Slashdot Mirror


General Public Realizes KaZaa is Spyware

blankmange writes "CNet is reporting the slow dawning of the general public to KaZaa and spyware. "Virginia Watson unwittingly authorized a company she'd never heard of to install software that would help turn her computer into part of a brand-new network. The software, from Brilliant Digital Entertainment, came with the popular Kazaa file-swapping program. But the 65-year-old Massachusetts resident--who has a law degree--didn't read Kazaa's 2,644-word "terms of service" contract, which stated that Brilliant might tap the "unused computing power and storage space" of Watson's computer. " " Fortunately the helpful graph in the article compares the complexity of IRS tax forms with Brilliant's terms of use... guess which one is harder to read?

12 of 408 comments (clear)

  1. service agreements? by dryueh · · Score: 4, Interesting
    "The question is not whether people read and understand (terms-of-service agreements)--of course they don't--but whether they can be enforced," said Cern Kaner, an attorney specializing in software legislation who teaches computer science at the Florida Institute of Technology. "I don't think that companies should have the right to spy on you without your actual permission, but I think it will be hard...to prosecute companies who do engage in this type of practice if you have actually clicked on an agreement that gives them permission."

    I'm wondering if anyone DOES know the legal implications of those service agreements. When those long agreements pop-up before installation, not only does no one read them, but you agree to the thing by clicking on either 'yes' or 'no' buttons....is a yes/no button a legally binding clause? They do not, at any point, get your signature nor is the agree monitored by anything other than the installation program itself (i'm assuming, anyway).

    I don't know...I'm curious..thoughts?

  2. Re:And the public cried... by anonymouZ+coward · · Score: 3, Interesting

    When you lease a car, you don't own it. The lease company does. They can do whatever they want to with the vehicle as long as they disclose that up front. If you sign the lease without reading the fine print, that's your fault. Now granted, I think software companies are trying to snowball consumers by throwing multi page EULA's at them and burying the scary stuff. All the more reason to only use GPL software. I'm afraid to even boot my Winblows box without running Adaware right away.

  3. Just enlightened my neighboor by Sabalon · · Score: 5, Interesting

    He got a new computer, got all excited about Morpheus and then they switched. Since then he hasn't been able to get anything to start downloading. So he was telling me he was going to install this Kaaza thing and try it, and asked me if I'd heard of it.

    As I explained some of the functionality surplus to him, you could see his jaw just dropping and dropping.

    But I betcha he'll still install it - cause he loves the CD burner he has and how easy it is to burn MP3's-> CDDA.

  4. don't care about the 'hidden network'.... by reaper20 · · Score: 3, Interesting

    I care that this bde stuff is bringing w2k/xp machines down to a grinding halt in fugly ways.

    Ad-aware is getting used more and more in my toolkit. I sure wish Norton/Macafee/whoever would just go ahead and add crap like this into their AV software. This garbage is a "virus" in my book.

  5. Re:And the public cried... by Spankophile · · Score: 5, Interesting

    It only goes to show that you should read everything before you sign it. This is similar to discovering on your car lease that the company reserves the right to use the car when you aren't.


    I've always wondered if the "click if you agree" thing is enough. I remember learning once in my highschool law class that when it came to contracts etc, both parties had to fully understand the extent of the wording - in order to protect people from "fine print" trickery.

    It would seem to me that these over-complicated EULAs are an attempt to either confuse users, or get them to click "Agree" without understanding the terms.

    If I "trick" you into signing something, you should still be legally protected. Granted of course that you can afford to take it to court.

    But that's what class action suits are for right?
    IADNAL (D==Definitely)

  6. Why is this so difficult? by kvn299 · · Score: 5, Interesting

    I'm so glad these guys are getting pounded for this. It's pretty amazing how many news outlets picked up on this story. Unfortunately, there are many many more situations like this that are overlooked.

    I really don't have a problem with companies adding extra programs into their software. The problem I have is 1) Not being told about it and 2) Not being given the option of opting out or not installing it.

    As far as I'm concerned, a license is not an appropriate place to inform the user of third party software coming along for the ride. Software should be very explicit during install exactly what's happening. That way, the user can either not install the program, or if allowed, not install that component. What's so hard about that?

    The fact that these companies try to hide this stuff shows they know the systems are a bit shady.

    Strangely enough, this happens with big-time commercial software as well. I was pretty p*ssed when Intuit's TurboTax installed Internet Explorer on my laptop without asking. It just told me, "Installing IE 5.5 now" with no cancel button. I had 5.0 installed and it was there for a reason. Oh, well.

    Hopefully, awareness of these practices will hurt companies who will entually find it beneficial to be up front with their customers!

  7. msconfig by The+Ape+With+No+Name · · Score: 5, Interesting

    Part of my job is to configure students machines for use on a dorm network. Very often we get complaints about service ranging from no connectivity to slow performance. Of course the slowness can be directly attributed to P2P apps and their tendency to hog bandwidth, but Gator and its ilk are notorious in our circles as poorly written programs that not only do all the privacy violation, etc that they should be reviled for, they also have the unique ability to mung Winsock on machines running ME, 98 and 2000. The fix requires a young priest and old priest and a silver sword (read: edit the registry and rebuild the TCP/IP stack). So now when I get a machine with Gator, etc. I edit the system startup to shut it down. Invariably the performance of the machine and its network connectivity rebounds. I don't ask permission to do this as we are not removing the program, but simply preventing having the prolematic software do what it does -- start.

    --
    Comparing it to Windows will be a moot point, since El Dorado is going to have a 40% larger code base than XP.
    1. Re:msconfig by The+Ape+With+No+Name · · Score: 3, Interesting

      Delete tcp/ip from the network config and delete all the winsock keys from the registry as well as the dhcp keys. reboot. reinstall the tcp/ip in the network config. reboot. Worky.

      --
      Comparing it to Windows will be a moot point, since El Dorado is going to have a 40% larger code base than XP.
  8. Open source scanning solution ? by sh0rtie · · Score: 3, Interesting


    I think the general concensus amonst us all is that spyware is bad, yet the only reliable (and free) solution seems to of been delegated to our friends at Lavasoft, while they are doing a *great* job, their project is unfortunatly closed source and therefore people/programmers cannot really contribute to its success (other than donate cash which is reccomended but not convienent to everyone)

    if people feel so strongly on this issue why hasen't anyone started an open source solution to this scurge so the talented programmers amongs us can improve the scanning and detection techniques ?

    at the moment the spyware companies only really have to make their product beat lavasofts Adaware and they are in business (at least til/if Adaware picks it up)

    sure spyware seems to be only targeted to Windows users but as other operating systems become more widespread it is only a matter of time before they spread to these alternative platforms too

    while closed source could be argued as a good thing (stop spycompanies seeing how it works) could they beat 100's of programmers all working to make the scanning engine more robust and secure, this obviously works in regards to computer security on *nix platforms as viruses are not more prominent than closed source platforms
    so would beating spyware benefit from these same techniques ?

    While i agree that these spyware programs should be regarded as viruses/trojans i think once you bring a commercial element into the equation you open yourselves up to attacks of perpetuating the products life/success (ie: rumours that virus detection companies create viruses)

    so would an open source spyware detection solution work ?

  9. Software licenses and FAQs by Midnight+Thunder · · Score: 3, Interesting
    I am starting to really believe that all software licenses should include a FAQ, so people don't have read the whole unreadable text of a software license. I know that many companies write software licenses to protect themselves, but more and more are also doing it to gain additional rights.

    Other ideas that come to mind are standardized liability levels to which you can associate a logo. Something like 'MC' = Mission Critical, we pay if it breaks, 'NL' = No liability, you assume all the risks, and probably other more fine grained categories? The idea is that a software purchaser should know where they stand when buying a piece of software, rather than having to resort to hiring a lawyer or screwing themselves royally because they don't have the time for the fine print.

    Just imagine having a license written on the wrapping paper of every present you get at christmas. I am not sure anyone would check what it had to say, since they just want to get to the goody inside - software is the same.

    --
    Jumpstart the tartan drive.
  10. Thieves and Eavesdroppers can't complain by Dragoness+Eclectic · · Score: 5, Interesting


    I wonder if anyone has reverse-engineered BDE's protocols yet? It would be a damn shame, wouldn't it, if their surreptiously installed thiefware should inadvertantly retrieve data containing a destructive worm as a payload, or if their computations were all skewed just enough to still be plausible, but uselessly wrong, or if the client on some computer that their server connected to wasn't quite the client they originally installed, and had unfortunate effects on said server....

    Eavesdroppers can't complain if what they hear is unflattering, and thieves can't complain if the stuff they stole is dangerous to them.

    --
    ---dragoness
  11. 65-year-old Kazaa user? by ChaosDiscordSimple · · Score: 4, Interesting

    I think the fact that Kazaa has 65 year old users is the real news here. Clearly file sharing has become mainstream if grandmothers are using it.