Category Archives: Security

Facial Recognition on Facebook

I agree with this general assessment of Facebook

Brad Shimmin, an analyst with Current Analysis, said it’s clear that Facebook hasn’t learned any big lessons from its previous privacy brouhahas .

“Facebook’s repeated methodology of opting all users into new services, particularly services with potentially damaging ramifications, demonstrates a certain disregard for the security and privacy of its users,” Shimmin said.

There is no excuse for Facebook. They just fail and fail again. An opt-in system could be very easily advertised by them. What possible reason could they have to make it an opt-out?

The Facebook blog post does not hide the fact that they want their users to have to dig their way out of facial recognition software.

When you or a friend upload new photos, we use face recognition software (similar to that found in many photo editing tools) to match your new photos to other photos you’re tagged in. We group similar photos together and, whenever possible, suggest the name of the friend in the photos.

If for any reason you don’t want your name to be suggested, you will be able to disable suggested tags in your Privacy Settings. Just click “Customize Settings” and “Suggest photos of me to friends.” Your name will no longer be suggested in photo tags, though friends can still tag you manually.

What’s the supposed benefit of facial recognition technology on a social network platform? Let’s say you are the type of person who uploads a lot of photos of the same person…

Instead of typing her name 64 times, all you’ll need to do is click “Save”…

They are offering to save time for a certain type of user. It does not by any means justify an opt-out philosophy for automatically tagging everyone else, given the risk and privacy issues.

Google built but never launched a facial recognition service. The company was worried about its potential for abuse, says Google chairman Eric Schmidt.

Facebook’s system also brings to mind the problem of what happens if every face in every picture is the same? In other words how long before a clever artist builds a flashmob holding up masks with a picture of someone else to get it automatically tagged hundreds or even thousands of times?

This seems like the obvious answer and a great way to protest the opt-out:

Introducing the Mark Zuckerberg Halloween Mask

Now you too can look like the man who says his plan to “become a vegetarian” is killing and eating animals.

ATM + Pipe Organ = Art?

A Diebold Opteva 562 cash dispenser has been set into the centre of a pipe organ for an art exhibit titled “Algorithm” at the U.S. Pavilion for the 54th International Art Exhibition.

Each financial transaction that visitors conduct generates a unique musical score that produces randomized notes and chords at varying degrees of volume by driving pressurized air through pipes selected via the ATM keyboard.

I bet the notes are not truly random.

And the second thing that comes to mind are the televangelist priests begging for money and keeping two sets of accounting books. Not sure if that was the idea.

ATMorgan

EC2 Security Group Support

EC2 application instances can now restrict traffic that they will accept to a specific load balancer by specifying a Security Group:

To do this, you call the DescribeLoadBalancers API to get the name of the Security Group, and then include that group in the group list when you subsequently launch some EC2 instances. The name of the Security Group can also be obtained from the load balancer details pane in the AWS Management Console.

Happy IPv6 Day!

Today is World IPv6 Day, a 24-hour test of IPv6.

The goal of the Test Flight Day is to motivate organizations across the industry – Internet service providers, hardware makers, operating system vendors and web companies – to prepare their services for IPv6 to ensure a successful transition as IPv4 addresses run out.

The BBC (www.bbc.co.uk), for example, is now running on the IPv6 address 2001:4b10:bbc::1

Even if you don’t join the fun, you can test your connection for readiness.

RIPE NCC is providing a running measurement of status.