Privacy Digest

News that can impact your privacy.
Login/Register
What is OpenID?
  • Log in using OpenID
  • Cancel OpenID login
  • Create new account
  • Request new password
Home Blogs MacRonin's blog
    • FAQ
    • Wishlists
    • Contact
    • Categories/RSS

Bookmark Us

Bookmark Privacy Digest 
Bookmark This Page 

Syndicate

Syndicate content
more

Advertisements

Tracking System
Tracking System
Private Detectives
Quality Security Services in California
Fleet Management
Hosting

Popular content

Last viewed:

  • Secret Spying Court Stays Secret, Rejects ACLU Plea Again
  • Corporate Critic Fights to Keep Internet Anonymity
  • In This Edition of Privacy Theater, Google's Cookie Monster
  • NORAD TRACKS SANTA 2008
  • Researchers: Disk Encryption Not Secure
  • ACLU Sues Over Unconstitutional Dragnet Wiretapping Law
  • Reaping Results: Data-Mining Goes Mainstream

tags in Topics

Activists Alert Anonymity Companies Congress Copyright Court (US) Databases Data Mining Editorial EFF Entertainment Exploits Fourth Amendment Government Hmmm ID Infrastructure Law Enforcement Laws Politics Privacy Remember Reports Rights Security Spin Zone Surveillance Telecommunications Tracking
more tags

View blog authority
Congressional Research
Broadcast Flag

If You're Going to Track Me, Please Use Cookies

Submitted by MacRonin on July 14, 2009 - 11:39am
  • Activists
  • Advertising
  • Anonymity
  • Data Mining
  • Editorial
  • Hmmm
  • Infrastructure
  • Privacy
  • Spin Zone
  • Tracking

If You're Going to Track Me, Please Use Cookies: Via Freedom to Tinker.

Web cookies have a bad name. People often complain -- with good reason -- about sites using cookies to track them. Today I want to say a few words in favor of tracking cookies.

[Technical background: An HTTP "cookie" is a small string of text. When your web browser gets a file from a site, the site can send along a cookie. Your browser stores the cookie. Later, if the browser gets another file from the same site, the browser will send along the cookie.]

What's important about cookies, for our purposes, is that they allow a site to tell when it's seeing the same browser (and therefore, probably, the same user) that it saw before. This has benign uses -- it's needed to implement the shopping cart feature of e-commerce sites (so the site knows which cart is yours) and to remember that you have logged in to a site so you don't have to log in over and over.

The dark side of cookies involves "hidden" sites that track your activities across the web. Suppose you go to A.com, and A.com's site includes a banner ad that is provided by the advertising service AdService.com. Later, you go to B.com, and B.com also includes a banner ad provided by AdService.com. When you're reading A.com and your browser goes to AdService.com to get an ad, AdService.com gives you a cookie. Later, when you're reading B.com and your browser goes back to AdService.com to get an ad, AdService.com will see the cookie it gave you earlier. This will allow AdService.com to link together your visits to A.com and B.com. Ad services that place ads on lots of sites can link together your activities across all of those sites, by using a "tracking cookie" in this way.

The obvious response is to limit or regulate the use of tracking cookies -- the government could limit them, industry could self-regulate, or users could shun sites that associate themselves with tracking cookies.

But this approach could easily backfire. It turns out that there are lots of ways for a site to track users, by recognizing something distinctive about the user's computer or by placing a unique marker on the computer and recognizing it later. These other tracking mechanisms are hard to detect -- new tracking methods are discovered regularly -- and unlike cookies they can be hard for users to manage. The tools for viewing, blocking, and removing cookies are far from perfect, but at least they exist. Other tracking measures leave users nearly defenseless.

My attitude, as a user, is that if a site is going to track me, I want them to do it openly, using cookies. Cookies offer me less transparency and control that I would like, but the alternatives are worse.

If I were writing a self-regulation code for the industry, I would have the code require that cookies be the only means used to track users across sites.

Read Original Article (Via Freedom to Tinker.)

Bookmark/Search this post with:
  • Twitter Twitter
  • Digg Digg
  • StumbleUpon StumbleUpon
  • Technorati Technorati
  • del.icio.us del.icio.us
  • Facebook Facebook
  • Furl Furl
  • LinkedIn LinkedIn
  • Yahoo Yahoo
  • MacRonin's blog
  • Add new comment

Recent blog posts

  • In Bid to Sway Sales, Cameras Track Shoppers
  • Unprecedented 25-Year Sentence Sought for TJX Hacker
  • EFF Appeals Dismissal of Warrantless Wiretapping Case
  • Viacom Makes Its Case Against Yesterday's YouTube
  • Obama supports Senators draft plan to rework U.S. immigration policy - Includes National Biometric ID card for all.
  • Domain Names Can't Defend Themselves
  • Hacker Disables More Than 100 Cars Remotely
  • Judges Approves $9.5 Million Facebook ‘Beacon’ Accord
  • Hooking Up The Big Brother Machine... And Fighting It
  • Court: State Can Dump Non-Sex Offenders Into Registry
more

Performancing Metrics

Compilation © Copyright 1997-2010 Paul Hardwick, with Web Hosting provided by MacRonin.com.