Technology news and Jobs arrow Technology Lifestyle arrow Google email flaw another reminder that life online is insecure
Google email flaw another reminder that life online is insecure E-mail
by Alex Zaharov-Reutt   
Thursday, 04 January 2007
Google have plugged the email flaw that allowed hackers to harvest Gmail addresses from the address books of Gmail users surfing the web but still logged into their Gmail account. It’s yet another warning to big companies that security and our data are of paramount importance to us, and should be to them, too.

Many have brushed off the flaw as relatively unimportant, but with this being the Month of Apple bugs and with the recent discovery of the first Vista security flaw, the companies we rely on to store our data and whose software, hardware or services we use to create and work on information have to step up security efforts a few notches more.

Software licenses and the guarantees they come with are not only often incomprehensible to most people, the guarantees themselves usually guarantee nothing at all. Software and online services are often delivered ‘AS IS’. We’ve often read stories about how if software companies had to live up to the same standards as any other company, the software we all use would be dramatically more reliable, while also speculating on how bad cars would be if they could be sold on as ‘AS IS’ basis.

Google took some 30 hours to respond to the publication of the latest Gmail breach, and complained that the teenage bug discoverer should have contacted them first to give Google time to fix the problem before ‘everyone’ knew about it.

I guess software fixes take time to write, but 30 hours gives anyone the ability to run a zero day attack, if they know what they’re doing. I certainly wouldn’t know how without searching the Internet to find out, but it’d probably take me a lot more than 30 hours to get it all working. Of course I’m not interested in personally hacking anyone’s computer (other than, I suppose, my own), so I don’t spend much time, if any, on the topic.

There is also speculation that spammers have known about this flaw for some time, and have been potentially harvesting millions of legitimate Gmail addresses.

Google also had a different set back with Gmail in the last week – a very small number of users logged onto Gmail only to find that their email was deleted, potentially irretrievably. Google claimed that less than 100 users worldwide were affected.

Still, all of this shows us how fragile our data can be, especially when hosted online. If you do host online, whether as a private individual or as a company, you need to make sure that you have backups on your own computer, and if you really care about your data, you need to make backups on removable storage, like a CD, DVD, tape or portable/external hard drive from any number of companies out there.

Life online is insecure. Just like life in the offline, real world. If you step onto the street without looking where you’re going, your last thought might be ‘hey, what’s this bus doing on top of me?’.

The only things we consumers can do is to ensure we have good backups of all our data, and to check that the services we use (whether online, or on our PCs) have a simple and easy to use backup and restore function. We also need to let companies that offer software-as-a-service know that we expect the highest levels of service and quality from them, whether free or paid, and especially if as a paid service, if they want us to trust using their services.

And one of these days, software companies have to get real about providing proper warranties and guarantees. I’ve no idea when that day will come, but just as Microsoft recently extended their Xbox 360 warranty from 90 days to 1 full year, all software companies will one day have to change their tune, provide quality of service guarantees and warrant that their software will do what it says on the box, and not take the ‘AS IS’ route.
{moscomment}

Powered By Joomla Tags

Please enable JavaScript in your browser to post your comment!

 
< Next story in category   Previous story in the category >
iTWire user statistics Visitors last 30 days
694,279
Subscribers 15,210
#1 independent technology news advertise here
  •   *  
  • Search
  • AdvSeach
  • Login
  • Events
  • FreeStuff

- Advertisement -

Featured Whitepapers

Follow iTWire on Twitter

About iTWire

iTWire is all about technology news, information, jobs and community for the IT and telecommunications industry professional. Subscribe to our free ICT daily newsletter