ago
bdangubic 8 hours ago
> They were going to catch him for something, some day. This incident just provided the necessary excuse to lock him up
funny reading this (don't disagree) and then also reading on HN how China is "bad" this is some gestapo shit but not surprising that it is getting normalised ...
jeroenhd 8 hours ago
deaux 8 hours ago
owlninja 8 hours ago
Here's a gift link: https://www.nytimes.com/2026/08/21/us/politics/samuel-tunick...
dredmorbius 5 hours ago
Paywall/archive: <https://news.ycombinator.com/item?id=49387289>
jmclnx 8 hours ago
Yet another case that will waste the court's time and money. All this is doing is keeping defense lawyers pocket's lined.
At this point, people should buy a burner phone when going to/from the US. In that phone only have a couple of phone numbers and that's it.
Sharlin 8 hours ago
Oh, they may well give you bad time if your phone looks like a burner with too little content.
nucleardog 7 hours ago
This is not... advice. But if anyone's actually going to do this, the method that's worked for me...
A couple weeks before your trip, factory reset whatever burner phone you're planning on using and swap your SIM card over. Install a few basic apps you wouldn't mind them looking through. Enable hotspot/tethering, and connect your other phone via Wi-Fi.
For a couple of weeks, use the burner as much as you can with what is available on it. When you're driving, us the maps app for GPS. Make and receive some calls, ignore some spam calls. Read the news. Get a few inane text messages conversations going, etc.
When you travel, leave your regular phone at home and take the burner. When it's searched at the border, it has enough activity to pass most initial smell tests. If asked, you dropped your other phone and didn't have time to get it fixed before your trip, this is one a friend lent you.
This has worked for me. Never _actually_ into anything illegal, but just apparently had a suspicious vibe about me or something because every time I crossed the border into or out of the country I was spending 4-5 hours getting searched. Didn't need someone going through my entire life going back decades every time--once was enough.
GJim 8 hours ago
> Oh, they may well give you bad time if your phone looks like a burner with too little content.
Issuing 'burner phones' and laptops to staff visiting countries such as China or the USA is now SOP for many companies handling sensitive data, including mine.
Don't think this isn't unusual.
iamnothere 7 hours ago
iamnothere 8 hours ago
If you are a citizen it doesn’t matter. They have to let you in.
lovich an hour ago
ydat 7 hours ago
skinfaxi 8 hours ago
If you are a citizen like this person is then you can tell them to fuck off, they can keep the phone, and they have to let you in.
nucleardog 8 hours ago
bdangubic 8 hours ago
They won't unless you are already on "their list" My phone basically looks like a burner phone, I do not use social media, do not install apps, my iphone fits (with room to spare) all "apps" on a "single page." I just call and text from my phone and have a browser and maps and that is basically it.
laughing_man an hour ago
I'm a bit mystified why anyone would bring an electronic device over an international border with anything that could be construed, fairly or not, as evidence of criminal behavior.
ramgine 8 hours ago
Think it’s better to travel without a phone at all and buy one when arriving in the us? Problematic I guess with everything being digital
hylaride an hour ago
Years ago I chatted with a border guard from another country about their job (while they were not working). Not having a phone nowadays would be considered "strange" enough to flag you. If you're not a citizen of said country, it could even dramatically increase the odds of disallowing you entry. Often this would prevent you returning for a set number of years.
At the end of the day, it's always best to just not have anything "bad" on your devices. People have been caught up for all numbers of "innocent" reasons (pictures of their kids in the bathtub, ancient photos in their albums of themselves doing illegal things such as drugs or underage drinking, text messages or browser history disparaging politicians the border guard may support, porn in your history) that can give a border guard in a bad mood good reason to ruin your day.
I personally don't want my phone data hoovered in and analyzed or marked, even though I don't really have anything to hide. I don't care enough to do anything about it, but if I did I would probably have a second travel phone with a curated amount of data, apps, accounts, etc.
laughing_man an hour ago
The last time I tried to do that on a trip to Germany, admittedly many years ago, I found I could not get phone service without a local address.
59nadir 2 hours ago
If you can, just avoid ever entering the US at all.
hamper653 7 hours ago
It has been standard practice for some time now in some European companies.
iamnothere 8 hours ago
Also, you might accidentally drop your burner in the lake/ocean before you return. It happens!
hamper653 7 hours ago
> At this point, people should buy a burner phone when going to/from the US.
At this point? This has been standard practice for a while now.
Joker_vD an hour ago
Y'know, makes me wonder why Democrates didn't disband ICE and CBP when they had control over the Congress and the government. I mean, they knew those agencies would be used in precisely this way, yet did nothing anyhow.
0xy an hour ago
Democrats built the blueprint for ICE's deportation program and architected the law that enabled it.
Clinton's IIRAIRA bill literally introduced expedited removal procedures and created the concept of 'administrative warrants', routinely used by CBP/ICE today.
Without the IIRAIRA, removal would be substantially harder.
anigbrowl an hour ago
IIRIRA was not a 'Clinton' bill. It was initially drafted by Lamar Smith (r) of Texas (HR 2202) and subsequently attached to an appropriations bill (HR 2610), and passed with a bipartisan veto-proof majority.
https://www.congress.gov/bill/104th-congress/house-bill/2202
https://www.congress.gov/bill/104th-congress/house-bill/3610
It's easier than ever to check legal assertions before you post instead of posting incorrect information.