{"id":3054,"date":"2012-06-28T18:54:32","date_gmt":"2012-06-28T08:54:32","guid":{"rendered":"http:\/\/www.flamingspork.com\/blog\/?p=3054"},"modified":"2012-06-28T18:56:23","modified_gmt":"2012-06-28T08:56:23","slug":"telstra-has-a-database-of-your-nextg-web-activity","status":"publish","type":"post","link":"https:\/\/www.flamingspork.com\/blog\/2012\/06\/28\/telstra-has-a-database-of-your-nextg-web-activity\/","title":{"rendered":"Telstra has a database of your NextG web activity"},"content":{"rendered":"<p>So, in what must be my biggest blog day ever, Telstra posted this:\u00c2\u00a0<a href=\"http:\/\/exchange.telstra.com.au\/2012\/06\/28\/further-update-telstra-smart-controls-cyber-safety-tool\/\">http:\/\/exchange.telstra.com.au\/2012\/06\/28\/further-update-telstra-smart-controls-cyber-safety-tool\/<\/a><\/p>\n<p>What is clear from their previous post and the pickup in the media (including ABC, Crikey and news.com.au) is that people care about this, a <strong>lot<\/strong>.<\/p>\n<p>What is also clear is that they&#8217;ve had to go and talk to the\u00c2\u00a0Privacy Commissioner, the Australian Communication and Media Authority, the Telecommunications Industry Ombudsman and the Australian Communications Consumer Action Network.<\/p>\n<p>I&#8217;d like to thank <a href=\"https:\/\/twitter.com\/SenatorLudlam\">Senator Ludlam<\/a> for raising this with Telstra government affairs which without a doubt helped raise the profile of this issue.<\/p>\n<p>There are a couple of issues with Telstra&#8217;s updated statement:<\/p>\n<ol>\n<li>They admit to constructing a database with your full query string and IP address<\/li>\n<li>They don&#8217;t address the moral issue of being involved with a company so involved in curtailing human rights (Netsweeper).<\/li>\n<li>Just stripping out the query string doesn&#8217;t erase all personal information<\/li>\n<\/ol>\n<p>I don&#8217;t think we can ignore any of these problems, and I hope we get good responses and resolutions to them.<\/p>\n<p>The significance of point 1 should not be understated. This means that some people, somewhere, have access to a decent amount of your browsing history. There is no details on who has access to this (hint: law enforcement could probably request it). There is also no explanation about why this was applied to everyone.<\/p>\n<p><strong>Update:<\/strong> after rereading their blog post, at best I can say it&#8217;s ambiguous on if they stored this or not. One sentence implies that they do, another implies that they don&#8217;t. Clarification would be most welcome, and given the history so far, we should <strong>not<\/strong> assume the best.<\/p>\n<p>Personally, I&#8217;m really disappointed in Telstra for at any point thinking it&#8217;s okay to finance human rights abuses. I&#8217;m also really disappointed in world governments for permitting the sale of such software to those who use it to oppress their people. We should be in the business of exporting freedom and democracy, not exporting tyranny and oppression.<\/p>\n<p>If you have a NextG handset, I <strong>strongly<\/strong> suggest the following:<\/p>\n<ul>\n<li>iOS device users (iPad and iPhone): Go look at <a href=\"http:\/\/v3.mike.tig.as\/onionbrowser\/\">Onion Browser<\/a><\/li>\n<li>Android users: read my post<a href=\"http:\/\/www.flamingspork.com\/blog\/2012\/06\/28\/tor-firefox-twitter-not-rooted-android-awesome\/\">\u00c2\u00a0http:\/\/www.flamingspork.com\/blog\/2012\/06\/28\/tor-firefox-twitter-not-rooted-android-awesome\/<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>So, in what must be my biggest blog day ever, Telstra posted this:\u00c2\u00a0http:\/\/exchange.telstra.com.au\/2012\/06\/28\/further-update-telstra-smart-controls-cyber-safety-tool\/ What is clear from their previous post and the pickup in the media (including ABC, Crikey and news.com.au) is that people care about this, a lot. What &hellip; <a href=\"https:\/\/www.flamingspork.com\/blog\/2012\/06\/28\/telstra-has-a-database-of-your-nextg-web-activity\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2},"jetpack_post_was_ever_published":false},"categories":[2],"tags":[476,471,472,470,477],"class_list":["post-3054","post","type-post","status-publish","format-standard","hentry","category-life-the-universe-and-everything","tag-netsweeper","tag-nextg","tag-surveillance","tag-telstra","tag-tor"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p5a6n8-Ng","jetpack-related-posts":[{"id":3031,"url":"https:\/\/www.flamingspork.com\/blog\/2012\/06\/26\/an-update-on-telstras-surveillance-of-what-you-do-online\/","url_meta":{"origin":3054,"position":0},"title":"An update on Telstra&#8217;s surveillance of what you do online","author":"Stewart Smith","date":"2012-06-26","format":false,"excerpt":"http:\/\/www.scmagazine.com.au\/News\/306441,telstra-tracks-users-to-build-web-filter.aspx I'd suggest going and reading:\u00c2\u00a0http:\/\/arstechnica.com\/tech-policy\/2009\/09\/your-secrets-live-online-in-databases-of-ruin\/\u00c2\u00a0to learn a bit about anonymization failures. What we know: Telstra has the ability to monitor every URL you visit on a NextG connection Telstra is, in fact, monitoring every URL you visit through your NextG connection and piping that to some computer system that\u2026","rel":"","context":"In &quot;life, the universe and everything&quot;","block_context":{"text":"life, the universe and everything","link":"https:\/\/www.flamingspork.com\/blog\/category\/life-the-universe-and-everything\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":3092,"url":"https:\/\/www.flamingspork.com\/blog\/2012\/07\/05\/the-age-fairfax-picks-up-on-telstra-nextg-stalking\/","url_meta":{"origin":3054,"position":1},"title":"The Age (Fairfax) picks up on Telstra NextG &#8216;stalking&#8217;","author":"Stewart Smith","date":"2012-07-05","format":false,"excerpt":"http:\/\/www.theage.com.au\/technology\/technology-news\/telstra-accused-of-next-g-web-stalking-20120705-21ivs.html It took a while, but it's there. There is a mention of Netsweeper and that they provide products and services to Yemen, Qatar and the United Arab Emirates but it misses what these products are really for.","rel":"","context":"In &quot;life, the universe and everything&quot;","block_context":{"text":"life, the universe and everything","link":"https:\/\/www.flamingspork.com\/blog\/category\/life-the-universe-and-everything\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":3022,"url":"https:\/\/www.flamingspork.com\/blog\/2012\/06\/25\/on-telstra-tracking-nextg-http-requests\/","url_meta":{"origin":3054,"position":2},"title":"On Telstra tracking NextG HTTP requests","author":"Stewart Smith","date":"2012-06-25","format":false,"excerpt":"http:\/\/lists.ausnog.net\/pipermail\/ausnog\/2012-June\/013833.html\u00c2\u00a0and\u00c2\u00a0http:\/\/www.scmagazine.com.au\/News\/305928,telstra-says-its-not-spying-on-users.aspx\u00c2\u00a0were recently published saying that Telstra NextG users were seeing some interesting things. (Yes, there's a Whirlpool post too, but since they block requests from Tor I'm not going to link to them) Basically, on their servers they were seeing HTTP requests to the same URL as they had just\u2026","rel":"","context":"In &quot;life, the universe and everything&quot;","block_context":{"text":"life, the universe and everything","link":"https:\/\/www.flamingspork.com\/blog\/category\/life-the-universe-and-everything\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":3039,"url":"https:\/\/www.flamingspork.com\/blog\/2012\/06\/27\/telstra-stops-tracking-still-supporting-netsweeper\/","url_meta":{"origin":3054,"position":3},"title":"Telstra stops tracking, still supporting Netsweeper","author":"Stewart Smith","date":"2012-06-27","format":false,"excerpt":"http:\/\/www.zdnet.com.au\/telstra-halts-customer-tracking-339340404.htm The big news: \"We are stopping all collection of website addresses for the development of this new product,\" Telstra said in a statement. This does not change their association (and presumed financial support) of Netsweeper, helping make its technology affordable to its government customers who use it to suppress\u2026","rel":"","context":"In &quot;life, the universe and everything&quot;","block_context":{"text":"life, the universe and everything","link":"https:\/\/www.flamingspork.com\/blog\/category\/life-the-universe-and-everything\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":3036,"url":"https:\/\/www.flamingspork.com\/blog\/2012\/06\/26\/telstra-funding-censorship-in-middle-east\/","url_meta":{"origin":3054,"position":4},"title":"Telstra funding censorship in Middle East","author":"Stewart Smith","date":"2012-06-26","format":false,"excerpt":"This post inspired by\u00c2\u00a0https:\/\/twitter.com\/BernardKeane\/status\/217535549731389440 So, we know that Netsweeper is used by Telstra -\u00c2\u00a0http:\/\/www.zdnet.com.au\/telstra-logs-customer-history-for-new-filter-339340337.htm We know that Netsweeper is used in Qatar, the UAE and Yemen (\u00c2\u00a0http:\/\/en.wikipedia.org\/wiki\/Internet_censorship\u00c2\u00a0- see also\u00c2\u00a0http:\/\/www.guelphmercury.com\/news\/local\/article\/577673--aiding-repression-or-just-doing-business\u00c2\u00a0) and these states use it to suppress free speech and access to information. The majority of countries that implement suppression of\u2026","rel":"","context":"In &quot;life, the universe and everything&quot;","block_context":{"text":"life, the universe and everything","link":"https:\/\/www.flamingspork.com\/blog\/category\/life-the-universe-and-everything\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":3062,"url":"https:\/\/www.flamingspork.com\/blog\/2012\/06\/29\/not-a-good-week-for-telstra-and-privacy\/","url_meta":{"origin":3054,"position":5},"title":"Not a good week for Telstra and privacy","author":"Stewart Smith","date":"2012-06-29","format":false,"excerpt":"The Office of the Australian Information Commissioner just posted this:\u00c2\u00a0http:\/\/www.oaic.gov.au\/news\/media_releases\/media_release_120629_telstra_breaches_privacy_act.html This isn't to do with what I've posted about here the past few days, but to do with an incident back in December 2011. The details of\u00c2\u00a0\u00c2\u00a0734,000 customers were available publicly on the Internet. Details exposed include: Name phone numbers\u2026","rel":"","context":"In &quot;life, the universe and everything&quot;","block_context":{"text":"life, the universe and everything","link":"https:\/\/www.flamingspork.com\/blog\/category\/life-the-universe-and-everything\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]}],"jetpack_likes_enabled":true,"_links":{"self":[{"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/posts\/3054","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/comments?post=3054"}],"version-history":[{"count":3,"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/posts\/3054\/revisions"}],"predecessor-version":[{"id":3056,"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/posts\/3054\/revisions\/3056"}],"wp:attachment":[{"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/media?parent=3054"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/categories?post=3054"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.flamingspork.com\/blog\/wp-json\/wp\/v2\/tags?post=3054"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}