RiteTurnOnly.com

blogging for people... not machines

Google, Blogger and Spyware

Posted on February 23, 2005 under Tech

The poop is hitting the proverbial fan and Google, more specifically Blogger, is at the epicenter. It seems that some blogs hosted on Google’s blogging service Blogger/Blogspot are busy distributing spyware to those who visit the sites. In many of the cases the blog author isn’t even aware of the problem.

For example, a website called iWebTunes allows users to upload and host audio files, a service some Blogger members have been using. When a visitor arrives at a blog that utilizes this service he is suddenly prompted to download certain software, sometimes quite aggressively. Of course this certain software is nothing but spyware/adware. Other examples of nasties include a toolbar called Elitetoolbar or EliteBar and other software from Crazywinnings. In each instance the visitor is prompted to comply with a download via a popup window.

A contributing factor to the problem is the use of javascript. Although used responsibly by most people this programming language can be abused. Curiously, Blogger disallows the use of javascript in its posts but allows its use in headers, sidebars etc. I too am guilty as I use javascript in my blogs albeit for benign purposes. One option would be for blog hosts to completely ban the use javascript altogether. It would certainly help curtail the spread of spyware but I’m not sure that’s the proper way to go. Of course blog hosts are private enterprises and as such may conduct their business as they see fit. But a more flexible approach may be to simply moderate the use of javascript. By that I mean admin approval would be required prior to any javascript being used in a blog by an author, a compromise I myself would have no problem with. This way the admin can check things out first.

In any event common sense should rule. When visiting a blog or any other website for that matter, when you’re unexpectedly confronted by a popup box prompting you to download something DON’T DO IT!

To see more info on the spyware story and how it relates to Blogger, check out these two great stories here and here. Both articles include screenshots and even a short video.

Comments

Leave a Reply