Advertisement
Promo

Compliance Toolkit

HP's email bugging secrets revealed

Joris Evers CNET News

Published: 29 Sep 2006 09:35 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

…when viewing the source of the email, for example through a program such as Notepad. A firewall could alert the user of the Web traffic, however.

"ReadNotify uses a combination of up to 36 different simultaneous tracking techniques," Chris Drake, the company's Sydney, Australia-based chief technology officer said in an email interview. "One or more of these usually works in all different email clients and operating systems, making us the most powerful and reliable tracking service on the Internet."

In short, ReadNotify uses more technologies than simple Web bugs, Drake said. "All good email programs have blocked these now and most anti-spam programs reject them too, so we no longer rely on this simplistic tracking idea."

During testimony before Congress on Thursday, the legality of including a bug in email messages was questioned.

"I think the law regarding that is not as clear as it should be," Larry Sonsini, HP's outside lawyer, said in response to questions from Representative Jay Inslee, a Washington state Democrat. "Depending on how it is used and the methodologies, it could very well implicate federal or state statutes," Sonsini said.

In the terms of use posted on its Web site, ReadNotify stipulates that its services should be used for "lawful purposes only". The company goes on to say that its product should not be used to transmit "intentionally deceptive email messages".

"Occasionally, we're asked about privacy and legal issues," Drake said. Essentially, ReadNotify believes an email author can do whatever he pleases with the message, including tracking it. "It is important to understand firstly that just because an email comes into your inbox, it does not make it yours. When a person puts the effort into thinking up an email and composing it: that email is theirs."

ReadNotify doesn't monitor its clients, but Drake has had praise and questions about the service, he said. "We do know that we are heavily used by law enforcement in combating both online crime, and real-world crime that has online aspects," Drake said. "The most interesting event was about two years ago, when our service helped recover a kidnapped child when a tracked email provided an international location that led to a safe recovery."

Use of the email bug is one of the possibly illegal methods used in HP's investigation into boardroom leaks. The company is also facing heat over the use of "pretexting", which refers to the use of fraudulent means to obtain someone else's personal records.

In testimony on Thursday, chief executive Mark Hurd said it is important for the company to lead, not follow when it comes to consumer privacy. "I am going to go back to that technology and look specifically at every use of that kind of send-receive technology and make sure there is absolute clarity," he said of the use of email tracing.

Adler's testimony was part of a full day of hearings into the HP spying scandal by an oversight and investigations subcommittee of the House of Representatives' Energy and Commerce Committee. Hurd and former chairman Patricia Dunn also testified, but several other HP employees and contractors invoked their Fifth Amendment rights against self-incrimination.

Next

Previous

1 2


  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
242 out of 427 people found this useful


Full Talkback thread

2 comments

  1. Instead of avoiding HTML emails altogether, you co... mroonie
  2. Email virus... er' tracking software like ReadNoti... Marilee Veniegas, Essential Security Software

Company/Topic Alerts

Create a new alert from the list below:







Video icon

Video

Cloud Watch Special Report

Five cloud computing myths exploded

Five cloud computing myths exploded

Analysis The cloud is providing a fertile habitat for the marketeers and their exaggerated claims. We examine the hokum and debunk the five most frequently peddled misconceptions about the cloud

More Special Reports

Sentry Posts Blog

Official Organizations Losing Data

How does this article from earlier today make you feel? How many more government, health service, or military officials are going to lose pen drives, DVDs, USB hard disks and even entire... More

2 comments

Twitter hack was DNS redirect

Twitter has said an attack on Thursday which took the site offline for many users was the result of a DNS redirect. A group calling itself the Iranian Cyber Army redirected users... More

1 comment

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters