Cnet Apologizes For Nmap Adware Mess
Trailrunner7 writes "Officials at Cnet's Download.com site have issued a statement apologizing for bundling the popular open source Nmap security audit application with adware that installed a toolbar and changed users' search engine to Microsoft properties. Fyodor, the author of Nmap, raised the issue earlier this week, saying that his app was being wrapped in malware on Download.com. It's not unusual for download sites to bundle free applications with some kind of adware or toolbar, but the creators of open-source applications take a dim view of this practice, given the nature and ethic of open source projects. Nmap is a venerable and widely used tool for mapping networks and performing security audits and Fyodor wrote in a message to an Nmap mailing list earlier this week that Download.com, which is part of Cnet, a subsidiary of CBS Interactive, was bundling the application with its installer, which, if a user agreed, would install a search toolbar and change the user's search engine to Bing."
Do some shady/shitty dealing and make big money. Then apologize for the mess you have caused. IF thats not enough and you get sued, pay some reparations which is ridiculously low compared to your profits.
This cycle is what is driving the society down under. What BP did, what Lockheed did, what intel did. im sure you know about what bp did last year - killed an entire ecosystem. you may also know about intel's bribery case with pc manufacturers. but you probably dont know what lockheed did - they have bribed nato country defense ministers to buy f104s over more capable aircraft. as a result numerous things happened, including, approx 600 nato pilots dying due to design deficiencies (it had a tendency to maul its tail on landing and take off - hence nicknamed flying coffin) over the years, british and other european aerospace industries died.
what happened ? lockheed was sued, then admitted to bribery, apologized, paid pathetic sums.
unless people running corporations AND their shareholders start being held responsible for their doings, these will continue.
Read radical news here
...downloaded from download sites since the late 90's. My paranoia has finally paid off!
"That's right...I said it."
It is entirely within the license terms of any OSI-approved Open Source license to aggregate any software, regardless of its nature, on the same medium as Open Source software and to install it with the same installer that installs the Open Source. Even software that is harmful. Only if the software is a derivative work of the Open Source will the license apply to it.
Sure, CNet shouldn't do this, and if they keep doing it we'll eventually start using new licenses that make them copyright infringers. But right now it's legal.
Bruce Perens.
Who would download a tool like nmap from download.com? What sort of person does this? How is this a thing that happens?
It takes years to earn trust. It takes only one event like this to destroy said trust for good. Up to a year ago, I used download.com where they always proclaimed "Spyware free" etc... That trust has been erased and I will never go back to that site. But really, after they began doing the indirect download using their own downloader, that turned me off right then and there and I stopped about a year ago.
Too late.
They should not have done it in the first place, and I will be looking elsewhere for my downloads.
If I were God, wouldn't I protect my churches from acts of me?
... downloaded from CNet for my first time ever. I got the blasted toolbar, converted to Bing and had random background audio advertising to me.
I used them because I had a good impression of CNet. Bad choice.
Waiting for their tagline to change to "Safe, Trusted, and We Apologize For Spyware"
Should you be using Nmap if you can't pay enough attention to opt out of installing a toolbar?
"If any question why we died, Tell them because our fathers lied."
Or if PIPA or SPA were law, he could have tried to seize the domain "download.com"
General Relativity: Space-time tells matter where to go; Matter tells space-time what shape to be.
If it's optional, what's the problem?
This is where he should sue CNet for slander of trademark, and tortious interference with business relations.
Until the next time we need a bonus anyway...
-The wise argue that there are few absolutes, the fool argues that there are no probabilities.
They're not sorry about the bundled *extras*, they're sorry they *got caught*...
I've got better things to do tonight than die.
... such slimy tactics to advocate for Bing? Is it that bad?
Cnet and download.com used to be the site I trusted for downloading software, given their consistently good business practices and the number of other sites that included malware, spyware, and/or bloatware along with their downloads. Obviously I still trust Sourceforge, Ubuntu apt-get, and the download sites that various other projects provide for their own code, but for Windows software, download.com used to be the place to go.
So are there other sites that have good collections of Windows software and are reasonably trustable?
Bill Stewart
New Fast-Compression-only CPR http://preview.tinyurl.com/dy575ks
Making a farmer or teacher responsible for their share in a company they invested partly in for retirement is going too far. They lack the sophistication and access to resources to truly assess risk.
we are allowing people to reap benefits from things they cannot understand, fathom or use. and naturally, we are not holding them responsible from what they can not comprehend.
waiver of responsibility. no different from having to slap warnings against putting your cat in the oven on appliances. people dumber than the minimum requirement of systems and technologies we have in our modern day are using them.
long story short - whomever invests in something should be responsible with their investment. this may kill capitalism ? oh well.
Read radical news here
nmap on Windows?
remember that scene in Scanners?
.
.
.
"We're gonna need a bigger boat"
Glad I removed all my downloads from cnet a few years back. I was really getting pissed at them for hosting my files, after explicitly telling them they were not authorized to, and could only link to the download on my website. Yet they kept changing the links back and distributing my software with no rights to do so.
They're largely irrelevant now thanks to Google, so I didn't miss much. They like to think they're important and matter, but they're really no different than any other PAD-file-generated spam site that auto-awards 5 stars to everything you submit.
Morphing Software
You could examine the source, or trust the hundreds of other people who have done so.
You don't need to trust Fyodor. That's sort of the point of open source.
# cat
Damn, my RAM is full of llamas.
No mention of what happens to the money they made so far on this scam, I see.
# cat
Damn, my RAM is full of llamas.
Scroll down to the update section: http://insecure.org/news/download-com-fiasco.html
My karma is not a Chameleon.
We're sorry we got caught.
No reason to put up with crap like this. I blocked to domains cnet.com and download.com from my network. Problem solved.
Screw me once shame on you, screw me twice shame on you. I stopped using the shitty service after the first time this happened. People who still use anything from Cnet are as stupid as people who still have accounts at Bank of America.
Hope is the currency of fools
Sure, maybe farfetched considering how it worked, but maybe it was just some type of error. Wouldn't rank on my top 100 of weird shit that's happened to me.
And no, I don't work for CNet or whoever. (Hell, I don't even have a job right now.)
Vote monkeys into Congress. They are cheaper and more trustworthy.
And you think those other people writing fixes aren't inserting their own shit into the code?
Oh please.
One person can go "check this out!" and have a bunch of other friends go "This is awesome!" and suddenly everyone TRUSTS them and blindly executes code that begins to fuck their system.
Social engineering - it's more dangerous than you think.
Still waiting on Serviscope_minor to wake up to fucking reality and realize that Jessica Price isn't going to fuck him.