<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Kyle Brady:  Blog &#187; Privacy</title>
	<atom:link href="http://www.kyle-brady.com/tag/privacy/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.kyle-brady.com</link>
	<description>coherent thoughts on diverse topics</description>
	<lastBuildDate>Sat, 21 Nov 2009 08:05:04 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<cloud domain='www.kyle-brady.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
		<item>
		<title>SJSU Mass Email Failure &#91;Expose&#93;</title>
		<link>http://www.kyle-brady.com/2009/08/21/sjsu-mass-email-failure/</link>
		<comments>http://www.kyle-brady.com/2009/08/21/sjsu-mass-email-failure/#comments</comments>
		<pubDate>Fri, 21 Aug 2009 07:13:41 +0000</pubDate>
		<dc:creator>Kyle Brady</dc:creator>
				<category><![CDATA[Expose]]></category>
		<category><![CDATA[Breach]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[SJSU]]></category>

		<guid isPermaLink="false">http://www.kyle-brady.com/?p=3627</guid>
		<description><![CDATA[Alternative title:  "How to Publicize 17,000 Private Email Addresses"

Earlier today, I received an email from "Tameka N. Harris" regarding parking permits at San Jose State University for the upcoming semester.  It wouldn't have been an interesting email except for a minor detail:

There were 400 email addresses in the "To:" field, including mine.

Note that it was [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: center;"><em>Alternative title:  "How to Publicize 17,000 Private Email Addresses"</em></p><br />
<br />
Earlier today, I received an email from <a href="mailto:Tameka.Harris@sjsu.edu">"Tameka N. Harris"</a> regarding parking permits at <a href="http://www.sjsu.edu">San Jose State University</a> for the upcoming semester.  It wouldn't have been an interesting email except for a minor detail:<br />
<br />
<strong>There were 400 email addresses in the "To:" field, including mine.</strong><br />
<br />
Note that it was an actual email, instead of  an anonymized message through the PeopleSoft-based system that hides any and all email addresses, usually used for such mass-communication.<br />
<br />
After speaking with a friend, who had 700 separate and unique email addresses on his receipt, I discovered it's likely this was a mass email to the entire student body - <strong>over 17,000 people, all with email addresses exposed to each other.</strong><br />
<br />
I responded to the original, 400-person email in "Reply All" fashion, saying:<br />
<blockquote>I would just like to point out to everyone on this list that Tameka N. Harris, the Almighty Beloved of SJSU Parking Services, has exposed your email address to the world, along with hundreds others, all because she couldn't figure out how to use the "BCC:" email property instead of "TO:".<br />
<br />
That's how I'm able to email all of you.<br />
<br />
Way to go, Tameka.</blockquote><br />
I intended, and tried, to email those on my friend's list, but Google prevented me from doing so, and accused me of spamming.  Fair enough.<br />
<br />
It's important to note just how unacceptable such a huge breach of student privacy this is, not to mention the gross administrative ignorance by both Tameka and SJSU - has she never used email before?   "Irresponsible, outrageous, and unintelligent" only begins to describe the situation.<br />
<br />
Her original email, which wasn't worth such a mass-mailing,  is unedited as follows:<br />
<br />
<em>(note:  the email has more color and formatting than <a href="http://www.wordpress.org">Wordpress</a> allowed me to copy-and-paste)</em><br />
<blockquote><span style="font-size: small;"><strong>Please conserve: Think before you print this e-mail.</strong></span><br />
<br />
<span style="font-family: PalatinoLinotype-Bold; color: blue; font-size: large;"><strong>IMPORTANT PARKING NOTICE</strong></span><br />
<span style="font-family: PalatinoLinotype-Bold; color: red; font-size: medium;"><strong>BEWARE: Limited Parking and Heavy Traffic</strong></span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">During the first few weeks of instruction, traffic is unusually heavy and finding parking is difficult! Please plan accordingly and consider using SJSU Park &amp; Ride or your VTA EcoPass for public transportation. Throughout the semester, the parking garages usually fill to capacity prior to 9:00 am and remain full past noon. </span><span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>UPD Officers provide traffic control during the beginning</strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;"> </span><span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>of each semester. It is important for the safety of everyone that you follow their directions!</strong></span><br />
<br />
<span style="font-family: PalatinoLinotype-Bold; color: red; font-size: small;"><strong>THERE IS NO GRACE PERIOD</strong></span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">A valid parking permit is required at all times, including the first day of classes.  Parking rules are enforced 24 hours a day/7 days a week. Possession of a permit does not guarantee a space in the main campus garages.  <span style="text-decoration: underline;">Space is always available at the “Park &amp; Ride Lot”</span>.  <strong>There is <span style="text-decoration: underline;">NO</span> free parking on the Main Campus</strong>.</span><br />
<br />
<span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>Avoid traffic and parking frustration…</strong></span><br />
<span style="font-family: PalatinoLinotype-Bold; font-size: large;"><strong>Use SJSU PARK &amp; RIDE LOT!</strong></span><br />
<span style="font-family: PalatinoLinotype-Bold; font-size: medium;"><strong><span style="text-decoration: underline;">Only</span> the “Park &amp; Ride Lot” offers </strong></span><span style="font-family: PalatinoLinotype-Bold; color: red; font-size: medium;"><strong>free </strong></span><span style="font-family: PalatinoLinotype-Bold; font-size: medium;"><strong>parking the beginning of each semester (August 24- Sept 3, 2009).</strong></span><br />
<span style="font-family: PalatinoLinotype-Bold; color: red; font-size: small;"><strong>Free </strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">parking is <span style="text-decoration: underline;">only</span> available at the “</span><span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>Park &amp; Ride Lot” </strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">August 24 – September 3, 2009. The “Park &amp; Ride Lot” is located 8 blocks south of the main campus on South 7th Street at Humboldt Street across from Spartan Stadium. The parking rate is $4.00 per day (or $96.00 for a semester Park &amp;</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">Ride Permit). </span><span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>ALL SJSU permits are valid in the “Park &amp; Ride Lot”</strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">.</span><br />
<span style="font-family: PalatinoLinotype-Bold; color: red; font-size: small;"><strong>Free Park &amp; Ride Shuttle </strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">service is available to campus Monday through Thursday. </span><span style="font-family: PalatinoLinotype-Bold; color: red; font-size: small;"><strong>Free Shuttle Service </strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">begins at 6:30 am and runs every 10 minutes (depending on traffic) until 4:00 pm with stops at Park &amp; Ride, Duncan Hall, MLK Library, Engineering Building and Business Tower. After 4:00 pm, Free Shuttle Service runs every 20 minutes until 10:20 pm with stops at Duncan Hall and Park &amp; Ride only. Shuttle Service is </span><span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>not </strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">available Friday through Sunday. </span><br />
<span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>All Park &amp; Ride Permits are valid in all student areas on the main campus Friday</strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;"> </span><span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>through Sunday only.</strong></span><br />
<div><span style="font-family: PalatinoLinotype-Bold; font-size: large;"><strong>DON’T WAIT IN LINE!</strong></span><br />
<span style="font-family: PalatinoLinotype-Bold; color: red; font-size: medium;"><strong>Buy Parking Permits or Pay Citations ON</strong></span><span style="color: red; font-size: medium;"><strong>–</strong></span><span style="font-family: PalatinoLinotype-Bold; color: red; font-size: medium;"><strong>LINE!</strong></span><br />
<span style="font-family: PalatinoLinotype-Bold; color: blue; font-size: large;"><strong><a href="http://www.sjsu.edu/parking" target="_blank">www.sjsu.edu/parking</a></strong></span></div><br />
<span style="font-size: small;">.. </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">No Additional Fees</span><br />
<span style="font-size: small;">.. </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">No Lines </span><span style="font-size: small;">– </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">No Waiting</span><br />
<span style="font-size: small;">.. </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">Print a temporary permit valid for 10 days</span><br />
<span style="font-size: small;">.. </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">Fast delivery to your home <span style="text-decoration: underline;">without</span> shipping and handling fees</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">A limited supply of Student Semester permits are available at the Student Services Center – Bursar’s Office located on the ground level of the North Garage(South 9th</span><span style="font-family: PalatinoLinotype-Roman; font-size: xx-small;"> </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">and East San Fernando Streets) (Cash or check ONLY). Please expect long waiting times during the first few weeks of school.</span><br />
<br />
<span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>Student 1-day</strong></span><span style="font-size: small;"><strong>–</strong></span><span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>a</strong></span><span style="font-size: small;"><strong>–</strong></span><span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>week, 2-day-a-week and Park &amp; Ride permits </strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">are available </span><span style="font-family: PalatinoLinotype-Italic; font-size: small;"><em>ONLY </em></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">at the Parking Services’ Office located in the University Police Department (UPD) building at the South Garage (S. 7th and E. San Salvador Sts.) (Cash or Check ONLY)</span><br />
<span style="font-family: PalatinoLinotype-Bold; font-size: small;"><strong>Daily Permits</strong></span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">: Pay stations are available on the 3</span><span style="font-family: PalatinoLinotype-Roman; font-size: xx-small;">rd </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">floor and above in the North and South Garages and the 1</span><span style="font-family: PalatinoLinotype-Roman; font-size: xx-small;">st </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">to 4</span><span style="font-family: PalatinoLinotype-Roman; font-size: xx-small;">th </span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">floors of the West Garage (E. San Salvador and S. 4th Streets).</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">Daily Rates:</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">Each ½ hour $1</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">Maximum Daily Rate $8</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">Maximum after 5:30 pm $5</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">Overnight parking $10 (Expires 8am next day)</span><br />
<span style="font-family: PalatinoLinotype-Bold; color: red; font-size: small;"><strong>THERE IS NO GRACE PERIOD</strong></span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">A permit is required at all times including the first day of classes. Parking rules are enforced 24 hours a day/7 days a week. Possession of a permit does not guarantee a space in the main campus garages. Space is always available at the Park &amp; Ride Lot.</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">For more information or to review the Parking Rules and Regulations, visit our website: </span><span style="font-family: PalatinoLinotype-Roman; color: blue; font-size: small;"><a href="http://www.sjsu.edu/parking" target="_blank">www.sjsu.edu/parking</a></span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: small;">(408) 924</span><span style="font-size: small;">–</span><span style="font-family: PalatinoLinotype-Roman; font-size: small;">6556</span><br />
<span style="font-family: PalatinoLinotype-Roman; font-size: x-small;">The latest SJSU Safety 101 Uniform Campus Crime and Security Report is available on</span><span style="font-size: x-small;">–</span><span style="font-family: PalatinoLinotype-Roman; font-size: x-small;">line at </span><span style="font-family: PalatinoLinotype-Roman; color: blue; font-size: x-small;"><a href="http://www.sjsu.edu/safetyreport" target="_blank">www.sjsu.edu/safetyreport</a></span><span style="font-family: PalatinoLinotype-Roman; font-size: x-small;">. A pamphlet can be obtained at the University Police Department (call 408 924</span><span style="font-size: x-small;">–</span><span style="font-family: PalatinoLinotype-Roman; font-size: x-small;">2172 or visit the UPD web site at </span><span style="font-family: PalatinoLinotype-Roman; color: blue; font-size: x-small;"><a href="http://www.sjsu.edu/police" target="_blank">www.sjsu.edu/police</a> </span><span style="font-family: PalatinoLinotype-Roman; font-size: x-small;">for more information.</span></blockquote><br />
This issue <a href="http://www.kyle-brady.com/2009/06/10/how-i-won-a-copyfight/">follows on the heels of the "Beeson Debacle" from two and a half months ago</a> (also at SJSU), which is about to be revived in the first issue of the <a href="http://www.thespartandaily.com/"><em>Spartan Daily</em></a> on Monday - 8/24/2009 - the first day of the Fall Semester.<br />
<br />
Good timing, Tameka.]]></content:encoded>
			<wfw:commentRss>http://www.kyle-brady.com/2009/08/21/sjsu-mass-email-failure/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Facebook Re-Design FAIL &#91;Expose&#93;</title>
		<link>http://www.kyle-brady.com/2008/07/26/facebook-re-design-fail/</link>
		<comments>http://www.kyle-brady.com/2008/07/26/facebook-re-design-fail/#comments</comments>
		<pubDate>Sat, 26 Jul 2008 21:02:07 +0000</pubDate>
		<dc:creator>Kyle Brady</dc:creator>
				<category><![CDATA[Expose]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Failure]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.kyle-brady.com/?p=471</guid>
		<description><![CDATA[If you haven't heard or noticed by now, Facebook is in the process (or is finished?) rolling out a redesign of ... pretty much everything.  Check out www.new.facebook.com to activate it.  But I'm not here to analyze it like everyone else, even though I think it's a pretty cool update.

I'm here because they screwed up.

I've [...]]]></description>
			<content:encoded><![CDATA[If you haven't heard or noticed by now, Facebook is in the process (or is finished?) rolling out a redesign of ... pretty much everything.  Check out <a href="http://www.new.facebook.com">www.new.facebook.com</a> to activate it.  But I'm not here to analyze it like everyone else, even though I think it's a pretty cool update.<br />
<br />
I'm here because they <em>screwed up</em>.<br />
<br />
I've been keeping an eye on the "applications" page, because I had a feeling that something was going to happen... and it did.<br />
<p style="text-align: center;"><a href="http://www.kyle-brady.com/wp-content/uploads/2008/07/facebookfail.gif"><img class="aligncenter size-medium wp-image-472" title="facebookfail" src="http://www.kyle-brady.com/wp-content/uploads/2008/07/facebookfail-300x206.gif" alt="" width="300" height="206" /></a><br />
<small>Click, because it's relevant.</small><br />
<p style="text-align: left;">See all the things I've circled in red?  Most of those are applications I've <em>never added</em>.  <strong><span style="text-decoration: underline;">Ever</span></strong>.  And in the case of "Bumper Sticker", "friendbinder", and "Top Friends"... those are ones that were added and removed (before the design change) within a 24 hour period.</p><br />
<p style="text-align: left;"><strong>My first question is:  what the hell?</strong></p><br />
<p style="text-align: left;">Is Facebook just randomly letting applications access my data, and decide that I'm now a "user" of them?  Because, if so, that's not only stupid and wasting my time... but it's also a huge privacy concern.</p><br />
<p style="text-align: left;"><strong>My second question is:  what the hell?</strong></p><br />
<p style="text-align: left;">I've tried to remove ALL of the ones that I circled in the screenshot... they won't go away.  They disappear from my profile, and from some of the settings pages... but remain on others.  Which would lead me to believe they're not really gone, they're just pretending to be.</p><br />
<p style="text-align: left;"><strong>My third question is:  what the hell?</strong></p><br />
<p style="text-align: left;">There have long been rumors that Facebook doesn't actually delete any data, they just "delete" it.  Instead of removal, a field is changed to tell the rendering engine "Hey!  Don't show this!" - which might make sense in some cases, but not as an overall policy.</p><br />
<p style="text-align: left;">This is solid proof that they do exactly what people have been whispering about... besides the whole "delete my account" controversy, of course.</p><br />
<p style="text-align: left;"><strong>My fourth question is:  what the hell?</strong></p><br />
<p style="text-align: left;">I'm actually out of "Items for Hell" at this point.</p><br />
<p style="text-align: left;"><strong>Your Mission</strong></p><br />
<p style="text-align: left;">This needs to be fixed immediately.  Check your applications page, see if you've got anything weird going on.  Send them feedback (using the "send feedback" button... obviously), regardless of whether or not you have this problem... they need to know that many people care about this, and it's <em>kind of a big deal</em>.</p><br />
<p style="text-align: left;">p.s. Yes, I'm still using Vista on <a href="http://www.kyle-brady.com/2008/07/14/my-new-computer/">this computer</a>.  But that's because I haven't gotten <a href="http://www.ubuntu.com">Ubuntu </a>running yet... the RAID-1 array and the supersexy, but "too new", combo optical drive are creating major problems.</p><br />
<p style="text-align: left;">--------------</p><br />
<p style="text-align: left;"><strong>Update (7/28/2008 2:30pm PST):</strong> <a href="http://www.sitepoint.com/articlelist/526">SitePoint blogger Josh Catone</a> (formerly of <a href="http://www.readwriteweb.com">RW/W</a>) picked this up, and <a href="http://www.sitepoint.com/blogs/2008/07/29/did-the-facebook-flub-their-redesign/">wrote his own take on it</a>.</p><br />
<p style="text-align: left;"></p>]]></content:encoded>
			<wfw:commentRss>http://www.kyle-brady.com/2008/07/26/facebook-re-design-fail/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Microsoft, Please Steal My Data! &#91;Old Content&#93;</title>
		<link>http://www.kyle-brady.com/2007/10/10/microsoft-please-steal-my-data/</link>
		<comments>http://www.kyle-brady.com/2007/10/10/microsoft-please-steal-my-data/#comments</comments>
		<pubDate>Thu, 11 Oct 2007 00:06:23 +0000</pubDate>
		<dc:creator>Kyle Brady</dc:creator>
				<category><![CDATA[Old Content]]></category>
		<category><![CDATA[Business]]></category>
		<category><![CDATA[Future]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Heatlh]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Privacy]]></category>

		<guid isPermaLink="false">http://www.kyle-brady.com/2007/10/10/microsoft-please-steal-my-data/</guid>
		<description><![CDATA[I think we should all let Microsoft take our data.  Really.  Everything about us... blood type, injuries, health insurance...

Did you catch the sarcasm?  Did you?  Because something tells me the creator of the most buggy, flawed, attacked, and hacked software in the world is going to have a hard time convincing [...]]]></description>
			<content:encoded><![CDATA[I think we should all <a href="http://arstechnica.com/news.ars/post/20071006-microsoft-wants-your-health-care-records-trust.html">let Microsoft take our data</a>.  Really.  Everything about us... blood type, injuries, health insurance...<br />
<br />
Did you catch the sarcasm?  Did you?  Because something tells me the creator of the most buggy, flawed, attacked, and hacked software in the world is going to have a hard time convincing people their data is secure.  I don't know, maybe I'm wrong, but I just have this weird feeling that they're probably running the same software that gets hacked thousands of times a day worldwide...<br />
<br />
Congratulations, Microsoft.  You beat Google to a release of a new product for once.  That is admirable.  But that doesn't mean it's a better product, or that people will even care.  Being the first to the finish line may win you a race... but we all know that in war there is no ticker tape.  There are only mines, rocket launchers, and stealth bombers, but I digress.<br />
<br />
Google has been <a href="http://blogoscoped.com/archive/2007-08-14-n43.html">supposedly</a> developing their own <a href="http://googlesystem.blogspot.com/2007/08/google-health-prototype.html">product</a> that is intended to revolutionize the medical industry, this is common knowledge in the tech world.  Who do you really think is more secure with their data?  How many times have you heard of your personal account information being leaked from Google?  How often has Microsoft's systems been hacked?  How often has Google's systems been hacked?  Who is generally treated with greater trust?<br />
<br />
The answer is obvious:  Google.  The world leader in search and information storage considers your personal health information to just be one more shelf to index: all the better to personalize your services, my dear.  From my personal experience, people who use Google's products love Google, whereas people who use Microsoft's products typically don't.  What is your most used email account, Gmail or Hotmail/Live Mail/Whatever-they-call-it-today?<br />
<br />
When the battle is begun, and sides are taken, where will you side?  Where will the doctors, and subsequently, the industry side?  I'm willing to put the smart money on Google, it's a pretty simple choice.  The two behemoths will face off, and battle for the attention... this much is true.  But given the history of each company, and their respective mottos (both official and unofficial), chances are that Microsoft Windows Live Spaces Personal Health Identifier Super Home Edition will fail.<br />
<br />
Completely, utterly, disastrously... fail.]]></content:encoded>
			<wfw:commentRss>http://www.kyle-brady.com/2007/10/10/microsoft-please-steal-my-data/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
