ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Emerging tech Toolkit

Rights groups call for ID tracking laws

Published: 09 Mar 1999 10:46 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

In the wake of Microsoft Corp.'s decision to revamp its Windows registration process to prevent users' personal information from being transmitted without their consent, Internet and privacy watchdog groups are calling for legislation to protect rights of users -- both on and offline.

"This is another example of how technology that allows for the collection and transfer of data is quickly outstripping any protections that we are granted by law," said Barry Steinhardt, associate director of the American Civil Liberties Union on Monday. It was revealed over the weekend that Microsoft's registration program collected a "unique identifier" from user's computers and software, a number, without asking permission. Theoretically, Microsoft could couple the user's registration information with his or her computer's ID numbers -- a potent technology for tracking movements over the Internet.

While still investigating this issue, the company said it will modify Windows to fix the registration process so that it no longer sends the system's hardware ID number when a user requests that such information not be sent. In a letter to its customers on Monday, Microsoft downplayed the issue. The letter said only that "there are hypothetical scenarios in which this number could be used to learn something about the user's system without his or her knowledge."

Privacy advocates, however, noted this was the second company in as many months trying to play "pin the number on a user." Last month it was revealed that Intel's Pentium III chip carries potential personal identification information. Ari Schwartz, a policy analyst with the Washington, D.C.-based Internet watchdog Centre for Technology and Democracy, said the problem is that there is no "baseline legislation that guarantees rights." He noted that what the industry wants to do with these technologies is authenticate information -- whether it's for protecting software from piracy or guaranteeing a transaction is real on the Internet.

To date, that has been equated with identifying the user in order to hold someone responsible. "In the real world, transactions are authenticated with cash, not with your identity," said Schwartz, adding that a similar method should be used in cyberspace. "We would like privacy and authentication to cohabitate."

But some people who are on Intel and Microsoft's side of this issue are bristling at the attention that privacy issues have been receiving in recent days. "Is fraud or ID theft a greater social concern than privacy?" asked Chet Dalzell, spokesman for the Direct Marketing Association. "The answer to that question will guide companies that bring this technology to market."

Already, some guidance is coming from Congress. This year, Senator Conrad Burns, R-Mont., introduced the Online Privacy Protection Act of 1999, which will guarantee users some rights when online. "The bill will mainly deal with what information a company can get access to with and without your permission," said Matt Raymond, a spokesman for Burns. But analysts say the draft legislation does not go far enough. "It could address some of the issues," said CDT's Schwartz, "but it will not answer the main questions about authentication."

It's been several weeks after PC chip maker Intel outlined its controversial scheme to add a unique serial number to each of its new Pentium III chips, as first reported by ZDNN. The serial number uniquely identifies each processor and is accessible through software. A week after Intel announced the feature, Scott McNealy, president and CEO of server and software maker Sun Microsystems, told attendees at the company's Jini product launch that they "have no privacy" and to "get over it."

That statement and Sun's membership in the Online Privacy Alliance has given rights watchers reason to question the industry's commitment to self-regulation. "I think that was a terrible mistake on Scott's part," said Richard M. Smith, president of development tools creator Phar Lap Software Inc. -- and the first person to point out the dangers of Microsoft's collection of hardware IDs. "This is just another brick in the wall, more than anything else."

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
52 out of 110 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:










Related Jobs

Systems Administrator

The role will be focused around the delivery of a platform that will run a multi-player chat/ community/registration suite of applications. It is ...

Test Analyst

It is unlawful to employ a person in a UK-based job who does not have permission to live and work in the Ability to perform SQL queries Watir ...

Project Manager

It is unlawful to employ a person in a UK-based job who does not have permission to live and work in the UK. Huntress does not discriminate on the ...

Featured Talkback

While full medical records may be of (dubious) value at rear/base medical facilities, these could be provided much simpler by either physical disk or electronic transfer to an "in theatre" database for individuals posted in. That £80m (and it's associated running costs) could have been far better employed in resuscitating a disbanded infantry battalion or providing a big boost in equipment quality and quantity.

By: 1000215420

Read full story:
Photos: MoD unveils £80m IT health programme