Showing posts with label privacy. Show all posts
Showing posts with label privacy. Show all posts

Tuesday, April 03, 2012

Facebook & Work: What you need to know

Thursday, February 23, 2012

Microsoft, Google and Netflix want to add DRM-hooks to W3C HTML5 standard



Microsoft, Google and Netflix want to add DRM-hooks to W3C HTML5 standard


A proposed anti-copying extension for the WC3's standard for HTML5 has been submitted by representatives of Google, Microsoft and Netflix. The authors take pains to note that this isn't "DRM" — because it doesn't attempt to hide keys and other secrets from the user — but in a mailing list post, they later admitted that this could be "addressed" by running the browser inside a proprietary hardware system that hideverything from the user.

Other WC3 members — including another prominent Googler, Ian Hickson — have called for the withdrawal of the proposal. Hickson called it "unethical." I agree, and would add "disingenuous," too, since the proposal disclaims DRM while clearly being intended to form a critical part of a DRM system.
In an era where browsers are increasingly the system of choice for compromising users' security and privacy, it is nothing short of madness to contemplate adding extensions to HTML standards that contemplate designing devices and software to deliberately hide their workings from users, and to prevent users from seeing what they're doing and changing that behavior if it isn't in their interests.
Writing on Ars Technica, Ryan Paul gives a good blow-by-blow look at the way that this extension is being treated in the W3C:
Mozilla's Robert O'Callahan warned that the pressure to provide DRM in browsers might lead to a situation where major browser vendors and content providers attempt to push forward a suboptimal solution without considering the implications for other major stakeholders.
Some of the discussion surrounding the Encrypted Media proposal seem to validate his concerns. Mozilla's Chris Pearce commented on the issue in a message on the W3C HTML mailing list and asked for additional details to shed light on whether the intended content protection scheme could be supported in an open source application.
"Can you highlight how robust content protection can be implemented in an open source webrowser?" he asked. "How do you guard against an open source web browser simply being patched to write the frames/samples to disk to enable (presumably illegal) redistribution of the protected content?"
Netflix's Mark Watson responded to the message and acknowledged that strong copy protection can't be implemented in an open source Web browser. He deflected the issue by saying that copy protection mechanisms can be implemented in hardware, and that such hardware can be used by open source browsers.
"Unethical" HTML video copy protection proposal draws criticism from W3C reps(Thanks, Rob! )

Friday, February 17, 2012

OS X 10.8 - Gatekeeper's Additional Security Options



With the many updates and new features announced for the upcoming OS X release of Mountain Lion , one may have slipped by, but it's an important feature. It's also likely to become controversial.
Gatekeeper gives users some extra security when running third party software. Apple says Gatekeeper will help prevent users from "unknowingly downloading and installing malicious software." The system preference has three levels of security. One only allows you to install apps from the Mac App Store. A second level allows installation of apps from what Apple calls "identified developers." Apple is starting up a program that basically allows developers to have digital signing of their apps. The lowest level of security allows apps to be installed from any source, but OS X will warn you if the app is not digitally signed.
What Gatekeeper doesn't do is protect you against malware and viruses, which admittedly have not been a big problem on the Mac platform. Apple does have somebuilt in tools to identify potentially harmful programs, but sometimes the problems can get ahead of Apple implementing a solution. Of course, Windows faces similar challenges, but on a much larger scale.
Gatekeeper is in the recently released developer preview, but it is not activated.AppleInsider reports that it can be turned on by using the new OS X system policy control command-line tool "spctl(8)".
It will be interesting to see if Gatekeeper matures and adds features by the time Mountain Lion is released in late summer. We'll do a deeper dive on Gatekeeper and its possible implications for the Mac platform later on.

Bruce Schneier's Liars and Outliers: how do you trust in a networked world?



Bruce Schneier's Liars and Outliers : how do you trust in a networked world?

John Scalzi's Big Idea introduces Bruce Schneier's excellent new book Liars and Outliers , and interviews Schneier on the work that went into it. I read an early draft of the book and supplied a quote: "Brilliantly dissects, classifies, and orders the social dimension of security-a spectacularly palatable tonic against today's incoherent and dangerous flailing in the face of threats from terrorism to financial fraud." Now that the book is out, I heartily recommend it to you.
 
It's all about trust, really. Not the intimate trust we have in our close friends and relatives, but the more impersonal trust we have in the various people and systems we interact with in society. I trust airline pilots, hotel clerks, ATMs, restaurant kitchens, and the company that built the computer I'm writing this short essay on. I trust that they have acted and will act in the ways I expect them to. This type of trust is more a matter of consistency or predictability than of intimacy.
Of course, all of these systems contain parasites. Most people are naturally trustworthy, but some are not. There are hotel clerks who will steal your credit card information. There are ATMs that have been hacked by criminals. Some restaurant kitchens serve tainted food. There was even an airline pilot who deliberately crashed his Boeing 767 into the Atlantic Ocean in 1999.
My central metaphor is the Prisoner's Dilemma, which nicely exposes the tension between group interest and self-interest. And the dilemma even gives us a terminology to use: cooperators act in the group interest, and defectors act in their own selfish interest, to the detriment of the group. Too many defectors, and everyone suffers — often catastrophically.
Liars and Outliers: Enabling the Trust that Society Needs to Thrive

Saturday, February 11, 2012

PaperKarma: Stops Junk Main with a Snap of a Photo [FREE - For Now]



iOS/Android/WP7: Nobody likes junk mail, but if you're too lazy to go through and unsubscribe to everything individually, PaperKarma is a new app that only requires you to take a picture of the offending mail to remove yourself from the junk mail database.
PaperKarma works on magazines, catalogs, coupons, fliers, credit card offers, and even the Yellow Pages. To sign up for the service, you need to hand over a bit of your own information, including your address and email. Once you do, all you need to do is snap a picture of the junk mail in your mailbox and PaperKarma unsubscribes you from the list. The nice thing is that you can pick and choose what you unsubscribe from. If you like getting a particular catalog, you can keep it on your list.

It's currently a free download for iPhone , Android , and Windows Phone 7 .

PaperKarma | via TechCrunch

Thursday, February 09, 2012

Black SMS Encrypt Text Messages TXT MSG on iOS iPhone



iOS: Anyone can pick up your phone and read your text messages. It's also not that difficult for someone to install spy software or for the U.S. government to acquire your messages from your carrier. If you want to keep your text messages private, Black SMS is an app that provides a very simple method for doing so. You simply type in the message, set a password, and send it over to iMessage. The recipient can then use their copy of Black SMS to decrypt the message using the password you set by simply pasting the message into the app and entering the password. (Watch the video above for a demonstration.)
This is a very helpful tool when you're exchanging sensitive data over SMS. You probably won't feel the need to use it for every single text message you use, as the process is a little bit tedious for quick, everyday communication. Nonetheless, when you've got something private to share, Black SMS can help you keep it that way.
Note: A free decrypt-only version of Black SMS will be available soon, but for now you can get the regular version for $1.
Black SMS ($1) | iTunes App Store

FAA Bill Authorizes Surveillance Drones Over US




fyngyrz writes "Congress passed a bill this week that makes it easier for the government to fly unmanned spy planes in U.S. airspace . From the article: 'The FAA Reauthorization Act, which President Obama is expected to sign, also orders the Federal Aviation Administration to develop regulations for the testing and licensing of commercial drones by 2015. Privacy advocates say the measure will lead to widespread use of drones for electronic surveillance by police agencies across the country and eventually by private companies as well.'"

Saturday, February 04, 2012

We need new privacy policies for a new world



We need new privacy policies for a new world


In a major update to its privacy policy and the addition of "Search Plus Your World ", Google has managed to attain the consensus from the tech-enthused world that it is way beyond the innocent baby days of "don't be evil". Matt Honan of Gizmodo  signalled the privacy shift as the end of Google's "don't be evil" promise, which the company built its business on, and Sarah Lacy of Pando Daily  shared similar sentiments, though hers was related to the Search Plus Your World outcry.
In a nutshell, one of the biggest sore points that people are having with Google's new privacy policy is the fact that it permits the search giant to utilize your basic profile information and extend it across your identities when using your other Google services. These changes aren't so much evil, but adaptation to our merging online and offline identities.

Change is Inevitable
Amidst all the opposition, I think it all alludes to a larger trend in technology as a whole that people aren't readily willing to accept, yet will undoubtedly be the social media revolution that the advent of the Internet had begged from the very start. The Internet was built as a means of quickly sharing and bringing together the vast expanse of human knowledge — the clincher is that we can't expect to share our knowledge without sharing a portion of ourselves. Even just a little bit.
"It's a small world" is a common saying, which points to various inventions of the past such as the telephone, aviation and motorized travel, all of which funnelled towards the fundamental idea of making human contact all the more easier. The Internet took that a step further with email. MSN Messenger took it another step further. Myspace, Facebook and Twitter took the small world concept even further, such to the point that the world can quite literally be at the doorstep. Or in a Skype video conversation, right in front of you.
Clearly the concept of privacy takes on an entirely new dimension in a world where human contact is effortlessly easy with anyone anywhere.
It's not just Google that is changing its privacy policies to keep up with a transforming world, Facebook is doing a lot of the same thing. Facebook's recent Timeline feature allows users to place important dates and milestones in their lives in somewhat of a virtual calendar, and to fill in the big events of one's life that may have occurred before Facebook was invented.
Even more crucial though is Facebook's new Open Graph feature, allowing apps to share data to one's Facebook Wall without even having to ask. If you go on a run and a smartphone app tracks all the contextual metadata, such as your calories burnt, heart rate and distance, it's immediately on your Facebook Wall for people to see. If you're listening to a song, it will show up on your Facebook wall. Of course, the app has to ask once, the first time, but from there on it's all free flowing.

Unifying Identities
There's a noticeable trajectory here, by eliminating these walls of permissions that have been the dividing lines between what happens in real world and what subsequently occurs in our online lives, Facebook is making its service all the more seamless and our online identities all the more important. If Facebook's Open Graph goes so far as to make our Wall in perfect sync with every activity of our waking lives, it's not ridiculous to say that online identity is on par in pertinence with our real lives.
Perhaps the term "real lives" needs some redefining at this stage.
Which brings me back to Google and its decision to rewire and unify user identities across products and services. If social media has reached such a point that online identities are comparable with real life identities, then it's high time they started acting that way.

People don't walk the streets with a generic gender avatar for a face, a pseudonym for a name and hide behind an uncrackable block of pixels — they shouldn't on the Internet. Sure, pseudonyms are good for brand and identity building in platforms like YouTube, but everywhere else, in front of every online persona there should be a face and a name. Anonymity is an impossibility in real life, its use should be limited, too, in the online world.
The real crux though for many users isn't having themselves linked to a profile, but having that profile visible to anyone who so happens to stumble across them, or know their email address. But this fear of discovery can be traced back and compared to our real lives once again with the understanding that we are constantly being discovered. People learn about us by seeing us on the train, through word of mouth between friends of friends or through direct contact by meeting and interaction.

Man on a Train
But it's a smaller world with the Internet — the equivalent of being discovered on the train may be a man who stumbles across our Google+ profile while on a train in another country. The equivalent of word of mouth between friends of friends could be word of instant message, and direct contact may be a Google+ hangout with someone a 12-hour flight away.
It's a smaller world so we should expect  to be found in new ways and in greater numbers.
Privacy concerns are all valid, but the privacy concerns of today are quickly becoming redundant as the world quickly shifts into tomorrow, imputed by the fast progressions of the Internet and social media. People have embraced social changes in the past with email and of course the telephone, but the online identity is a lot more difficult to grasp given it's so abstract. It's almost philosophical. But to be brutally frank, those who can't seem to see the idea and value behind the public and discoverable online identity really shouldn't be on Google+ and Facebook in the first place, where it's habitual to give one's information and life story away like garbage.
Google's not evil, the company is simply growing out of old ideas and moving forward in a manner that can't fit old molds anymore. Until we all recognize that, we'll all be living in a world that won't even exist anymore.