Computerworld
The darker side of Webmail
Web-based e-mail may be exposing you to privacy and security problems you didn't expect
Tam Harbert  29 April, 2008 10:02

Web-based e-mail is booming. Services such as Gmail, Yahoo Mail and Hotmail are convenient, accessible and, best of all, free. Many of us have come to rely on them without giving it a second thought.

But second thoughts may be in order, according to security experts, privacy advocates and some Webmail users. Few consider the fact that Webmail is inherently different than POP3 e-mail. It differs in who administers it and how, in the ways it may be vulnerable to hacking, and in the type of help you can expect when you have a problem.

You may not think these differences matter. And they don't -- unless they end up biting you in the backside. For example, the most popular Webmail services are prime targets of malicious hackers. Some Webmail users run into mysterious technical problems that are never explained or solved. And most Webmail users never really know where their data is being stored or for how long -- or how well it is being safeguarded.

How private is Webmail, really?

Although Webmail is often billed as a free service, the old adage "you can't get something for nothing" definitely applies here. While you're not giving the Webmail provider any of your cash, you are making a trade: Your personal information in exchange for the service. When you click that box on the licensing agreement -- you know, the one you didn't read -- you're probably giving permission to use the personal information you entered when you signed up. For example, Google's Privacy Policy specifically states that it collects personal information such as your name and e-mail address; it also collects information collected through your browser (such as which sites you visit) and from the text of your e-mails, which the provider uses to customize ads and conduct research.

"It's all about accumulating information about the user," notes Rob Douglas, a privacy and security consultant who edits InsideIDTheft.info. "Sure these services are 'free,' but the trade-off is that they are obtaining information about you that has value in the world of advertising and marketing." (Admittedly, most of the time this information is collected in the aggregate, so that no individuals are actually picked out.)

Not too worried about that? Maybe you should be. "I believe individuals tend to forget that much of what they do online is being recorded," says Douglas. "This collection of information is all done behind the scenes; it's not visualized when individuals are using their computers."

It can be shocking to realize how much about yourself you reveal on the Web, particularly when vendors combine information from your Webmail account with other Web 2.0 sites, such as online social networking platforms. "You start to leave a trail of information about yourself on the Internet," says Stephen Northcutt, president of the SANS Technology Institute. "Do you really want to get ads on burial plots because you drink, smoke and engage in unprotected sex?"

Computerworld Buyer's Guide - Vendors Matched to this Article

Comments

Post new comment

Login or register to link comments to your user profile, or you may also post a comment without being logged in.
The content of this field is kept private and will not be shown publicly.
Add to Google
Computerworld Buyer's Guide - Vendors Matched to this Article
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.
Newsletter Subscription
Newsletter Subscription
Sign up for our Computerworld newsletters!
Syndicate content
 

Computerworld Webinar

Thursday, June 11th, 2009
10:30am EST (Sydney, Australia)
Screening at your PC

Computerworld is hosting a 30 minute live webinar to help you to learn how unified communications can save you money, foster innovation and business agility by making it easier for people to find, reach and collaborate with one another.

Register Now

Computerworld Community Comments
Whitepaper

Keeping your SQL Server Going 24x7

The SQL Server is the vital link between corporate data and enterprise applications. With compliance and regulatory implications, as well as business disruption, keeping data up-to-date and flowing 24x7 has to be the goal. Keep your SQL server going - read more now.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links
 
Send Us E-mail | Privacy Policy
Features List | Media Kit | Advertising | Contact Us

Copyright 2009 IDG Communications. ABN 14 001 592 650. All rights reserved.
Reproduction in whole or in part in any form or medium without express written permission of IDG Communications is prohibited.