41% of Facebook Users Share Personal Information with a Frog
You can file this in the “altogether not that surprising” category: The IT security firm Sophos has conducted a little experiment to see how easily it might be to obtain personal information from Facebook users. They created a fabricated Facebook profile called Freddi Staur (an anagram of ‘ID Fraudster’), a small green plastic frog who divulged minimal personal information about himself. Freddi then sent friend requests to 200 random users to observe how many people would respond, and how much personal information could be gleaned from the respondents. There findings are quite revealing:
- 87 of the 200 Facebook users contacted responded to Freddi, with 82 leaking personal information (41% of those approached)
- 72% of respondents divulged one or more email address
- 84% of respondents listed their full date of birth
- 87% of respondents provided details about their education or workplace
- 78% of respondents listed their current address or location
- 23% of respondents listed their current phone number
- 26% of respondents provided their instant messaging screenname
In the majority of cases, Freddi was able to gain access to respondents’ photos of family and friends, information about likes/dislikes, hobbies, employer details and other personal facts. In addition, many users also disclosed the names of their spouses or partners, several included their complete résumés, while one user even divulged his mother’s maiden name – information often requested by websites in order to retrieve account details. Sophos has a full write-up of the experiment here.
This makes for a nice little cautionary tale about how much information you divulge online, and how one should be careful about making it available to random strangers to view and collect. For its part, Sophos has published a “best practices” for Facebook users, providing their recommendations on how to configure Facebook’s extensive (and, unfortunately, complicated) privacy settings.
[via David Faser]
Perhaps it is resemblance of common F between facebook and frog.
Yes, but how many of the people who divulged information considered that information at all private? I already list a frog as a friend with Friendster, and there’s nothing in my Facebook profile that I consider nonpublic. I would sooner educate people about not putting sensitive information into Facebook in the first place than educate them about who they communicate with.
I agree. Whether one considers their birthdate private or not is irrelevant to the potential usefulness of that bit of data if left exposed for those bad apples (or frogs) who hope to scrape such sites to gather information for identity theft, etc. The issue is sensitive information being online, not a public/private dichotomy.
That’s ridiculous. A phone number is private no matter how you view it, because it provides an incredible amount of information about who you are. People who don’t realise the dangers of giving their phone number out to just anyone are totally stupid. Even if they don’t consider it private, it certainly is private. Yes, I know we put our blogs and businesses on the net with phone numbers and contact details but that’s very different.
Leave your response!
Related Posts »
Recent Tweets
Categories
4th Amendment A2K Academic Amateur data mining AOIR AOL Ask.com Auto Black Boxes Behavioral targeting Blogging Cellphones Censorship CEPE China ChoicePoint CIPR Conferences Constitution Contextual Integrity Cookies Copyright Dan Solove Data Aggregation Data mining Dissertation DSRC eHealth Ethics Facebook Facial recognition Featured Flickr Google Google Book Search Google Print GPS Identity Identity 2.0 Information ethics Information theory Intellectual freedom Intellectual Privacy Intellectual Property Interfaces Internet iPod ISP Law Library & Information Science Library 2.0 Locational privacy Media Media Ecology Medical privacy Microsoft Milwaukee MySpace Networked Vehicle Systems Online Privacy Paid Search Perfect Search Personal Personalized Search PORTIA Privacy Privacy in Public Privacy on the Roads Publications Research ethics RFID Riya Search Engine Bias Search Engines Search privacy Social media SOIS Street View Surveillance Talks Technology & Society Twitter Uncategorized Values in Design Web 2.0 Wi-fi Wikipedia Yahoo YouTube
Meta
Archives
Calendar
2010 Events & Appearances
Items of Note
Recent Comments
Most Commented
Most Viewed