On TechRepublic: Five super-secret features in Windows 7
BNET Business Network:
BNET
TechRepublic
ZDNet

August 9th, 2006

AOL demonstrates why cookies are evil

Posted by Richard Stiennon @ 10:38 am

Categories: Security, Security Industry News, Spyware

Tags:

evilcookie.jpgI have been put on the spot often enough for defending people’s rights to remove cookies that I am rather sensitive to the issue.  I have never been comfortable talking about invasion of privacy because it makes me sound a bit paranoid. Rather, I have fallen back on the argument "people don’t like cookies so they should be able to remove or block them." 

 

Now that AOL has blundered and posted 20 million search queries of 650,000 AOL users this issue has come back to haunt us. After realizing just how stupid it was to reveal even "anonymized" data, AOL pulled the information off their server. But the cat is out of the bag.  The NYT  reports how one such AOL subscriber was tracked down just from her searches:

And search by search, click by click, the identity of AOL user No. 4417749 became easier to discern. There are queries for “landscapers in Lilburn, Ga,” several people with the last name Arnold and “homes sold in shadow lake subdivision gwinnett county georgia.”

It did not take much investigating to follow that data trail to Thelma Arnold, a 62-year-old widow who lives in Lilburn, Ga., frequently researches her friends’ medical ailments and loves her three dogs. “Those are my searches,” she said, after a reporter read part of the list to her.

Scary.  Try it for yourself. Here are a bunch of mirrors for the 439 Mb data set.  (Don’t bother bidding for it on eBay) Or just for fun someone put together a search utility here.  Search for a few common terms like anthrax, flight school, fertilizer. You get the picture. 

Now, imagine you have not only search history but browsing history as well. That is what a spyware or third party cookie application collects. Are you comfortable with that amount of databeinng collected? Are you comfortable with Claria’s "new business model" that collects browsing history? Are you paranoid yet? 

 

 

Richard Stiennon is an industry consultant. See his full profile and disclosure of his industry affiliations.

  • Talkback
  • Most Recent of 7 Talkback(s)
Your article's title is wrong ...
... it should read

"Cookies demonstrate why AOL is evil"

There is nothing wrong with cookies. They are tremendously useful but some companies misuse them. Should I dump all my kit... (Read the rest)
Posted by: bportlock Posted on: 08/14/06 You are currently: a Guest | | Terms of Use
Escape this junk permanently  919owner | 08/09/06
Re: AOL demonstrates why cookies are evil  none none | 08/09/06
YES -- don't remove cookies!  ChazzMatt | 08/14/06
Social Search  owidder | 08/09/06
Sorry  owidder | 08/09/06
Sorry again  owidder | 08/09/06
Your article's title is wrong ...  bportlock | 08/14/06

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

Top Rated

    advertisement

    Archives

    Favorite Links

    ZDNet Blogs

    White Papers, Webcasts, and Downloads

    Enterprise Applications

    • Check out some of the easiest and most powerful ways to boost productivity while saving money on your application infrastructure. See ZDNet's comprehensive Enterprise Application resource center, now!
    • New Online Dashboard
    • Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems. Oracle Topline