New User, Welcome!     Login

Re: Standing Up Against German Laws - Project HayNeedle

Related Terms:
Bruce Schneier
From: johan beisser <jb caustic org>
To: Paul Sebastian Ziegler <psz observed de>
Cc: bugtraq securityfocus com, full-disclosure <full-disclosure lists grok org uk>
Subject: Re: Standing Up Against German Laws - Project HayNeedle
Date: Mon - Nov 12, 2007 09:29 AM



On Nov 10, 2007, at 9:28 AM, Paul Sebastian Ziegler wrote:

> The mechanism is quite easy: It searches Google for random words and
> picks random pages among the results, then spiders from there (well it
> is spidering except that it only follows one URL at a time within a
> session thus simulating a user).

There's a few things wrong with this approach. Most of them were  
outlined by Bruce Schneier when he reviewed "TrackMeNot"[1] last year.

The same issues with TrackMeNot apply to Hayneedle, including  
potential false positives, and list of word combinations that can be  
filtered out easily, and well, the list goes on.



[1] http://www.schneier.com/blog/archives/2006/08/trackmenot_1.html




Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!