<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msmvps.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>/bill's House O Insomnia&lt;img src="http://www.williamgryan.com/images/originalcuckoo.jpg" alt="Bill Ryan" /&gt; : Privacy</title><link>http://msmvps.com/blogs/williamryan/archive/tags/Privacy/default.aspx</link><description>Tags: Privacy</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>Using Facebook to launch a Botnet army</title><link>http://msmvps.com/blogs/williamryan/archive/2008/09/06/using-facebook-to-launch-a-botnet-army.aspx</link><pubDate>Sat, 06 Sep 2008 17:07:41 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1647010</guid><dc:creator>William</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/williamryan/rsscomments.aspx?PostID=1647010</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/williamryan/commentapi.aspx?PostID=1647010</wfw:comment><comments>http://msmvps.com/blogs/williamryan/archive/2008/09/06/using-facebook-to-launch-a-botnet-army.aspx#comments</comments><description>&lt;p&gt;&lt;a href="http://blog.wired.com/27bstroke6/2008/09/researchers-use.html"&gt;Wired has a piece talking about how easy this would be to do.&lt;/a&gt;&amp;nbsp; It&amp;#39;s not entirely speculative since researchers built such a beast.&amp;nbsp; I think the hype is a bit much though.&amp;nbsp; The argument they make could be made for any mechanism that can get people to install software on their own computers.&amp;nbsp; But unlike most other means, such an attack seems really easy to countermeasures.&amp;nbsp; It wouldn&amp;#39;t take long to figure it out and Facebook could easily send out a notice telling you to uninstall it. Much like human viruses, computer viruses and botnets are only really effective if they are allowed to exist in the infected host for a period of time, at least long enough to spread in the case of viruses, or long enough to be used in the case of botnets.&amp;nbsp; I&amp;#39;m not so naive to think that some Facebook users aren&amp;#39;t all that computer savvy, but overall I think it&amp;#39;s a demographic that&amp;#39;s fairly sophisticated. And they talk to each other a lot. Even if every facebook users downloaded the app (something really hard to fathom), it seems it would be pretty easy to eradicate. The more popular and more pernicious the bots, the more buzz there would be.&amp;nbsp; That&amp;#39;s not to say they don&amp;#39;t raise some good points and that Facebook shouldn&amp;#39;t try to prevent such things from happening, but it seems like it&amp;#39;s only worrisome in the theoretical sense.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1647010" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/williamryan/archive/tags/News/default.aspx">News</category><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Mindless+Babbling/default.aspx">Mindless Babbling</category><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Misc+Technology/default.aspx">Misc Technology</category><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Security/default.aspx">Security</category><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Privacy/default.aspx">Privacy</category></item><item><title>Privacy is an outdated notion</title><link>http://msmvps.com/blogs/williamryan/archive/2008/02/10/privacy-is-an-outdated-notion.aspx</link><pubDate>Mon, 11 Feb 2008 01:16:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1507309</guid><dc:creator>William</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/williamryan/rsscomments.aspx?PostID=1507309</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/williamryan/commentapi.aspx?PostID=1507309</wfw:comment><comments>http://msmvps.com/blogs/williamryan/archive/2008/02/10/privacy-is-an-outdated-notion.aspx#comments</comments><description>&lt;p&gt;That&amp;#39;s not to say that I like that fact, or that I don&amp;#39;t lament it, but if you really think about it, it&amp;#39;s hard to deny.&amp;nbsp; After 9/11, I was reading a Wall Street Journal aritcle discussing the national id card.&amp;nbsp; Larry Ellison was a big supporter of it (and more cynical people believed his motivations were financial in that Oracle databases were the most likely ones to be used to implement such a scheme) and countered the privacy objections by saying something to the effect of &amp;quot;privacy is an illusion, you don&amp;#39;t have any&amp;quot;. He went on to point out that we get filmed x hundred times a day without even knowing it most of the time. All of our cell calls are logged. SMS messages are all logged. Same for email. And since we decreasingly use cash, most of our purchases are tracked as well.&amp;nbsp; So his point is that we&amp;#39;d gain security and give up little to no liberty, so why not?&amp;nbsp; I really hate this fact, but it&amp;#39;d be hard to disagree with him - at least in his assessment of the &amp;#39;problem&amp;#39;, there are many objections against the solution.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.popsci.com/scitech/article/2008-02/anonymity-experiment"&gt;This post&lt;/a&gt;&amp;nbsp;won&amp;#39;t come as a surprise to anyone and I bet to some extent, we&amp;#39;ve all done this to ourselves already, but it does drive the point home.&amp;nbsp; I remember reading a book called &lt;a href="http://www.amazon.com/How-Be-Invisible-Essential-Protecting/dp/0312319061/ref=pd_bbs_sr_1?ie=UTF8&amp;amp;s=books&amp;amp;qid=1202692889&amp;amp;sr=8-1"&gt;How to Be Invisible&lt;/a&gt;&amp;nbsp;several years ago and really liked it. It might sound like one of those Paladin Press &amp;quot;Never pay taxes again&amp;quot; types of books, but it&amp;#39;s not.&amp;nbsp; In fact, the author is quite militant when it comes to people using his suggestions to break the law.&amp;nbsp; His whole concept is how to keep yourself off the grid while living legally - that there are many cases of people being stalked, killed, or just bothered b/c of publicly available information so it pays to keep yourself off the grid. After 9/11 he said many of his suggestions should no longer be used b/c trying to keep things private took on a new meaning.&amp;nbsp; I remember the book&amp;#39;s opening quote &amp;quot;Government&amp;#39;s keep secrets from people, why then should people not be allowed to keep secrets from government&amp;quot;&amp;nbsp; I still paruse his &lt;a href="http://www.howtobeinvisible.com/"&gt;http://www.howtobeinvisible.com/&lt;/a&gt;&amp;nbsp;and this sort of stuff makes me think I ought to go through and read the updated book again.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1507309" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Security/default.aspx">Security</category><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Privacy/default.aspx">Privacy</category></item><item><title>Mujihadeen Secrets II</title><link>http://msmvps.com/blogs/williamryan/archive/2008/02/10/mujihadeen-secrets-ii.aspx</link><pubDate>Mon, 11 Feb 2008 00:25:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1507262</guid><dc:creator>William</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/williamryan/rsscomments.aspx?PostID=1507262</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/williamryan/commentapi.aspx?PostID=1507262</wfw:comment><comments>http://msmvps.com/blogs/williamryan/archive/2008/02/10/mujihadeen-secrets-ii.aspx#comments</comments><description>&lt;p&gt;Increasingly, I read stuff in &amp;#39;serious&amp;#39; publications and have to wonder if it wasn&amp;#39;t supposed to be posted to the Onion instead.&amp;nbsp; &lt;a href="http://blogs.csoonline.com/a_gift_from_the_islamic_faithful_network_mujahedeen_secrets_2_program"&gt;This is a perfect example&lt;/a&gt;&amp;nbsp; .&amp;nbsp; The map of their &amp;#39;locations&amp;#39; is priceless.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1507262" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Security/default.aspx">Security</category><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Privacy/default.aspx">Privacy</category></item><item><title>Is this legal?</title><link>http://msmvps.com/blogs/williamryan/archive/2008/01/06/is-this-legal.aspx</link><pubDate>Sun, 06 Jan 2008 20:15:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1442092</guid><dc:creator>William</dc:creator><slash:comments>3</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/williamryan/rsscomments.aspx?PostID=1442092</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/williamryan/commentapi.aspx?PostID=1442092</wfw:comment><comments>http://msmvps.com/blogs/williamryan/archive/2008/01/06/is-this-legal.aspx#comments</comments><description>&lt;p&gt;&lt;a href="http://www.schneier.com/blog/archives/2008/01/is_sears_engagi.html"&gt;Bruce Schneier has a new article on a program that Sears is installing on people&amp;#39;s computers.&amp;nbsp;&lt;/p&gt;&lt;/a&gt;Money quote:&amp;nbsp; &lt;em&gt;&amp;quot;If a kid with a scary hacker name did this sort of thing, he&amp;#39;d be arrested. But this is Sears, so who knows what will happen to them. But what should happen is that the anti-spyware companies should treat this as the malware it is, and not ignore it because it&amp;#39;s done by a Fortune 500 company.&amp;quot;&lt;/em&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1442092" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/williamryan/archive/tags/News/default.aspx">News</category><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Misc+Technology/default.aspx">Misc Technology</category><category domain="http://msmvps.com/blogs/williamryan/archive/tags/Privacy/default.aspx">Privacy</category></item></channel></rss>