Feeds

Watchdogs quiz Google in Safari cookie-stalking probe

Privacy gaffe grabs FTC, CNIL attention

Choosing a cloud hosting partner with confidence

Regulators on both sides of the Pond are snapping on the surgical gloves after Google was caught bypassing privacy settings on Safari browsers.

People on the inside track have whispered to the Wall Street Journal that the US Federal Trade Commission and France's CNIL are now investigating the search'n'advertising giant over the web tracking.

A Google spokesperson said in an emailed statement that "it would, of course, cooperate with any officials who had questions".

Last month, Mountain View was outed after a Stanford researcher found out that it and other advertisers were using code that "tricked" the Safari browser into letting them track users online. Apple's browser is set to automatically stop cookie-tracking, but Google was still managing to follow punters all over the net.

After the news was broken by the WSJ, Google apologised and fixed the code.

The French Commission Nationale de l'Informatique et des Libertes (CNIL) is already probing Google over the recent changes to its privacy policy, which it claims is not meeting the requirements of the European Data Protection Directive.

Folks familiar with the matter said that the CNIL is now bundling Google's Safari issue in with the rest of its problems with the search giant. A spokesperson for CNIL could not be reached for comment.

The FTC and Google came to a legal agreement last year over Google Buzz privacy blunders. At that point, Google promised not to "misrepresent" its privacy practices to users again.

Now the FTC is looking into whether the Safari gaffe broke that agreement, a violation that could extract millions of dollars in fines from Mountain View. The commission can penalise Google $16,000 per violation per day, an amount that could quickly skyrocket due to the millions of Safari users affected.

However, to slap the Chocolate Factory with any crippling fines, the FTC would have to prove that Google ignored Safari's privacy settings on purpose. Google has said that the whole thing was a mistake.

"We used known Safari functionality to provide features that signed-in Google users had enabled. We created a temporary communication link between Safari browsers and Google’s servers, so that we could ascertain whether Safari users were also signed into Google, and had opted for personalised ads and other content," the firm's spokesperson said.

"However, the Safari browser contained functionality that then enabled other Google advertising cookies to be set on the browser. It's important to remember that we didn't anticipate this would happen, and we have been removing these advertising cookies from Safari browsers."

The FTC did not respond to a request for comment.

The WSJ also reported that a group of state attorney generals in the US, including New York's Eric Schneiderman and Connecticut's George Jepsen, are probing the Safari intrusion, according to people familiar with those investigations. ®

Security for virtualized datacentres

More from The Register

next story
Ex-US Navy fighter pilot MIT prof: Drones beat humans - I should know
'Missy' Cummings on UAVs, smartcars and dying from boredom
Facebook, Apple: LADIES! Why not FREEZE your EGGS? It's on the company!
No biological clockwatching when you work in Silicon Valley
The 'fun-nification' of computer education – good idea?
Compulsory code schools, luvvies love it, but what about Maths and Physics?
Doctor Who's Flatline: Cool monsters, yes, but utterly limp subplots
We know what the Doctor does, stop going on about it already
'Cowardly, venomous trolls' threatened with TWO-YEAR sentences for menacing posts
UK government: 'Taking a stand against a baying cyber-mob'
Happiness economics is bollocks. Oh, UK.gov just adopted it? Er ...
Opportunity doesn't knock; it costs us instead
Sysadmin with EBOLA? Gartner's issued advice to debug your biz
Start hoarding cleaning supplies, analyst firm says, and assume your team will scatter
Don't bother telling people if you lose their data, say Euro bods
You read that right – with the proviso that it's encrypted
prev story

Whitepapers

Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Cloud and hybrid-cloud data protection for VMware
Learn how quick and easy it is to configure backups and perform restores for VMware environments.
Three 1TB solid state scorchers up for grabs
Big SSDs can be expensive but think big and think free because you could be the lucky winner of one of three 1TB Samsung SSD 840 EVO drives that we’re giving away worth over £300 apiece.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.