Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Gmail Is Not A Privacy Problem
Newest First  |  Oldest First  |  Threaded View
Page 1 / 2   >   >>
MarioD578
50%
50%
MarioD578,
User Rank: Apprentice
8/17/2013 | 6:07:09 PM
re: Gmail Is Not A Privacy Problem
Great post. I suggest you read this: http://blog.mdsolutions.pe/201...
24/7Uplift
50%
50%
24/7Uplift,
User Rank: Apprentice
8/16/2013 | 7:26:08 PM
re: Gmail Is Not A Privacy Problem
The simple act of password protecting an email account is a 'reasonable expectation of privacy.' Quite like snail mail when the mailbox is under lock & key. Regardless of whether it is locked once a mailbox is put into use, it is considered federal property. As such, federal law states that it is a crime to tamper or vandalize a mailbox or its contents. Anyone found guilty of such crimes can be fined and incarcerated. So Google can consider it Google Property but should abide by the same standards for tampering as the U.S. Postal service where any type mail processing, routing & delivery comes with an expectation of privacy decreed by law.
cbabcock
50%
50%
cbabcock,
User Rank: Apprentice
8/16/2013 | 6:49:44 PM
re: Gmail Is Not A Privacy Problem
Several readers say they don't mind Google opening their email to serve them ads. Where in Google's email agreement does it say they will restrict their snooping to that purpose? On the contrary, Google assumes your information, once submitted via Gmail, is their information. It's for your good that Google brings you the world's information; also for your good that it brings your information to the world. This is a company-centric view of privacy, one that overrides individuals, and one that I remain highly uncomfortable with, Hence, I pay for my Ymail service..
Michael Endler
50%
50%
Michael Endler,
User Rank: Apprentice
8/16/2013 | 6:17:50 PM
re: Gmail Is Not A Privacy Problem
I'm really not surprised that Google has this attitude. I'm also not bothered that Google is scanning my email so it can send me targeted ads-- but I am a little bothered by the possibility the data might be used for more than that. I agree with Tom's overall point: If you don't treat the Internet like a surveillance state, you proceed at your own peril.

But this is the part that caught my attention. The Guardian pulled this quote from Google's argument:

"Just as a sender of a letter to a business colleague cannot be
surprised that the recipient's assistant opens the letter, people who
use web-based email today cannot be surprised if their communications
are processed by the recipient's ECS [electronic communications service]
provider in the course of delivery."

Asinine. In this metaphor, Google somehow equates to a colleague's assistant? Google's more like the mail carrier.

This relates to Tom's problem. If Google wants to scan data and isn't breaking any laws while doing so, that's fine. No one makes you use Gmail, so Google can do what it wants. But if they're going to explain their policies, they should do so in a way that makes sense, and that is transparent about the implications of collected data. This half-assed metaphor is pretty much the antithesis of that.
Thomas Claburn
50%
50%
Thomas Claburn,
User Rank: Ninja
8/16/2013 | 5:25:39 PM
re: Gmail Is Not A Privacy Problem
As ham-handed as Google's WiFi data gathering adventure turned out to be, I can't help but think much of it was overblown. So far as I can tell, no one was harmed in any way by the data collection. Moreover, Google was collecting data that computer users failed to secure, much as one might listen in to an open police broadcast on an unsecured radio channel. It's not as if Google was hacking anyone's encryption or tapping cables NSA-style.
rradina
50%
50%
rradina,
User Rank: Apprentice
8/16/2013 | 12:04:43 AM
re: Gmail Is Not A Privacy Problem
Well, there's no free lunch and even if very few would choose to pay, surely Google has a few spare, one-time developer cycles that could easily and quickly add a "do not scan" list to their mail mining operation. IMO, such an option would squelch most detractors whose current complaints have merit -- especially after Google's rather trite response.
GHCro
50%
50%
GHCro,
User Rank: Apprentice
8/15/2013 | 10:59:46 PM
re: Gmail Is Not A Privacy Problem
Right on, Tom. It's useless and stupid to say "I'm shocked, shocked to learn what Google's Ts and Cs say." Right on again, about what to do if you don't like it. Use self-help. Start using tools like Tails & TOR for browsing, Textcrypt for text messages and Cellcrypt for mobile phone calls. Then, take everything off of Dropbox, Instagram, iCloud, etc, and stash it all in a Cloudlocker (www.cloudlocker.it) which works just the same but stays in the house where they still need a warrant to get inside.

I'm sure we're going to seem more and better tools like these appear soon as good ol Yankee ingenuity revs up. Unless, of course, everyone gets lazy again and leaves themselves wide open until
the next big expos+.
Shane M. O'Neill
50%
50%
Shane M. O'Neill,
User Rank: Apprentice
8/15/2013 | 8:35:29 PM
re: Gmail Is Not A Privacy Problem
I was saying to someone the other day that Google and Facebook are best things that ever happened to the government.
Shane M. O'Neill
50%
50%
Shane M. O'Neill,
User Rank: Apprentice
8/15/2013 | 8:35:17 PM
re: Gmail Is Not A Privacy Problem
Not a bad idea to have free and premium Gmail services. But not sure many users are willing to pay for web-based email. It would just make them angrier at Google for forcing them to pay $$ for peace of mind.
RobPreston
50%
50%
RobPreston,
User Rank: Apprentice
8/15/2013 | 8:17:25 PM
re: Gmail Is Not A Privacy Problem
Google's "just as a sender of a letter to a business colleague" metaphor was absolutely ham-handed. Or to use another food metaphor, comparing apples to oranges.
Page 1 / 2   >   >>


COVID-19: Latest Security News & Commentary
Dark Reading Staff 7/14/2020
Omdia Research Launches Page on Dark Reading
Tim Wilson, Editor in Chief, Dark Reading 7/9/2020
Why Cybersecurity's Silence Matters to Black Lives
Tiffany Ricks, CEO, HacWare,  7/8/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Special Report: Computing's New Normal, a Dark Reading Perspective
This special report examines how IT security organizations have adapted to the "new normal" of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
Flash Poll
The Threat from the Internetand What Your Organization Can Do About It
The Threat from the Internetand What Your Organization Can Do About It
This report describes some of the latest attacks and threats emanating from the Internet, as well as advice and tips on how your organization can mitigate those threats before they affect your business. Download it today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-11083
PUBLISHED: 2020-07-14
In October from version 1.0.319 and before version 1.0.466, a user with access to a markdown FormWidget that stores data persistently could create a stored XSS attack against themselves and any other users with access to the generated HTML from the field. This has been fixed in 1.0.466. For users of...
CVE-2020-5246
PUBLISHED: 2020-07-14
Traccar GPS Tracking System before version 4.9 has a LDAP injection vulnerability. It occurs when user input is being used in LDAP search filter. By providing specially crafted input, an attacker can modify the logic of the LDAP query and get admin privileges. The issue only impacts instances with L...
CVE-2019-12773
PUBLISHED: 2020-07-14
An issue was discovered in Verint Impact 360 15.1. At wfo/help/help_popup.jsp, the helpURL parameter can be changed to embed arbitrary content inside of an iFrame. Attackers may use this in conjunction with social engineering to embed malicious scripts or phishing pages on a site where this product ...
CVE-2019-12783
PUBLISHED: 2020-07-14
An issue was discovered in Verint Impact 360 15.1. At wfo/control/signin, the rd parameter can accept a URL, to which users will be redirected after a successful login. In conjunction with CVE-2019-12784, this can be used by attackers to "crowdsource" bruteforce login attempts on the targe...
CVE-2019-12784
PUBLISHED: 2020-07-14
An issue was discovered in Verint Impact 360 15.1. At wfo/control/signin, the login form can accept submissions from external websites. In conjunction with CVE-2019-12783, this can be used by attackers to "crowdsource" bruteforce login attempts on the target site, allowing them to guess an...