ASE Labs
Welcome Guest. Please register or log in now. There are 64 people online (0 Friends).
  • Home
  • Articles
  • News
  • Forum
  • Register/Login

'Bittersweet Cookies': New Types of 'cookies' Raise Online Security & Privacy Concerns in EU Agency Paper

Poster: SySAdmin
Posted on February 17, 2011 at 7:07:01 PM
'Bittersweet Cookies': New Types of 'cookies' Raise Online Security & Privacy Concerns in EU Agency Paper

BRUSSELS and HERAKLION, Greece, February 18, 2011/PRNewswire/ --     The EU's 'cyber security' Agency ENISA has published a paper on the
security and privacy concerns regarding new types of online 'cookies'. The
advertising industry has led the drive for new, persistent and powerful
cookies, with privacy-invasive features for marketing practices and
profiling. The Agency advocates e.g. that both the user browser and the
origin server must assist informed consent, and that users should be able to
easily manage their cookies. The Agency recommends a thorough study of
different interpretations in the Member States, once the Directive
2009/136/EC Directive 2009/136/EC (
http://eur-lex.europa.eu/LexUriServ/LexUriServ.do?uri=OJ:L:2009:337:0011:0036
:En:PDF) has been implemented, by 25 May 2011.

    The new Agency Position Paper identifies and analyzes cookies in terms of
security vulnerabilities and the relevant privacy concerns. Cookies were
originally used to facilitate browser-server interaction. Lately, driven by
the advertising industry, they are used for other purposes; e.g. advertising
management, profiling, tracking, etc. The possibilities to misuse cookies
both exist and are being exploited.

    The new type of cookies support user-identification in a persistent
manner and do not have enough transparency of how they are being used.
Therefore, their security and privacy implications are not easily
quantifiable. To mitigate the privacy implications, the Agency recommends,
among other things, that:

   
    - Informed consent should guide the design of systems using cookies; the
      use of cookies and the data stored in cookies should be transparent for
      the users.
    - Users should be able to easily manage cookies: in particular news
      cookie types. As such all cookies should have removal mechanisms easy
      to understand and use by any user.
    - Storage of cookies outside browsers control should be limited or
      prohibited.
    - Users should be provided with another service channel if they do not
      accept cookies.

    The Executive Director of ENISA, Prof. Udo Helmbrecht
(http://www.enisa.europa.eu/about-enisa/structure-organization/executive-dire
ctor) underlines;

    "Much work is needed to make these next-generation cookies as
transparent and user-controlled as regular HTTP cookies, as to safeguard the
privacy and security aspects of consumers and business alike".

    Dr. Jose Fernandes, Director of Department for Development
Support and Academia, Microsoft Portugal, stated "Every year more businesses
come online using the Internet. [...] Security and privacy are key to make
this happen, so end-user and business people can fully trust online services.
ENISA has a great role to play in this space and I congratulate them to put
forward this study."

    The EU Member States (MS) must transpose Directive 2009/136/
(http://eur-lex.europa.eu/LexUriServ/LexUriServ.do?uri=OJ:L:2009:337:0011:003
6:En:PDF)EC Directive 2009/136/ECinto national law by 25 May 2011. It
underlines the need for a valid consent by the user and that users receive
prior and clear information. Thus, the Agency advocates for a study of the
MS' implementation measures after the transposition deadline.

    For full paper; http://www.enisa.europa.eu/act/it/pat, or
http://www.enisa.europa.eu/act/it/library/pp/cookies/

    (Due to the length of the URLs, it may be necessary to copy and paste
the hyperlinks into your Internet browser's URL address field. Remove the
space if one exists.)

Source: ENISA - European Network and Information Security Agency

For interviews, or further details: Ulf Bergstrom, Spokesman, ENISA, press@enisa.europa.eu, Mobile: +30-6948-460-143; or Rodica Tirtea, Expert, ENISA, rodica.tirtea@enisa.europa.eu.
 
Print This Entry
Tags PR Press Release
Related Articles
  • Huntkey Has Launched Its New Power Strips with USB Chargers on Amazon US
  • Inspur Releases TensorFlow-Supported FPGA Compute Acceleration Engine TF2
  • Hot Pepper Introduces Spicy New Smartphones in US Markets
  • Sharp Introduces New Desktop Printers For The Advanced Office
  • DJI Introduces Mavic 2 Pro And Mavic 2 Zoom: A New Era For Camera Drones
Login
Welcome Guest. Please register or log in now.
Forgot your password?
Navigation
  • Home
  • Articles
  • News
  • Register/Login
  • Shopping
  • ASE Forums
  • Anime Threads
  • HardwareLogic
  • ASE Adnet
Latest News
  • Kingston HyperX Cloud 2 Pro Gaming Headset Unboxing
  • Synology DS415+ Unboxing
  • D-Link DCS-5020L Wireless IP Pan/Tilt IP Camera
  • Actiontec WiFi Powerline Network Extender Kit Unboxing
  • Durovis Dive Unboxing
  • Bass Egg Verb Unboxing
  • Welcome to the new server
  • Gmail Gets Optional Preview Pane
  • HBO Go on Consoles
  • HP Touchpad Update
Latest Articles
  • D-Link Exo AC2600 Smart Mesh Wi-Fi Router DIR-2660-US
  • HyperX Double Shot PBT Keys
  • Avantree ANC032 Wireless Active Noise Cancelling Headphones
  • ScharkSpark Beginner Drones
  • HyperX Alloy FPS RGB Mechanical Gaming Keyboard
  • D-Link DCS-8300LH Full HD 2-Way Audio Camera
  • Contour Unimouse Wireless Ergonomic Mouse
  • HyperX Cloud Alpha Pro Gaming Headset
  • Linksys Wemo Smart Home Suite
  • Fully Jarvis Adjustable Standing Desk
Latest Topics
  • Hello
  • Welcome to the new server at ASE Labs
  • Evercool Royal NP-901 Notebook Cooler at ASE Labs
  • HyperX Double Shot PBT Keys at ASE Labs
  • Avantree ANC032 Wireless Active Noise Cancelling Headphones at ASE Labs
  • ScharkSpark Beginner Drones at ASE Labs
  • HyperX Alloy FPS RGB Mechanical Gaming Keyboard at ASE Labs
  • D-Link DCS-8300LH Full HD 2-Way Audio Camera at ASE Labs
  • Kingston SDX10V/128GB SDXC Memory at ASE Labs
  • What are you listening to now?
  • Antec Six Hundred v2 Gaming Case at HardwareLogic
  • Sans Digital TR5UTP 5-Bay RAID Tower at HardwareLogic
  • Crucial Ballistix Smart Tracer 6GB PC3-12800 BL3KIT25664ST1608OB at HardwareLogic
  • Cooler Master Storm Enforcer Mid-Tower Gaming Case at HardwareLogic
  • Arctic M571-L Gaming Laser Mouse at ASE Labs
  • Contour Unimouse Wireless Ergonomic Mouse at ASE Labs
Advertisement
Advertisement
Press Release
  • Huntkey Has Launched Its New Power Strips with USB Chargers on Amazon US
  • Inspur Releases TensorFlow-Supported FPGA Compute Acceleration Engine TF2
  • Hot Pepper Introduces Spicy New Smartphones in US Markets
  • Sharp Introduces New Desktop Printers For The Advanced Office
  • DJI Introduces Mavic 2 Pro And Mavic 2 Zoom: A New Era For Camera Drones
  • DJI Introduces Mavic 2 Pro And Mavic 2 Zoom: A New Era For Camera Drones
  • Fujifilm launches "instax SQUARE SQ6 Taylor Swift Edition", designed by instax global partner Taylor Swift
  • Huawei nova 3 With Best-in-class AI Capabilities Goes on Sale Today
  • Rand McNally Introduces Its Most Advanced Dashboard Camera
  • =?UTF-8?Q?My_Size_to_Showcase_Its_MySizeId=E2=84=A2_Mobil?= =?UTF-8?Q?e_Measurement_Technology_at_CurvyCon_NYC?=
Home - ASE Publishing - About Us
© 2010 Aron Schatz (ASE Publishing) [Queries: 16 (8 Cached)] [Rows: 292 Fetched: 35] [Page Generation time: 0.010672092437744]