• On TV.com: 10 More Most ANNOYING Characters On TV
January 8, 2008 3:19 PM PST

Sears, Kmart community software called 'badware'

by Robert Vamosi
  • Font size
  • Print
  • 1 comment

StopBadware.org said Tuesday it has labeled the Sears and Kmart community software known as My SHC Community as "badware," or spyware.

The nonprofit organization run by Harvard Law School, Oxford University, and Consumer Reports WebWatch said it cited the Sears Holding Corporation community in particular "because of inadequate disclosure of extensive tracking and data collection and because the application does not identify itself while running."

In response to several accusations that it collects personal information without proper disclosure, My SHC Community has dramatically revised its Web site since last week. It has, among other changes, added a prominent link to its privacy policy.

At issue is the installation of tracking software from ComScore, an online data marketing firm. ComScore has maintained over the years that its data collection methods do not qualify as spyware. However, several leading antispyware researchers disagree.

In a statement (PDF), StopBadware.org said: "Sears Holding Corporation (SHC) has informed StopBadware that SHC is significantly improving the My SHC Community application disclosure and privacy policy language and adding a Start menu icon in an effort to comply with our guidelines and address privacy concerns. They expect these changes to be implemented within 48 hours."

However, late Tuesday, StopBadware.org said it has not changed its designation of SHC Community. "We have not evaluated these planned changes at this time. SHC has also informed us that they have suspended invitations to new users to install the application until these changes are implemented."

As CNET's resident security expert, Robert Vamosi has been interviewed on the BBC, CNN, MSNBC, and other outlets to share his knowledge about the latest online threats and to offer advice on personal and corporate security. Listen to his podcast at securitybites.cnet.com or e-mail Robert with your questions and comments.
Recent posts from Defense in Depth
Window Snyder to leave Mozilla
How to handle ID fraud's youngest victims
Is white listing going mainstream?
How Live OneCare changed the antivirus landscape
Express Scripts clients threatened with extortion
Study: DDoS attacks threaten ISP infrastructure
Security expert talks Russian gangs, botnets
Extortion used in Express Scripts database breach
Add a Comment (Log in or register)
Very Bold! It's a sign of things to come.
by lampietheclown January 9, 2008 3:47 AM PST
I keep saying it. Privacy is easier to keep than it is to get back.
By the time Sony, Sears, Apple, Google, all three credit reporting agencies, Microsoft, the FBI, the NSA, AT&T, and the White
House get through with their data mining, the only hope of
getting back our privacy will be to ... well ok, there will be no
hope.

Why do I say "bold"? Because after getting caught, they don't say
"oops, sorry", and pull the offending software. They say "oops,
sorry", and put the link to the fine print (that nobody reads)
closer to the sign-up page.

As for the improvements to the language, I'm not holding my
breath. Anything short of "WE WILL FOLLOW YOU EVERYWHERE!
WE WILL RECORD EVERY URL, KEYSTROKE, PASSWORD,
PURCHASE, DOWNLOAD, E-MAIL, CHAT, SEARCH QUERY, AND
USERNAME THAT MOMENTARILY GRACES YOUR SCREEN. WE
WILL USE THIS INFORMATION FOR MARKETING, SELL IT TO
OTHERS TO USE FOR WHATEVER THEY CAN THINK OF, AND
GENERALLY TREAT IT AS IF WE OWNED IT. PLEASE ENJOY YOUR
INTERNET EXPERIENCE" is deceitful and misleading. (caps
intentional)

Remember when RealPlayer got raked over the coals for a lot
less?

I'll bet the next company doesn't even move the link.

Lampie the Clown
Reply to this comment
advertisement

Google's mobile hopes go beyond Nexus One

The world may have thrilled to the potential for a Google Phone, but what Google actually unveiled is its plan for a new smartphone world order.
• Photos: Unboxing Nexus One

Using your smartphone safely

faq Worms, Trojans, and SMS attacks are risks for mobile phones, but the biggest practical threat to users is losing the device.

About Defense in Depth

Covering computer viruses and computer crime, Robert Vamosi goes beyond the hype to provide you with expert interviews of the top security researchers, as well as offering the hands-on, nontechnical advice you'll need to stay safe online.

Add this feed to your online news reader

Defense in Depth topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right