RSS Feeds

  • AddThis Feed Button
Bookmark and Share

Your email address:


Powered by FeedBlitz

Search in + 6000 articles


  • Web this blog

Categories

Feel Free to Click

  • Listen to
    ANY blog

    Talkr: Letting blogs speak for themselves.

« Usage of VoIP in India and The Philippines is high | Main | The reason why the Xing is called Xing. »

14 July 2006

Skypodon II has been launched... Here come the probers. Part of the Skype-database exposed.

3_probing

Jan chinaman topI blogged aobut this earlier. Now I putting a bit more online. I find it the right thing to do. If Skype want to become a business-tool well them it must fix certain issues. On the other hand the current user-population must be aware of certain risks. Use it wisely. If you are a company you will defenitely have to device a proper implementation strategy, IT-policy and contingency-plan. Skype in essence is quite safe,but hey there are some problems. Let’s not hide behind «some Public Relations firewall» or «marketing hype» ignoring public secrets but address them straight-on. Here goes. It seems to me that the «exposure» of one problem leads to an escalation of something else that floats to the surface. For example See the Blog of Bucken Fush. . Look at the screendumps of this program that will probe the public skype / p2p-supernodes (I call it supernode hopping) for available logged on names. It is called Skypeprobe and will attach itself to the Skype Client and start digging. Note that I am not the maker of exploiter of this program. I just was informed of it’s existence. I think there are quite some issues here that need to be addressed. See the Screendumps.

2_before 4_after3secs 5_result

I am convinced that if one program exist and floats to the surface that there are others too, doing the same thing.

Some issues come to mind :

  • should this part of the database of skype not be protected against such software
  • there are thousands types of abuses that can and will occur.
  • how can business have faith in Skype as a potential business application if this is possible
  • what if some marketing agencies will start doing data-mining on these data. the phone-numbers and email are present
  • should Skype not protect it’s users from these kind of exploits ?
  • is this fixable or patchable ?
  • maybe it is not such a big problem after all. (those who says that have not been thinking, sorry).
  • what concept and blue-print lays behind the presence of such phenomena, this can hardly be called a bug anymore…
  • does the nature of P2P-system allow control ?

Whatever, you make about it. I consider this a serious breach in the security of Skype. It better be addressed and acknowlegded and properly fixed.

Related : Net phone services falling short

 

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/t/trackback/20709/5409285

Listed below are links to weblogs that reference Skypodon II has been launched... Here come the probers. Part of the Skype-database exposed.:

Comments

Feed You can follow this conversation by subscribing to the comment feed for this post.

The comments to this entry are closed.

Blog disclaimer

  • This is a personal weblog. The opinions expressed here represent my own and not those of my previous or current employer(s) and/or businesspartner(s). This blog is NOT affiliated with Skype. Skype is a trademark of Skype Limited. Any trademarks belong to the respective owners. This blog is slightly satirical and contains a heavy dose or irony if not sarcasm. Get used to it. For cleaned up marketing and PR stories please visit the original websites. I am quite sure you will notice the difference.

Twitter Updates

    follow me on Twitter

    Adify.com add tags

    Visitors/Readers

    Traffic value of this site

    • Registered Readers

    • Alexa.com data

    Skype Online Users / DL Source : nyanyan.to

    • Skype Users / DL chart last 7 days

      Skypechartstats

    • Skype Users / DL chart last 2 days

      Skypechartstats

    Google Analytics

    • G.A.