Real Networks And More Privacy Concerns
Arrogant-Bastard writes: "Lauren Weinstein's Privacy Forum Digest V09 #15 reports
that RealNetworks' "Download Demon" forwards the details
of any download (i.e. URLs, filenames) to RealNetworks.
See The Digest
for details. " Now, granted, this time the program, if you read the fine print, says that it will do this - but c'mon people - how many bone-headed moves do you have to make?
We live in a digital age. It is becoming ridiculously easy to track people wherever they may go, in real life, or on the Net. I have a very different opinion to that of most people I have spoken to- namely that I accept that in all probability people are watching me to some extent,and accept it without qualm.
For example, my bank would be able to tell me that at the start of this month, I went away for a weekend to London by car, while I was there I travelled mainly by Tube, I visited Kingston and Wimbledon, and that I probably stayed with a friend. That's quite a lot of information to be derived from a few transactions on my debit card- but it's perfectly possible to infer this from just a small amount of information.
My cellphone company could tell me I have family in Scarborough despite the fact they've not got their address.
... and so on. Fact is, it's very very easy to track someone through their real life. As far as I understand it, why should life on the Net be any different? I accept that anonymity is nigh-on impossible in real life, so why should I expect more on-line? Cookies can be used to track where users go on the net, and indeed are. Why should I care? I accept the fact that I have no / very little privacy and live with it.
This may seem very scary to some of you, but why? Unless you've got something to hide, why do you need your privacy? I don't think you do. I know I certainly don't.
--
Said it couldn't last, said it wouldn't last... This is the last stand against tomorrow's world.
What 'other downloads' does this include? I'm tired of hearing about how Real 'respects my privacy' but still does stuff like this. The privacy group they belong to shouuld revoke their membership and shoot them.
At this point, I'm gonna flush real altogether and go pick up the real plugin from winamp.
it has become clear that the terms of the license agreement should be compared in the same way as price when making an informed buying decision.
Great insight!
Many programs are available for download for free (as in free beer), but there is still a cost. People are not charging money for the product, but that does not mean that they are not making a profit from your use of the product.
Free email accounts on the web, free dialup accounts, free streaming media software... You don't pay any money for these products and services, but what do you give up in exchange?
Often you are asked for information such as an email address, and other contact information. If they are particularaly cheeky they might ask you for your age and education/occupation and annual salary.
The software might be free, but if the EULA includes a statemant like Each use of our product constitutes agreement to pay a $1 fee billed to you through your ISP after stripping your IP. coupled with the now standard statement at the end Any part of this EULA may be changed without notice then there is a cost, but it is in a place where we traditionally do not look for a cost.
The price or cost of using a piece of software is agreeing to the terms and conditions of the EULA. We are used to the others not knowing what is happening on our computers. However, with dedicated connections to the internet and software that reports back to the owner about what is happening on your computer, we are no longer able to disregard the EULA with by thinking "what they don't know won't hurt me".
Several others have made the comparisson to a trojan horse. What I am waiting to see is what will be the first piece of software to report back to it's owner about other software on your computer. When will a program relate all of your keystrokes back to the owner while the program is running? All the software on our computer? The contents of the files?
Many people (probably not on
Is it ok (legaly or ethically) for software to do anything it wants to simply because you agreed to let it in some obscutre clause of non-standard licensing agreement?
For now I don't see any solution other than to read the EULA very carefully before using the software. As LaNMaN2000 said in the above post, the EULA thould be looked at like a price tag. Know all of the hidden costs of a product before you agree to use it, as enforcement of these terms is becoming easier and easier for the owners.
And as one last piece of advice for those creating software that they want people to use: Use of a standardized EULA will greatly increase the ease and comfort of agreeing to your license. When I see that the EULA says GPL, I know in three letters what that license entails. Create a license that is basic enough that you can use it on all of your products with minimal additions. (doesn't have to be the GPL, but stick to a standard) If I see that the EULA for a piece of "ripicheep Corp" software is their standard license with the addition of the following terms, then once I know what that standard license is, I don't have to search through the fine print to determine if I am willing to agree to the EULA.
"A witty saying proves nothing." -Voltaire
A couple of Points:
- I too am a big fan of ZoneAlarm and recommend it to any home users with a 24/7 connection.
- Have you noticed that ZA often warns of traffic on weird ports when you visit SlashDot?
- I really wish ZA would have a better log and better help related to what to do if you are being scanned/pinged/etc.
- Does anyone know if this Netzip Download Demon will still download files if you set ZA to disallow it from acting as a server, but still let it access the Internet as a client. (One of the better features of ZA is the ability to allow programs to run as clients OR servers OR both)
Work for Change & GET PAID!
I'm sure it was just a slip on your part, but how does Windows figure into this picture. Is there some magical operating system you know of that will prevent programs from making socket connections you don't already know about? Yes, I guess you would say, a firewall, but in this case it was the firewall sending the message, what OS would have prevented this?
I'm sure the programmers over at Real Networks told their bosses about the backlash they would shortly be receiving if they went ahead with this feature. They did anyway, I'm sure they will offer some bizzaro explanation for the "feature" and take it out once they have been Slashdotted. But this isn't a Windows issue and neither was your firewall.I plan to release a new free product that will be easily obtained over the Internet. For the sake of discussion, I have included relevant portions of the EULA that are (of course) tucked away in pages of legalese.
1) By using this software, you give EvilCorp permission to send a copy of this software to all of your Outlook Express contacts.
2) By allowing EvilCorp to distribute its software in the aforementioned manner, you are indicating your willingness to be responsible for all incidental costs (including bandwidth/storage/etc.) that result from this distribution.
3) Any damage caused to files on your computer as a result of using our software is not the responsibility of EvilCorp.
4) ILOVEYOU!
What do you think?
ByteMyCode.com: A Web 2.0 code sharing community.
Now remember children, before you go off half-cocked, take a deep breath and ask yourself: "What Would Lars Do?" Feel Better? I thought so.
And Thank You
-- we'll eat the fat ones first
Seth Finkelstein winds up by asking how many people will read through the mountains of fine print.
If I understand the article correctly, Download Demon is bundled with some other Real programs and sets itself up automatically. So some people did not ask for the Download Demon, might not even know it's on their system, and so would never have thought to read its Privacy Statement.
In the distant future, when Trek-a-like transporter technology is commonplace, companies will modify your DNA while you're in-transit so that you *do* have a colorful pigmented banner-ad on your forehead, with content targetted to the demographic of the average citizen in the area you transported to. ;)
OMG!!! Ponies!!!
I can understand Real collecting information about users of a piece of FREE software.. heck, there's a price for everything these days. The problem that I have is that the hide this information in the "fine print" of their EULA, instead of displaying it promenantly in the install program. They should have a screen that comes up that says:
WARNING: By installing this software, Real reserves the right to record your name, address, kids social security numbers, and what you had for dinner last night by giving you this free software. If you don't want us to know that you beat your wife, please cancel this installation right now!
--cyphergirl
--Insert catchy
I downloaded RealPlayer 7 today. It is annoying indeed, because I also got (unwanted) Real Jukebox and Download Daemon, and (almost unwanted) Net2Phone. The bad part is that the installer doesn't ask whether I wish to install those, nor it asks the installation paths and other stuff. Besides, the installer _IS_ bugged, as it doesn't take into account nationalized versions of Wind-Blows which change the "My Documents" directory name.
Spent 15 minutes to disable all that stuff, all reporting back to real networks, special offers and everything.
Not a real incentive to installing the software.. but then again, normal "luzers" won't care about that stuff and will be happily spammed.
Still, I'm a bit pissed off at this attitude. It's almost as bad as our favourite pun-target, with their "oh, and if you buy our word processor, we'll also slip under your nose a few (sometimes not-entirely-compatible) fixes to your OS".
My feeling is that if your product is going to act in ways that you know are distasteful to many potential users you are ethically obligated to point that out in a clear and obvious manner. Saying it in the small-print legalese may satisfy legal requirements but doesn't satisfy ethical ones, IMHO.
And as I understand it, the product in question is installed in the process of installing other products, so the user may not even know that there is a potential issue to consider. That puts using a nonobvious warning even further outside the pale, ethically speaking.
What would you rather have, Windows Media Player?
Well, since you've asked, yes.
(1) WMP works better than the RealPlayer -- it crashes less often (note: "less often", not "rarely") and AFAIK supports more formats. Besides, I don't really watch anything in RealAudio/Video anyway.
(2) RealNetworks has a very consistent pattern of trying to spy on its users -- much more so than Microsoft.
(3) Given a choice between dealing with a big lumbering dinosaur (e.g. stegosaurus) and a smaller more aggressive one (e.g. velociraptor), I'll take the big one any time.
Kaa
Kaa
Kaa's Law: In any sufficiently large group of people most are idiots.
And without the Big Brother spectre that operates against anyone caught up in political struggles, the very practical reason we need to keep worrying about it today is that this data is being gathered for all time. When I need to buy a new car, I don't want the salesman to have access to piles of information about me and my tastes because that information can be used to extract a higher price from me. A fundamental assumption of free-market economic theory is that both parties to a transaction have equal information. If one side has been spying, the benefits of free-market trading are lost.
Unless you are carefull installing the latest Realplayer you will get the Netzip with it's download demon by default. I'm getting ready to block Realnetwork's IP's at the firewall. It is time for reverse engineering of realplayers format. Screw DMCA and all the bought politicians.
Perhaps they plan to use this information to gauge software piracy. They could sell data to corporations to see where/how often files identical to theirs are being downloaded. I doubt any legal action could be brought against anyone downloading a file that appears to be illegal, but the info could be usefull to companies. Real could make a fortune doing that. I hope I'm wrong though.
How am I supposed to hallucinate with all these swirling colors distracting me?
what's with fine print ? they want to do something they know u don't want em to do.. yet they want to be able to say u agreed to let em do it..
ugh...
why don't they publicize that fact as one of the "features" of real player..
Nonsense. GoZilla includes Aureate's spy ware, which not only collects information without telling you, it slows or crashes browsers and e-mail clients. It's just as bad as Download Demon, if not worse.
Does anyone have a page listing alternative (preferably free) software to play the formats that Real Player supports?
The net will not be what we demand, but what we make it. Build it well.
Internet companies are realizing that ad banners don't work, so they're trying to collect information that will collect as much information as they can about people for targeted advertising. Consumer privacy be damned.- -------
+----------------------------------------------
+------------------------------------------------
+ The urge to destroy is a creative urge
Real is obviously not getting a clue so what about sending feedback to the Online Privacy Alliance that they are so proudly associated with? I checked them out and they seem to be an inflated multi-committee PR move to self police privacy issues but if they start to get gripes about a member maybe they can do something. Interestingly they have no obvious e-mail contacts but after digging I found that you can e-mail Christine about OPA questions at the webmaster address (webmaster@privacyalliance.org)
"Christine,I am a little unclear about the function of your alliance. It sounds like you have created a self regulating body that can do whatever it wants with personal information as long as it is somehow disclosed in the privacy policy. My concern is the situation with Real Networks. They are still farming user information in what I consider to be rather insidious. They had problems with their Real Jukebox product and apparently fixed it but now their appropriately named "demon" program sends information (file names and URLs) of any program I download to realnetworks/netzip. This is unacceptable. I don't care if this is being used anonymously for marketing or if they are creating a personal profile to figure out how my children are going to look. I don't like it! As a member of your alliance you are responsible for their actions because they are touting membership to comfort concerned consumers (ME). It's not helping and is only serving to make me question the validity of your organization. I hope you are able to do something about this issue.
Sincerely
ANONYMOUS
P.S. You would think that an organization with "seek input and support for Alliance initiatives from consumer, business, academic, advocacy and other organizations that share its commitment to privacy protection." in it's mission statement would consider having a couple of e-mail contacts on the site."
Dop Christine a line: webmaster@privacyalliance.org
How you feel about your privacy depends largely on how much control you have over guarding it. People who shop at a store are not generally averse to the store knowing their preferences. On the other hand, people who browse Web sites that are not shopping sites, or people who browse without buying, are not accustomed to having their identity recorded for a future use they can neither know nor control. No shop I am aware of in the physical world copies my passport and driver's license before allowing me to enter.
If your members persist in hiding and publicly denying the invasiveness of their Internet tracking measures, they deserve to be shut down by the heavy hand of government. Today they abuse the trust of the public with breathtaking arrogance.
I recently download the new Yahoo! Player Beta. It's free (beer), looks nice, uses CDDB and skins, and hasn't crashed for me yet. Does anyone know if the Yahoo Player is a "real app" or is it just a skin for the WMP or RealPlayer??
cpeterso
It's also still in beta and currently buggy as hell.
"Tell me doctor, with all of your defenses, are there any provisions for an attack by killer bees?"
On a side note such scripts would be useful for congressional bills as well.
Stuart Eichert
Stuart Eichert
I am really, really tired of RealNetworks trying to spy on its users. This is not the first time and clearly they are going to do whatever they can get away with.
I think I'll now classify RealNetworks as a "don't let a packet come withing three hops of them" company. I am fairly sure I don't have anything of theirs installed, but I'll check just in case.
Kaa
Kaa
Kaa's Law: In any sufficiently large group of people most are idiots.
Come on, folks, did anyone *really* expect a company that once proudly proclaimed that they were sending email to 53,000,000 people in every run to suddenly get a clue?
:)
RBL listings, plural, did not get these people to fix their problems.
My response? I donated a computer to http://www.free-expression.org/, and got my employer to donate them a license for another OS they might be able to target.
Give it a look, and if it seems interesting, get involved. If we replace RealAudio, RealNetworks will die quietly, which is pretty much the best they deserve.
My blog: http://www.seebs.net/log/ --- My iPhone/iPad app: http://www.seebs.net/seebsfrac/
It wasn't that long ago that Real was a company that would have been supported in places like /. They were a small company fighting to stop Microsoft from taking over the straming media market.
But now they seem to be playing the same game as other grown-up corporates. It's a shame, but I guess this is what happens when a young company grows up. Here's hoping the same never happens to Andover or Slashdot!
(Spudley Strikes Again!)
Yes this is invasion of Privacy. Yes by using the product you agree to them doing this. And YES, 99% of their database is gonna be filled with
IP# FILENAME CONNECTION DATE
x.x.x.x GROUPSEX.JPG 56k SomeDate
How useful is that?
--------========+++Dont Feed The Lab Techs+++========--------
I'd love to. But what else can play RealAudio/RealVideo files? Are there any other good players out there for Linux or Windows that can play RealAudio or RealVideo?
RealPlayer keeps bugging me to "register" it. Lately, it's been asking me to download (from within RealPlayer) an "update" for the player, as well. If I do that, it's sure to give away some personal information, like the names of files I've been playing in it, my email address, and other stuff (if it hasn't already...).
Also the point should be made that the "download demon" is a winders product and does not ship with the *nix version of realplayer. That having been said the violations are wrong and might be enough to make one not use the *nix version because of that
Cypherpunks: Civil Liberty Through Complex Mathematics. Those who live by the sword die by the arrow.
No one (or hardly anyone) is going to read that far down, which is why they buried it so deeply. They want the information they are collecting. Sure, "privacy nuts" will read the whole thing, but that isn't most people. If they really wanted to warn people about thier little game the gem you mentioned would be right at the top.
but c'mon people - how many bone-headed moves do you have to make?
Exactly one. You know, this community seems a little lax on actual integrity for being so chock full of zealots. That's fine if you don't really follow the party line; respectable even, but I see so many people who don't practice what they preach. I suppose that's fair, as that there are so many different agendas here (I like free software, but I'm not of the RMS be-all-end-all persuasion).
But what really gets me is how short most people's attention span is. DVD's are evil! Lucasfilm is evil because they won't release Star Wars on DVD! Double fricking standards here. Half the people I know who bought DeCSS t-shirts also went out and bought new DVDs the same day. Now, I can't be the only person here who honestly believes in some of this crap. I know there's more out there.
My point? Real Networks fucked up a LONG time ago. I haven't touched one of their products since, and I don't plan on it. So they're at it again, I'm not surprised in the least. Yeah, they "fixed" the problem the first time around, but the whole point of a general boycott is to protect the people who are too stupid to protect themselves. If they start making this known from the get-go, (ie, the first thing you see during the install, and you can opt out) then the problem will be gone. There shouldn't be any need for ANOTHER boycott of Real . . . anyone who felt strongly about it the first time should STILL be boycotting.
Just my opinion though.
Bad things often happen to good people,
It is up to them to see that they remain good.
On a side note such scripts would be useful for congressional bills as well.
Stuart Eichert
Stuart Eichert
OTOH, is there really much more you want to do if you are being pinged/scanned? From what I can tell, ZoneAlarm reacts to those requests as if there were no computer present - so the people scanning are just getting no response back. (this is just what i got from testing at grc.com - I could be wrong!)
I have tried tracking down some IPs, but they are usually spoofed or just belong to some hapless cable modem user who doesn't even realize they have a trojan running on their machine. Now I just ignore them and just make sure nothing weird is being sent out.
As far as the client/server thing, I just downloaded RealPlayer super basic bare bones (I broke down and got it because two fav. radio stations only use real player format for their online broadcast). I told ZA to let it access the internet but NOT act as a server - I can still listen to music, so I guess that works - could work with netzip - don't know since I got the most basic real player I could.
-------
-------
"It was people! People soiled our green!"
Why don't we instead ask them to be open about their data collection, and give us the option of disabling it if we wanted? It seems to make more sense to me than launching attacks on their servers and forcing them to take more secretive measures.
If RealNetworks wants to know that I listen to LiveAudioWrestling every Sunday evening or Monday afternoon, and throughout the week listen to commentaries in RealAudio by some individual wrestlers, why do I care? If it can improve the quality of the service (And I'm skeptical about whether it can, but this is a hypothetical situation), I don't see any problem with letting them know what I'm listening to.
(And yes, I'm aware that RealPlayer isn't the program in question, but it's the only software from RealNetworks that I use.)
Adam
As long as people are willing to trade their privacy for (in this case) hypothetical conveniences --- "Here's my DNA, where's my free Happy Meal?" --- we will face a long, hard, uphill battle to secure the details of our lives. *Sigh*
The Mongrel Dogs Who Teach
It's really none of your business either, but I'm willing to admit that I use RealPlayer to listen to wrestling related content. For that matter, I use WMP for the same purpose too, on a different site.
If I was listening to or watching more questionable material, perhaps I would not feel this way, which is why I suggested that companies that wish to collect data about their users ask in a more open way than the license agreement, and give you the opportunity to disable the data collection if you wish to do so.
Because they can use that make compile a profile of you?
Adam's Realplayer Profile: Listens to wrestling shows for approximately 3 hours each week.
Send in the market droids! I watch and listen to wrestling, and I'm not afraid to admit it! Quick, shill those posters at me, those PPV videos, the collectors edition of Mick Foley's Mr Socko!
Oh, wait. They already do that during the commercials, and I don't mind a bit.
Because the security of that profile is not mentioned, much less proven?
This bothers me little. I've admitted it on Slashdot. Now Everyone Knows.
I've said it in previous posts, and I'll say it again: If this sort of information could be gathered and used to customize the type of advertising I see, I wouldn't mind one bit.
I know that's going against the common publicly stated (Vocal Minority, perhaps?) opinion here, but that's my opinion.
Adam
I was testing the Win32 Netscape Communicator under WINE the few days ago and a netstat revealed a connection to Aureate networks @ port 1975. This connection never appeared under Netstat in Windows. I realised that this is a trojan horse installed by Go!zilla and would launch whenever the browser is being run.
Now I read about NetDemon tracking URLs and stuff like that. It really makes you worry about downloading 'free beer' programs from the net. Companies usually want something out of you for using 'free' stuff. I guess I stick with open source programs from now on. More assurance of privacy and security.
You don't have to send the ones with pretty pictures. A pack of 5"x7" cards from the local store would do just fine. And, they'd be a damn sight cheeper if everyone used them for mail instead of envelopes and stationery.
--JoePS. Stationary means not moving, and stationery is the paper you write letters on.
--
Program Intellivision!
Right now the world is spared IP tracking by MRA because, frankly, we wouldn't know how. Other than a part time off-site sysadmin I'm it for techies. But we are a membership organization and many of our members are marketing research firms that are not so, ahem, ignorant. MRA doesn't want your data, we have our hands full keeping track of our members. But they do want your data. It's what fuels thier business.
Downloaded Realplayer to watch something I don't even remember now.. oh, fav' radio station here in St. Louis is online now, uses RealPlayer to stream. Anyway, I downloaded RealPlayer, installed, ran it.. told it NOT to create shortcuts for those damnable programs on my Desktop. Know what really bugs me? The installer created them on my start menu. Not a big deal; right click, delete, but JESUS. If I left everything I have on my computer in default configuration, I wouldn't be able to find a thing. When's it stop?
:p
Got really pissed when ZoneAlarm started sounding alerts. That program is awesome btw. (www.zonelabs.com; if you don't have it, GET IT.) Got even more pissed when GetRight no longer functioned. Wanted to scream when I discovered that not only had DD replaced GetRight, but it SUCKS ROCKS, insists on maximizing at odd times, and just generally got in the way.
No thanks; I register my shareware so I don't have to stare out those ads. You want to know what I do on the Internet? Pay someone else to GUESS. If I wanted someone tracking me, I'd join "AllAdvantage.Com!" At least they pay you with cold hard cash. (NOTE: That is NOT an endorsement for alladvantage.com!)
Think on this though: anyone know of a small company that's managing to compete, hasn't been swallowed by a bigger fish, and respects all the rules? (Winzip?) If you can think of one, support it.
B.
My reality check bounced.
FYI, Chomsky is an anarchist who probably hates the government more than you do. He's certainly gone to great lengths trying to expose the murder our government encourages (and commits) in the name of foreign policy.
FYI #2, it is still up in the air on whether click-through licenses are actually legally binding, mainly because nobody takes them seriously, and therefore do not read them. And besides, Real knows full well that people do not read them, so hiding the admission of some extremely intrusive behavior of its software inside the license rather than making it obvious on the download page or on a privacy statement shows an extreme amount of contempt for their users' privacy, and therefore they deserve all the bad publicity we can generate.
FYI #3, if you still think anyone who signs (or clicks) something without reading it is a moron (and I'm inclined to agree with you), consider a bill that was recently passed by the Republican controlled Senate:
http://cryptome.org/4th-sneaky.htm.
Why not use windows media player? First off, it doesn't collect data on you, beg for new upgrades every so often, is *stable*, and comes with the OS. If you're using Win98 you might as well use a stable media player instead of bitching about how buggy Windows is and how the people at Real are mini-fascists.
If it did steam real files I'd delete RP in a second.
I would debate this point with you. First, can you give me your name, address, email address, and age.
Naturally I'm not going to give you more information than I feel like giving about myself to you because my privacy means something to me.
Is it possible that Real could be charged under COPPA?
Let's say someone's kid downloads a program from a COPPA compliant site. However, since RA was installed, it uses the download demon (sic, intentionally). Now some unauthorized data collection is occurring. The site is either now unintentionally violating COPPA or Real is intentionally violating COPPA. That is something like $10,000 / day fine isn't it?
(Of course, the usual IANAL applies)
At some point, data such as this will be used to spectacularly ruin someone's life. Perhaps a class of people will be screwed over en masse. I can imagine so many scenarios that there ain't no telling exactly what form this will take. It isn't a question of if; it's a question of when. Some person, group, company or government is bound to do it. The temptation is too great. Such a disaster is what will be required to get everyone's attention. We can warn people of the evils of all this glitzy Windows crap until we're blue in the face. They will not listen until it hits them where it hurts, in the wallet.
Wansu, th' chinese sailor
- Your social security number, or other national equivalent determined by your residency.
- Your passport number.
- Your drivers license number or equivalent.
- The maiden name of your mother.
- The account numbers of all bank accounts you own.
- The type, size, and location of the most expensive objects you possess. I'm especially interested in easily-portable objects like rings, watches, necklaces, etc.
- The names, ages, locations and favorite toys of any family members under the age of twelve.
- The location and type of any firearm you own.
- Your current street address, along with the location and type of all windows or other entrances into your home.
- Does your home have a dog? If so, what is it's favorite food? I'll need to sedate it.
- The brand and model number of any security devices in your home.
Now then, if you really "don't need your privacy" you'll honestly and truthfully supply all of the above information. If you don't answer these questions, consider yourself a hypocrite.. . . or perhaps you really DO need some privacy after all.
I have no
Thats an entirely different issue. When I bought my house I didn't give anyone the right to peek into it to see what I'm doing. But when I download this absolutely free software that provides me with free entertainment I know I'm giving them more than just my IP address.
Now that I think of it, if someone where willing to give me a house for free I might let a representative from some housing association drop by every now and then to see what TV shows I watch or see what I eat for dinner.
Long signatures suck.
as I said, different agendas. The problem I see is not necessarily with the unavailablity of the source per se (I'm not an open source zealot, but I do like it in many cases). The problem is the way that the DVD-CCA is handling things. Ditto the MPAA. Until they start to care more about the parties they represent rather than the governing body itself, then I'd prefer to see no industry.
Kinda like the music industry. Major labels screw bands big time. As an artist, I don't like that, and refuse to buy major label cds unless I can buy them from the band directly, where they get to see more of the money (which they do).
You're right though; it's difficult to come up with an "overall perfect example" because we're all looking at these issues with different perspectives.
Bad things often happen to good people,
It is up to them to see that they remain good.
Thanks for the link to ZoneLabs, I hadn't heard of that program before. I've been using it for a few minutes and it looks pretty useful.
Pablo Nevares, "the freshmaker".
Pablo Nevares, "the freshmaker".
-- Superlame http://catpro.dragonfire.net/joshua/
Surely, anyone with a concern for their privacy, wouldn't want all their intentions divulged, would they? But, how can you be sure the software you use is doing what you want, and only what you want?
Clearly, when the source is open, it is difficult to hide such shenanegans (yes, Real is being open about this, but what about others?). When the source is free, we have the luxery of as many eyes as care interested in reviewing it.
While I don't agree with RMS that proprietary software, or use thereof, is inherently evil, I do think that if we care about our liberty and privacy, it behooves us to use and support free software, where appropriate. - RSH
When it comes to such statements, long reading should be translated into Just Say No. That's my rule of thumb.
-- Superlame http://catpro.dragonfire.net/joshua/
Actually Yes.
I've previously used RealPlayer for streaming audio. However, after I tried Windows Media Player, the quality of sound is better (at the same bitrate.) I don't have to get all the advertisments too.
I downloaded Windows Media Player 6.0 BETA and it is great! Really great visual features but it is a little buggy at the moment.
Try WML, I don't think they (Microsoft) catches data since when you check on the URL, it is usually redirected to a URL but at least it is for them to "track" how many people use the URL (more acceptable for me.) At the same time, you can track the URL and do not need to redirect all the time.
Well maybe better, just listen to the radio and talk over the telephone. At least it is more "secure" than the Internet.
John
Live your life each day as if it was your last.
Date: Sun, 19 Mar 2000 15:06:41 -0600
From: Me
To: webmaster@real.com, rglaser@real.com, glaser@real.com, admin@real.com, root@real.com, support@real.com, everyone@real.com
You people are fucking incredible. why can't you just release a player for linux that doesn't fucking EXPIRE? What a bunch of horse cock sucking ass ramming uncle fucking christ humping fucking NITWITS. I HATE real bullshit. Why are you spamming the net with your motherfucking worthless trashy protocols, churning new releases fucking CONSTANTLY just to PISS people off??!
My real player, which I finally got working after HOURS of searching your fucking LAME site which is obfuscated beyond fucking belief, just expired. WHY? It was the ONLY one I EVER got working.
Well, now I'm downloading your latest 8MB obscenity. It says it's for red hat, which I DO NOT FUCKING HAVE. NOT EVERY FUCKING LINUX USER HAS RED HAT ASSHOLE. Probably you compiled this huge hulking stinky bitch for glibc 2.1, in which case it will not work on my machine, dumb fuck.
One last thing: FUCK YOU. FUCK YOUR WORTHLESS SHIT. I only wish Rob Glaser would read this, that fat, anal ass ramming geeky, butt munching ass clown fuck nut. Unfortunately some tech flunky will read it and delete. Just get this: I hate you, I hate your worthless fucking company, and everything it makes.
Rob Glaser needs to be fucked in his pimply ass by a rabid polar bear, drawn and quartered, tarred and feathered, torn apart by wild horses, burned and scattered to the fucking winds. Please forward this to his stupid smug ass now.
FUCK YOU.
support gun control: take guns from cops
This should be modded up...this is a perfectly relevant viewpoint; whoever marked it as a TROLL just because it is not a popular opinion should be banned from ever have mod privilidges again.
Always keep your clothes and your weapons where you can find them in the dark. -Lazarus Long
Excellent points! I couldn't agree more. At the risk of becoming flaimbait - Windows Media Player sounds better, crashes less often, doesn't have any god-forsaken ads stuck in my face, and... as far as I know.. doesn't send private information back to M$.
Have a Happy.
We need to ensure that this gets the same attention that caused DoubleClick shares to drop over 25% in a week. Only when they realize that their shareholders will not stand for this assault on consumer privacy will they alter their policy.
It is all a matter of publicity; most consumers have the impression that what they do not know--or take the time to read in the license agreement--cannot hurt them. With the passage of UCITA in various states, it has become clear that the terms of the license agreement should be compared in the same way as price when making an informed buying decision. Until people realize this, the only hope we have of avoiding agreements like Real's is to use the media to inform consumers.
ByteMyCode.com: A Web 2.0 code sharing community.
Howdy,
I just installed RA last night on win2k, funny coincidence. ZoneAlarm from ZoneLabs started warning me as soon as I restarted that something was up. First, Real Jukebox wanted to access the internet. Now way, Sorry. Then something called main_program (I think, this is from memory) tried to access the internet. Again, no way.
At this point I started to uninstall all the crap that I didn't ask for. When I got to the Zip download thing, after I hit the uninstall program they provided, main_program wanted to access the internet again. jeez, these people are desperate for stats I guess.
So not only does is keep track of download stats, it also wants to know when you install and un-install the app.
--mark
If you open your curtains, you are entering a legally binding contract with the sun stating that to compensate for the free illumination, you must allow people the access to see into your living space.
National Public Radio has put a lot of their content on the web- using the Real Player format, so I downloaded the free player, "Basic Version 7". It worked great, so I downloaded a copy for my mother a week or so later. This second download was different from the first -- it included the Download Demon, and its associated Windows tray icon (plus a couple of other crappy tray icons, too). Right away Download Demon wanted to "manage" all application upgrades. NO THANK YOU. I used control panel to remove just the "Download Demon" and "Real Jukebox". It's just a matter of time before that escape route will be cut off -- (AOL 5, anyone?).
Does this come as any surprise to Real? Quite the contrary, they know that people generally read at most the first page of those agreements; they were counting on it. They could have put the notice about the software's logging in big bold letters at the top of the agreement, but they didn't. Why? Because they knew many people wouldn't agree to it; that's why. You can scream "caveat emptor" until you're blue in the face, but the fact is that a merchant that cheats his customers is still a villain, even if the customers should have known better than to be taken in.
-rpl
Is there a technical solution to this?
/* Not recognized */
Some sort of bionic-chroot-on-steriods might be the answer for running untrusted binary-only software. FreeBSD has jail() which is like an improved version of chroot(), but what's needed here is something more sophisticated.
Ideally you'd make it so that _all_ access to the outside world can be filtered through some userland process. Preferably a Perl program, hehehe. This is roughly what I have in mind:
filter_syscall() {
if (call is 'open file for reading') {
if (filename one of those allowed) {
return OKAY;
} else {
modify the 'open' call so the mode is
set to read-only; return OKAY;
}
} else if (call is 'read') {
return OKAY;
} else if (call is 'send data over network') {
check to see if the data is being sent
back to RealNetworks - if it is then
return FAIL_SILENTLY;
else return OKAY;
} else {
warn("program is doing systemcall we haven't
seen before");
return FAILURE;
}
}
It could be quite a lot of work to do this _fully_ for any large program, but a quick hack to allow all system calls except those sending private data, or to overwrite any private data being sent with 'X' characters, might be quite easy.
-- Ed Avis ed@membled.com
If you really did that, tell us what you did!
Otherwise, keep to yourself.
Rick
You are in a maze of twisty little passages, all alike.
Question: "Unless you've got something to hide, why do you need your privacy?"
Answer: If you have nothing to protect, then you need no privacy.
"Unless you've got a credit card, why do you need to hide your social security number?"
"Unless you've got a house, why do you need keys and a lock?"
"Unless you've got money in a vault, why do you need a combination?"
"Unless you've got children, why do you need to not inform strangers of their whereabouts, interests, and route home from school?"
"Unless you've got a power-hungry government, why do you have to encrypt political dissent?"
"Unless you've got absolutely nobody in the world that wants anything you got, why do you need security, privacy, a strong lock, and a damn good lawyer?"
This kind of snooping is so obviously a violation of privacy, i wonder if it is already covered with existing laws. If you took your car to a Jiffy Loob for an oil change, and they decided to install a GPS enabled oil-filter and they then logged all you travels in a database, there would be a huge public outcry, and probably a slew of lawsuits. How is Real's bahavior any diferent. This makes me ill.
- Josh "Yoshi" Steiner
---
Xiphoid Process Records - http://xiphoidprocess.com
San Francisco based electronic music.
got drum'n'bass?
http://mp3.com/vitriolix
All this people from Radiate and Real - do they think I got Internet access for free? We pay for every last byte sent or received - that is not only a security issue. And my Internet channel have limited width - how much of these daemons our company network could bear?
One thing that has always pissed me off about windows software is how it does things without your permission / knowledge. This is just one more example. One thing that comes to mind is how a luser is prompted with a nasty error message when he tries to change his swap-file settings. "Do you want windows to manage your wapfile?" I say "Fuck NO!" then it will go so far as to not say anything about writing registry keys that will automagically forward emails to all you contacts. What the fuck? This must be a feature too. Hey Bill if you re reading this (yeah right) You should be ashamed of yourself! And Real networks should have a class action law-suit filed against them for invasion of privacy. And people wonder why I refuse to use windows and windows only software.
"If you love someone, set them free. If they come home, set them on fire." - George Carlin
Folks, you might want to read the article. The problem is with a piece of software called Download Demon, a part of Netzip, NOT Realplayer. It's the same company, and you might want to stop using their products on principle, but don't rush off to find an alternative to Realplayer just because you're worried it'll track personal information...
What would you rather have, Windows Media Player?
~P
Whoa. I almost fell over when I read that.
Please put a warning in your message next time. Something like "CAUTION: Non-Anti-Microsoft post." Have a heart, fella.
I went in and hacked the code so it doesn't do that anymore.
Steven Woston Lead Programmer J-J-J-Julius Games http://www.jjjjulius.com
Rather than getting indignant every time Real (or similar companies) are found violating peoples privacy like this, why don't we just work towards obfuscating their data set. What about a little hack that sent random junk data to them rather than whatever it is they're trying to collect?
This could have the additional benefit of making companies act more overtly about their data collections, if that is the only way they can successfully collect accurate information.
-Spazimodo
Fsck the millennium, we want it now.
Fsck the millennium, we want it now.
Millennium Crisis Line: 0890 900 2000 [calls cost 50p/min]
But I can't see where the payoff is for Real. I imagine that if everyone in the world was to use Download Demon for every download they ever made, then the resulting sending of information back to Real would cost them a small fortune in bandwidth. I can't see that they're going to make much money selling the information on either - if companies are particularly interested in finding out who's downloading their products then they usually make the user register or fill in a form before downloading.
Real's main software product, Real Player, is losing market share to Windows Media Player so it seems that Real needs all the goodwill it can get in order to survive. Although the majority of computer/internet users are not overly worried by the issue of privacy (certainly not to the same extent as the average Slashdot reader), more and more of their potential customers are going to become disillusioned every time Real pull a stunt like this.
Download Demon may well claim that "this is all anonymous, we don't link names with activity, blah blah blah" but as we have seen in the past with DoubleClick (who just created a special privacy panel within their company to act as window dressing while addressing privacy issues) companies start out collecting 'anonymous' data and then later suddenly decide to link the data to names.
I work in Marketing Research, where data collection is mostly what we do and so privacy issues, especially internet privacy, is "suddenly" a hot topic. MRA has a forum where any marketing research issue, including how you feel about your privacy, can be addressred. If you are interested in having some voice in how that data is used and collected, please post at www.mra-net.org/forum/. MRA sets a lot of marketing research industry standards which our members follow, and I'd rather privacy was a bigger concern, not a brief one or two lines buried in policies somewhere. We don't even have a privacy policy right now.
You can keep marketing research from doing what other industries are doing.
*shrug*
What we need is a snappy little program that sends an enormous quantity of valid-looking information in their format. That way they'll be unable to determine what's real and what's realistic giberish.
There is a big huge gaping hole in your opinion. The fact of the matter is that most people aren't smart enough, like you and I. Therefore companies that do such bad things will always profit, survive, and maybe even crush the competition who are not doing such bad things.
That's why we have a lot of laws in the first place! That's why "buyer beware" has never cut it in many many situations.
Now this situation doesn't result in anyone losing money or property without compensation(*), which is what most of our laws deal with. It deals with the loss of privacy.
Does privacy deserve the same protection as property? Does it deserve any protection at all? Is the shrink-wrap license enough?
I think a lot of us would argue quite successfully that yes, it deserves a hell of a lot more protection than it has now, and no, shrink wrap licenses should not be valid for half the stuff that is often in them.
There are certain types/sizes of 'contracts' which are valid when made 'in passing', and others that need a lot more than an 'in passing' contract, that need signed documents, adequate two party communication and understanding, and adequate compensation. How many of us have heard of contracts or events being overturned by courts because there wasn't a signed contract? We all know that there are some contracts that the courts won't enforce with at least a token measure of compensation. And some that aren't enforcable when that token is effectively meaningless. And others that are deemed 'fraud' because the 'contract' was so obscured and desceptive.
Personally I think this world will degenerate into hell if we don't produce an adequately balanced system of legislative, enforcement, and legislative system. Human beings in general are just too stupid to 'figure it all out for themselves' and solve it through individual actions as you suggest.(**)
-NH
(*) Here's a unique argument. Information *IS* property. We've got that ingrained in our society. So how come this information isn't worth anything or isn't protected? Shouldn't I be in control of who obtains this information from my life? Shouldn't taking this information without my consent or compensation be illegal?
Now of course it was in the disclaimer/shrink-wrap license. And you are getting 'compensation' in the form of software that does work for you. But is that enough?
If someone came up with a new way to screw people over and get 10-50 bucks from them without them really noticing that they had agreed to it, don't you think there would be a clamour to deal with it legislatively? We've already done so in many cases. We're seriously cracking down on phone-'fraud' organizations that do this exact thing to old and gullible people.
(**) Some of us don't like having to wade through the shit that your idiot friends effectively allow in this world. And some of us take pity on your idiot friends who are in effect powerless to protect themselves or change the world, because hey, they're idiots. And most of us take deep offence to shucksters and con-men depriving the weak of their property and rights.
IE: If you want to go live in the wild west, take your damn six shooters with you, we don't want your kind around here.
So you want a company to spend their time and money on creating and running a great site but you expect them not to use advertising? /. or CNN.com. If you eliminated all the ads, you would have to revert to a pay-per-view or subscription based model. I think that it is very important that free mediums still exist. Advertising allows companys to create sites that everyone can use, rich or poor.
You realize that by using junkbuster you are hurting the sites you are visiting that depend on advertising revenue. Personally, I think that longer download times are a small price to pay for a great site, like
-- soldack
GetRight installs Aureate spyware, doesn't it? Different company, same idea.
"Only the small secrets need to be protected. The big ones are kept secret by public incredulity." - Marshall McLuhan
According to this article Real has just released a new product that bundles RealAudio/Video, RealJukebox, and Netzip (which they have renamed RealDownload) together into a single product called Real Entertainment Center.
Work for Change & GET PAID!
After downloading and installing the WMP 7.0 beta under NT 4.0, I found out that they don't recommend installing it under NT 4.0 or Win95.
Wotta crock!
Of course the installer keeps crapping out so I can't get the latest beta update anyway.
If it's not MP3 or MPEG video, I just don't bother anymore.
You are in a maze of twisty little passages, all alike.
One: "Fucked up" can also imply making a mistake as well as unforseen consequences - gnarhplager's usage was correct. Two: you're being way too pedantic over this, of course so am I but who cares :)
So, if something doesn't bother you it shouldn't bother anyone else either? And if it bothers someone, he/she must be a criminal.
Tell me, is it nice living in such a fantasy world of pure black and white?
You say you don't have things to hide. Well, congratulations. However, most of us do have things we prefer to keep away from prying eyes. Nothing criminal. Just petty, boring details such as our credit card number, sex life, political/religious affiliation, medical history and other things which in the end paint rather a detailed picture of each of us.
And you know what. Just as I am entitled to decide how much and which of my own feelings I show to others, I am also within my rights to keep these other petty details of my life secret. It's not a question of trying to hide something dirty. It's about controlling your own life and not letting other people run it for you. Being able to say "fuck you" to aggressive salesmen/advertisers, politicians or law enforcement agents trying to reach too far into your personal space.
No, the contract is with the Solarian photographers who spy on us with their cameras. The sun is simply a mass of very powerful camera flashes.
enforce a "speed limit" when you're surfing and downloading at the same time. (Screensaver turns off the limit.)
automatically search FTP archives for alternate sites
download the same file from multiple sites (first half from site A, 2nd half from B)
allow each file to have a priority -- d/l short files first if you want, or
pause/continue for each file
I've been using it for maybe a year, and actually bought a copy -- $20 (shareware). If you use Winders, this software is essential. I just wish someone would write a version for Linux!
- jThis point has been beaten to death so I will keep it short. Thrashing privacy while posting as an Anonymous Coward?
Nudie Suit. Discuss.
this may be a touch OT, but hear me out...
as we've all said by now, market research is the new gold. in a society where information is transforming from commodity into currency itself, it's not surprising that every company wants to know the buying habits of you and your three rabid gibbons.
i've noticed this on several levels. free software using sneaky tactics to get your download/spending habits is only the latest example. the more frightening example, however, is when companies demand to know how many pellets you feed your bunny or they won't support the product warranty.
i noticed this last example with a DOD ice box chorus pedal i bought from a music store. they wanted to know, amongst other things, what magazines i read and if i had 'logged on to the Internet' in the last month. i don't have the registration card in front of me (they didn't even pay for the postage), but the fine print said something akin to "we will not support problems with this pedal blowing up and taking your precious guitar, amp, MIDI system, and the west side of your house with it, if you do not return this card with the entire requested information".
so, what this boils down to, is that companies like DOD will sell you a product at an inflated price, and then expect you to give them information which is worth more than the profit they just made off of the purchase of said product, or they will not be responsible for any defects or otherwise in the product.
i now have an unregistered DOD product. an effects pedal is not worth my information.
--ze
I don't dress this way to be scary. I dress like this because it's easier to sort my laundry. "...black...black...blac
They will be able to better aid downloads in the next version if they know more about what people are downloading. Or so they will claim if they are asked.
Even as you say "so they will claim" you are admitting that you too see that that is obviously not what it's really for; it's self-evident that this is a marketing device. And I would love to see them show how knowing what we download most often will help speed downloads: the program doesn't mirror software or speed downloads in any way, it just allows you to resume interrupted downloads, or schedule them. Knowing what the file is is totally irrelevant to that task.
It should remain legal, just like it currently is. We already have too many laws. It is sheep like you, wanting the government to fix your dislikes that is helping to ruin this country (the other major problem is big companies buying government, but that's another rant). If you don't like that program, don't buy it. And please, try and convince your friends not to buy it.
Ug, I've had some bad experiences with Real player. Back in the day, you could use MS Media player to view RMs, but certain formats didn't work. When I downloaded real player, they worked again, in Media player.
Except Real associates like every media format out there to itself.
So I removed the keys from the registry. And real put them back. Real also sets it self up to run when you boot the computer. You can change this in the windows registry, but then any time you try to view a real media file (Media player won't do it any more) it resets itself to start up on boot. And it takes forever to load. Its like ICQ with better graphic art!
Really, what these guys are doing is no better then the l4m3r skr1p7 k11dy and his Trojan horse. I can't believe they get away with this kind of behavior. And I can't believe that people still choose to encode their files in bogus proprietary formats like RM and QuickTime.
ReadThe ReflectionEngine, a cyberpunk style n
this here is the macintosh user's perspective...
;)
macintosh real player clients suck, they always have and always will. when i encounter a site has given untold amounts of money to those morons and do not provide quicktime as an alternative, i hit command-[ (that's back).
we need a quicktime player for *nux, but that does not sound like an easy project, and apple is busy with mac os x, hopefully next year
many l337 posters have a windows box around just to play games, and yet never consider having an imac or g3 box to surf the net? hmmm.
quicktime server is open-source, and (i hope) will strangle real.
microsoft wants to check the growth of quicktime and challenge real, but it's too late, only the lamest windows users will ever fully rely on windows media player.
Has anybody else read the "Electronic Communications Privacy Act of 1987"?
/. effect)
It has some pretty fun clauses, including:
"United States Code Sec. 2520. Recovery of civil damages authorized"
(a) In General. - Except as provided in section 2511(2)(a)(ii), any person whose
wire, oral, or electronic communication is intercepted, disclosed, or intentionally
used in violation of this chapter may in a civil action recover from the person or entity
which engaged in that violation such relief as may be appropriate.
If you want to read the full text of the law, go to your favorite search engine
and look for +"Chapter 119" +"United States Code" (I'd post a link, but
I doubt if these sites could handle the
cheers,
-Don
Don.Alvarez@SierraNumerics.NoSpamForDinner.com
They shouldn't be allowed to do that. I don't know how to stop them, but that shit should be illegal. Or at least force them to advertise functions which do not directly relate to the purpose you bought the software for: it's like buying a word processor with an undocumented feature which changes your networking settings, it's not what you bought it to do.
Why would there even be such an expression as "the fine print" if not because this tactic has been used for centuries. Bury the zinger in a pile of mumbo-jumbo, and people won't look hard enough to find it. Make it much easier to go for the goodie than to get a lawyer to read the screen. Then sit back and commit whatever ethical violation you can stomach.
"Genius may have its limitations, but stupidity is not thus handicapped." --Elbert Hubbard (1856-1915)
This is becoming real annoying! How long till we have banner ads stapled to our forheads so that when we look in the mirror we can read about the latest sale?!?!?
Have a Happy.
hmm, last time i checked Microsoft Media Player 7.x (whatever the current version is) does not run on my favorite Unix.
although i do not use any `Real' products because their privacy-violations really piss me off
but i got your point: if even the evil empire can produce a piece of code that does not violate human rights, why do those Realmedia guys always have to screw it?
some US citicen should sue this US company.
Jor
How can anyone possibly be surprised by this? Real obviously has no respect for anyone's privacy. I can't understand why they keep thinking they can get away with this. And why the Linux community seem to grovel for them. I haven't been using Real products since the first privacy issue, streaming video be damned. As for streaming audio, MP3 works just fine for me.
sig this
I stopped downloading that bloatware about a year ago after the unique identifier scandal. Recently I had a download that I really needed, and was in real format and I downloaded it just to play the file. The bloat has multiplied by 7!!!! Unbelieveable. Can't believe people put up with forced taskbar integration, and now this. It went right off after the download. Now I will just not bother... Proprietary formats aren't worth it. ANyone know if quicktime does this?
fslg503-985-8686503-985-8686503-985-8686503-985-8
I had been using Go!Zilla, until I read that the Aureate software was tracking me. All I want is to resume my broken downloads, and perhaps queue them.
That's an easy one; WMP doesn't work in Linux, so therefore it is out for me.
I use RealPlayer when at all possible for streaming audio/video on the net, both in Windows and Linux.
I consciously refuse to install RealJukebox or any other of Real's other packages, because of their privacy issues. But RealPlayer gets points from me for their Linux support.
I just hope they quickly port over their new, licensed WMP codecs to Linux RealPlayer.
--- Biffster.org
"Bite my shiny metal ass."
These type of things always remind me of the giant contract that all of the children had to sign before entering the Chocolate Factory on Willie Wonka.
"Floods, fire, frost, or frippery?"
VIOLET: I can't see what it says in the bottom.
WONKA: Violet? You first. Sign here.
WONKA: Standard form of contract.
MR. BEAUREGARDE: Don't talk to me about contracts, Wonka; I use 'em myself. They're strictly for suckers.
--- Biffster.org
"Bite my shiny metal ass."
But how many people are ever going to read down that far?
Well, that's nice -- although it does seem awfully Simpsonsish of them:
I'm going to kick the air, and if you get in the way, that's your own fault!
The problem is you get it bundled with other software and, apparently, it installs itself (overriding Gozilla et al) without asking permission first. To your average clueless newbie, this is a problem.
Perhaps you should open the living room curtain whilst being intimate with your significant other. Would it be too difficult for you to leave your opened mail on your front porch? Maybe you would like to use the restroom with the door open while at work.
Privacy is privacy no matter what the medium. I do not want a third party to know what I am downloading, any more than I want people staring into my window while I shower.
assuming that they flashed the license agreement before you when you installed it. However, from the article, the user claims not to have seen such a thing in the install, and in fact implies that it may be bundles silently with other RN programs. If this is true, then it sounds like they may not even pass etrusts' criteria for privacy...
---
After all, only somebody with something to hide would use an envelope, for god's sake...
--
--
We have fought the AC's, and they have won.