<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-2514512513991174137.post48665239888054917..comments</id><updated>2008-04-17T22:23:52.870Z</updated><title type='text'>Comments on Deny Phorm: Attempt to report a crime</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://denyphorm.blogspot.com/feeds/48665239888054917/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html'/><author><name>Deny Phorm</name><uri>http://www.blogger.com/profile/08055728128314981324</uri><email>noreply@blogger.com</email></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>8</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-2514512513991174137.post-8070136407973881063</id><published>2008-04-17T21:50:00.000Z</published><updated>2008-04-17T21:50:00.000Z</updated><title type='text'>The main talk seems to be about BT illegally inter...</title><content type='html'>The main talk seems to be about BT illegally intercepting people's traffic, and they seem like a tough target that plod and hmg prefer not to take on.  Did Phorm commit a crime under RIPA in the trials?  Perhaps they would be a softer target than BT.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/8070136407973881063'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/8070136407973881063'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html?showComment=1208469000000#c8070136407973881063' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html' ref='tag:blogger.com,1999:blog-2514512513991174137.post-48665239888054917' source='http://www.blogger.com/feeds/2514512513991174137/posts/default/48665239888054917' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-2514512513991174137.post-4442997471867872182</id><published>2008-04-08T00:54:00.000Z</published><updated>2008-04-08T00:54:00.000Z</updated><title type='text'>AlexI'm a Webmaster who would like to deny Phorm L...</title><content type='html'>Alex&lt;BR/&gt;&lt;BR/&gt;I'm a Webmaster who would like to deny Phorm Ltd. and it's subsidaries the opportunity to unlawfully intercept communication between my website(s) and my visitors, of which would be illegal as I would be denying consent forthwith.&lt;BR/&gt;&lt;BR/&gt;Could you write a practical guide for website owners to implement and deny Phorm Ltd. the opportunity?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/4442997471867872182'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/4442997471867872182'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html?showComment=1207616040000#c4442997471867872182' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html' ref='tag:blogger.com,1999:blog-2514512513991174137.post-48665239888054917' source='http://www.blogger.com/feeds/2514512513991174137/posts/default/48665239888054917' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-2514512513991174137.post-5801364782339141008</id><published>2008-03-25T11:35:00.000Z</published><updated>2008-03-25T11:35:00.000Z</updated><title type='text'>I am an intended Victim, BT tried to "Phorm" my co...</title><content type='html'>I am an intended Victim, BT tried to "Phorm" my connection about 6 months ago, but I very quickly realized something was amiss!&lt;BR/&gt;&lt;BR/&gt;The BT Webwise Site flashed up, when I connected to the Internet, as if I had rogue "spyware" on my computer offering me a "PHISHING FILTER".&lt;BR/&gt;"I Immediately shut this Down"&lt;BR/&gt;I also noted the now infamous "dns.sysip.net" instead of a BT DNS Server!&lt;BR/&gt;&lt;BR/&gt;I "HAVE" asked the Police both on a National level &amp; a local level to investigated via their WEB Forms.&lt;BR/&gt;"Anonymously" because I am still using BT as my ISP!"&lt;BR/&gt;&lt;BR/&gt;So the Police stating they have not had complaints that they are obliged to investigate, IS EYEWASH &amp; denotes something very "Fishy" happening at a higher level!!&lt;BR/&gt;&lt;BR/&gt;I also note via my TCP/IP monitoring software the extra DUP/ACK's etc when "iframes forms etc" &amp; other such parts are being accessed on the "Web Pages etc served by the WWW.&lt;BR/&gt;&lt;BR/&gt;I formally ask BT to stop intercepting my traffic &amp; the police to investigate wire-tapping of Legitimate communications on the BT Network of Non Business Customers!</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/5801364782339141008'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/5801364782339141008'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html?showComment=1206444900000#c5801364782339141008' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html' ref='tag:blogger.com,1999:blog-2514512513991174137.post-48665239888054917' source='http://www.blogger.com/feeds/2514512513991174137/posts/default/48665239888054917' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-2514512513991174137.post-627790701571051911</id><published>2008-03-19T15:26:00.000Z</published><updated>2008-03-19T15:26:00.000Z</updated><title type='text'>Do Phorm comply with the following, does it apply?...</title><content type='html'>Do Phorm comply with the following, does it apply?&lt;BR/&gt;&lt;BR/&gt;http://www.asa.org.uk/asa/codes/cap_code/ShowCode.htm?clause_id=1490&lt;BR/&gt;&lt;BR/&gt;http://www.asa.org.uk/asa/codes/cap_code/ShowCode.htm?clause_id=1501&lt;BR/&gt;&lt;BR/&gt;http://www.asa.org.uk/asa/codes/cap_code/ShowCode.htm?clause_id=1503</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/627790701571051911'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/627790701571051911'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html?showComment=1205940360000#c627790701571051911' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html' ref='tag:blogger.com,1999:blog-2514512513991174137.post-48665239888054917' source='http://www.blogger.com/feeds/2514512513991174137/posts/default/48665239888054917' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-2514512513991174137.post-7221656072241848799</id><published>2008-03-19T07:42:00.000Z</published><updated>2008-03-19T07:42:00.000Z</updated><title type='text'>As a server operator, I'm worried about Phorm moni...</title><content type='html'>As a server operator, I'm worried about Phorm monitoring my data without *my* permission. After all, it's not just end users but website owners that are monitored, even though we're not the customer of BT, TalkTalk or Virgin Media!&lt;BR/&gt;&lt;BR/&gt;I've set my .htaccess file with the following to add a header to every web page and graphic served to explicitly say I don't consent to Phorm monitoring traffic from my server. We need to get every webmaster to do the same!&lt;BR/&gt;&lt;BR/&gt;Header add Phorm "Phorm Inc, All Subsidiary Companies of Phorm Inc, OIX Network, Internet Service Providers using the technologies provided by the former mentioned companies; We specifically deny permission for the former mentioned companies to intercept any communication between a remote user accessing content on our Server and that person's Internet Web Browser, or any other Interface that such a remote user may use to obtain our data."&lt;BR/&gt;&lt;BR/&gt;Header add Phorm-Consent "No"</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/7221656072241848799'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/7221656072241848799'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html?showComment=1205912520000#c7221656072241848799' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html' ref='tag:blogger.com,1999:blog-2514512513991174137.post-48665239888054917' source='http://www.blogger.com/feeds/2514512513991174137/posts/default/48665239888054917' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-2514512513991174137.post-5268441234555060069</id><published>2008-03-18T14:19:00.000Z</published><updated>2008-03-18T14:19:00.000Z</updated><title type='text'>See also evidence of BT having deployed Phorm's We...</title><content type='html'>See also evidence of BT having deployed Phorm's WebWise (link verified at 2008-03-18 14:20):&lt;BR/&gt;&lt;BR/&gt;http://webwise.bt.com/includes/consumer/consumerProducts/js/webwise/webwise.js</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/5268441234555060069'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/5268441234555060069'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html?showComment=1205849940000#c5268441234555060069' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html' ref='tag:blogger.com,1999:blog-2514512513991174137.post-48665239888054917' source='http://www.blogger.com/feeds/2514512513991174137/posts/default/48665239888054917' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-2514512513991174137.post-856189678703042718</id><published>2008-03-18T11:15:00.001Z</published><updated>2008-03-18T11:15:00.001Z</updated><title type='text'>I am a security analyst. I wish to remain anonymou...</title><content type='html'>I am a security analyst. I wish to remain anonymous, I'm not in it for any glory. I will be affected by this directly and so it is in my interests to know. Here's what I see so far with Phorm/Webwise. Please evaluate and confirm the following:&lt;BR/&gt;&lt;BR/&gt;Fundamental Point 1:&lt;BR/&gt;&lt;BR/&gt;Here's the use case (unintended consequence?) where it all falls down:&lt;BR/&gt;1. I sign up to insurance web site.&lt;BR/&gt;2. I google for cancer information sites&lt;BR/&gt;3. See an advert on one of those sites which seems to be holy grail for cancer, so I click it.&lt;BR/&gt;4. The advert actually links back to the insurance site I happen to be a member of by sheer luck.&lt;BR/&gt;5. The insurance people match up their own advert referal with my existing site cookie for their web site and prove to themselves that I've been searching for cancer and they up my premiums.&lt;BR/&gt;&lt;BR/&gt;Fundamental Point 2:&lt;BR/&gt;&lt;BR/&gt;ISPs should remain disinterested in the traffic that passes through them, if they control or monitor it, they become responsible for it. ISPs have been fighting for ages to keep the right to not be held responsible for what their users do on the Internet. This would destroy that safe harbour in an instant.&lt;BR/&gt;&lt;BR/&gt;Fundamental Point 3:&lt;BR/&gt;&lt;BR/&gt;Whether Phorm is opted in or out, regardless of existence of cookie, the ISP has to tap your TCP connection to deep packet inspect for the presence of the cookie, regardless of what web site you're going to (i.e. all web sites). This is illegal as per RIPA.&lt;BR/&gt;&lt;BR/&gt;Mistrust point:&lt;BR/&gt;&lt;BR/&gt;Phorm claimed in their FAQ: "I delete my cookies regularly, and I want to keep Webwise switched off. How do I do that? &lt;BR/&gt;If you regularly delete your cookies and want to ensure that Webwise is permanently switched off, simply add "www.webwise.net" to the Blocked Cookies settings in your browser." (11 Mar 2008 14:01)&lt;BR/&gt;&lt;BR/&gt;However, their javascript uses domain webwise.com (note: not .net!):&lt;BR/&gt;"document.cookie = name+"="+value+expires+"; path=/; domain=webwise.com";" (18 Mar 2008 11:10am, http://www.webwise.com/script/webwise.js)&lt;BR/&gt;&lt;BR/&gt;So regardless of whether you followed their FAQ or not, they sneakily had you opted in.&lt;BR/&gt;&lt;BR/&gt;You may freely quote and propagate this summary without the need to give credit.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/856189678703042718'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/856189678703042718'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html?showComment=1205838900001#c856189678703042718' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html' ref='tag:blogger.com,1999:blog-2514512513991174137.post-48665239888054917' source='http://www.blogger.com/feeds/2514512513991174137/posts/default/48665239888054917' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-2514512513991174137.post-1046659956230765999</id><published>2008-03-18T11:15:00.000Z</published><updated>2008-03-18T11:15:00.000Z</updated><title type='text'>Alex....Data Protection Act:Part 2 Section 11 read...</title><content type='html'>Alex....&lt;BR/&gt;&lt;BR/&gt;Data Protection Act:&lt;BR/&gt;&lt;BR/&gt;Part 2 Section 11 reads:&lt;BR/&gt;&lt;BR/&gt;Right to prevent processing for purposes of direct marketing &lt;BR/&gt;&lt;BR/&gt;(1) An individual is entitled at any time by notice in writing to a data controller to require the data controller at the end of such period as is reasonable in the circumstances to cease, or not to begin, processing for the purposes of direct marketing personal data in respect of which he is the data subject.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/1046659956230765999'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/2514512513991174137/48665239888054917/comments/default/1046659956230765999'/><link rel='alternate' type='text/html' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html?showComment=1205838900000#c1046659956230765999' title=''/><author><name>Paul</name><uri>www.thetreacys.co.uk</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://denyphorm.blogspot.com/2008/03/attempt-to-report-crime.html' ref='tag:blogger.com,1999:blog-2514512513991174137.post-48665239888054917' source='http://www.blogger.com/feeds/2514512513991174137/posts/default/48665239888054917' type='text/html'/></entry></feed>