Interesting People mailing list archives
Beware Software Gifts from the MPAA
From: David Farber <dave () farber net>
Date: Fri, 23 Nov 2007 13:48:36 -0500
Begin forwarded message: From: Lauren Weinstein <lauren () vortex com> Date: November 23, 2007 12:17:07 PM EST To: dave () farber net Cc: lauren () vortex com Subject: Beware Software Gifts from the MPAA Beware Software Gifts from the MPAA http://lauren.vortex.com/archive/000330.html Greetings. I'm on record as supporting *reasonable* efforts by the MPAA, RIAA, and their various cohorts to protect their intellectual property assets. However, a software tool being distributed to universities by the MPAA, supposedly to help them internally track student file sharing (and remember, there are efforts to make such tracking a requirement of federal law) appears to leak information like a sieve, not just to the MPAA but to the entire Internet ( http://tinyurl.com/yr8bsq ). Part of the MPAA toolkit's data leakage is obviously intentional -- like the "phone home" aspect that reveals a new installation to MPAA servers. Other aspects, like the open Web server that the toolkit installs, which exposes collected data publicly, may simply be the result of design incompetence. Either way, I agree with those observers who suggest that installing this free software mess would be a big mistake on the part of university system administrators. The MPAA now says that the current release that they've been pushing to the educators is only the beta version. I'm all in favor of betas, even extended ones, but a cardinal rule of software development says that you don't allow beta software to be used in outside production environments unless it has at least been vetted for major security and privacy problems. In this case, the problems with the MPAA software are so obvious that they call into question the veracity -- or at least the competence -- of the entire project. When our policymakers consider the desires of the entertainment industry to turn university IT departments into intellectual property cops, I hope that this particular fiasco will be duly noted. --Lauren-- Lauren Weinstein lauren () vortex com or lauren () pfir org Tel: +1 (818) 225-2800 http://www.pfir.org/lauren Co-Founder, PFIR - People For Internet Responsibility - http://www.pfir.org Co-Founder, NNSquad - Network Neutrality Squad - http://www.nnsquad.org Founder, PRIVACY Forum - http://www.vortex.com Member, ACM Committee on Computers and Public Policy Lauren's Blog: http://lauren.vortex.com ------------------------------------------- Archives: http://v2.listbox.com/member/archive/247/=now RSS Feed: http://v2.listbox.com/member/archive/rss/247/ Powered by Listbox: http://www.listbox.com
Current thread:
- Beware Software Gifts from the MPAA David Farber (Nov 23)