backtop


Print 41 comment(s) - last by bbomb.. on Aug 8 at 11:15 PM


Screen capture from AOL's website before it was taken down -- Image courtesy Texturabtion
AOL does the unthinkable

AOL grabbed headlines last week when it announced that it was making its online services freely available to anyone with Internet access. Today, the company is making news for what is an inexplicable turn of events. The company freely made available the private search history of over 650,000 users without permission. The 439MB compressed download features over 20 million search queries over a three month period and was made available on AOL's research website along with a readme file detailing the results. In an effort to ease damage control, AOL has removed both links, but mirrors for both search data and the AOL readme (for better or worse) are mirrored at multiple sites.

The vast amount of data included in these search queries is staggering and the possibilities for abuse are endless. TechCrunch reports:

AOL has released very private data about its users without their permission. While the AOL username has been changed to a random ID number, the ability to analyze all searches by a single user will often lead people to easily determine who the user is, and what they are up to. The data includes personal names, addresses, social security numbers and everything else someone might type into a search box. The most serious problem is the fact that many people often search on their own name, or those of their friends and family, to see what information is available about them on the net. Combine these ego searches with porn queries and you have a serious embarrassment. Combine them with “buy ecstasy” and you have evidence of a crime. Combine it with an address, social security number, etc., and you have an identity theft waiting to happen.

It’s one thing to make private search data available to the federal government upon request (and even that has been widely debated over the past eight months), but to make it freely available from a public website is downright malicious. It’d be interesting to see what AOL’s response to this whole fiasco will be.



Comments     Threshold


This article is over a month old, voting and posting comments is disabled

A little over board
By OrSin on 8/7/2006 12:04:32 PM , Rating: 2
This is tarting to sound like Tom's forums. This is way over baord. The user name is not give nor is any person information about the user. He trying to make you think becuase someone might lookup thier own name that that alone is eoungh to find some one. Guess what most users that look thier own name will lookup 30 others as well. Most people did thier own name lookup about 5 years ago, now thye search for everything else. The article is perfect example of how the media runs with something in the worng direction. And guess what if it was so bad then why link to the mirror sites.




RE: A little over board
By masher2 (blog) on 8/7/2006 12:12:26 PM , Rating: 2
> "And...if it was so bad then why link to the mirror sites [?]"

I found that most amusing of all. A holier-than-thou attitude, right next to a direct link to the data itself. What a way to have your cake and eat it too.


RE: A little over board
By Atrye on 8/7/2006 12:57:45 PM , Rating: 2
hah, yes.. But has anyone considered the possibility that someone inside AOL may have done this without any approval?


RE: A little over board
By dagamer34 on 8/7/2006 1:13:53 PM , Rating: 2
People often search their name and addresses near them. Each AOL ID is randomized, but it stays the same for every search query the user made.

In otherwords, it's pretty easy to figure out some people's names. I'm pretty sure this violates a couple of laws, and is the primary reason why people don't agree that anyone should be keeping tabs like this, even the government to an extent.


RE: A little over board
By RamarC on 8/7/2006 3:38:07 PM , Rating: 1
quote:
People often search their name and addresses near them.

I often search for restaurants. Does that mean I'm CafeOle@aol.com

quote:
Each AOL ID is randomized, but it stays the same for every search query the user made. In otherwords, it's pretty easy to figure out some people's names.

23,456 out of 12,234,123 is easy to figure out?

quote:
I'm pretty sure this violates a couple of laws, and is the primary reason why people don't agree that anyone should be keeping tabs like this, even the government to an extent.

I'm often pretty sure the guy I'm playing poker with isn't holding a queen. I'll tell you from experience, pretty sure don't mean diddly.

If ANY company you deal with has data that involves your habits, it is perfectly LEGAL for them to use and sell that data so long as you cannot be identified from the data and the company has issued and properly maintained legalese informing you of that fact.

Credit card issuer(s) make(s) a boatload of money from selling purchase histories (and have done so for decades ). Retailers analyze their sales register receipts (which includes the CC transaction number) scrupulously to detect patterns and profiles. I'll bet some local retailer knows what type of movies/dvds/games you like. I'll definitely bet a certain cashier knows what type of beer or soda you prefer.

My point is this: you are not now, nor have you ever been completely anonymous. The thing you're reading this on and typing a reply on is what has caused your level of anonymity to decline but it is not the cause of it.

Most folks names, addresses, and phone numbers and in a book that gets sent to most other folks in their vicinity. Should the phone company be sued for the utter invasion of privacy that is the 'white pages'?


RE: A little over board
By mindless1 on 8/8/2006 3:41:59 PM , Rating: 2
You miss the entire point, that information does't NECESSARILY have to be correctly interpreted, let alone true, to be used against you. A very very large part of mitigating the effect is not prevention but LIMITATION in access to the information.

So what if some somebody can find some tidbit? That's a lot different than a goldmine large enough to make a systematic harvesting worthwhile for someone with ill intentions.


RE: A little over board
By Bonesdad on 8/7/2006 3:31:32 PM , Rating: 2
oh god, here we go again..."it's the media's fault that so many people suck". AOL bears sole responsibility for this unforgiveable act. Any real American can see that.


RE: A little over board
By smitty3268 on 8/7/2006 3:55:19 PM , Rating: 2
It may be a bit overboard, but this is pretty darn bad. If you're so sure it isn't, how about you post every single search query you've made in the past year here, and the rest of us will look over it and try to figure out everything we can about you. We could make it a little game, and perhaps you could give out a $50 prize to anyone who managed to dig up your personal phone number and give you a call. ???


"We don't know how to make a $500 computer that's not a piece of junk." -- Apple CEO Steve Jobs

Related Articles
Setting AOL Free
August 3, 2006, 4:56 AM













botimage
Copyright 2014 DailyTech LLC. - RSS Feed | Advertise | About Us | Ethics | FAQ | Terms, Conditions & Privacy Information | Kristopher Kubicki