05 Sep 2008
A fresh round of problems has descended on Google and its new Chrome web browser.
Fresh on the heels of a pair of security flaw reports, the company is now dealing with an amended end-user licensing agreement (EULA) and a warning from the US government of new security risks.
The EULA change stems from a section in the agreement which had raised the hackles of privacy advocates.
The terms stated that Google would retain "a perpetual, irrevocable, worldwide, royalty-free, and non-exclusive licence to reproduce, adapt, modify, translate, publish, publicly perform, publicly display and distribute any content which you submit, post or display on or through, the services".
According to Google, the clause comes from the blanket terms on which all of its services are based.
The reasoning behind the rule is that it allows Google to display the material on its own servers, a basic element for any web-based publishing or hosting service.
With the Chrome browser, however, the rule raises serious privacy concerns. Worried users pointed out that the agreement could give Google the ability to capture and re-post anything the user did within the browser.
As a result, Google completely deleted the offending passage and changed the section to read: "You retain copyright and any other rights you already hold in content which you submit, post or display on or through, the services."
"Whenever we release a product in beta, as we just did with Google Chrome, we can always count on our users to come up with ways to improve it," wrote Google senior product counsel Mike Yang in a company blog posting.
"We are sorry that we overlooked this, but we have fixed it now."
The EULA issue, however, is not the only problem facing Chrome. On Wednesday the US Computer Emergency Response Team (US-Cert) issued a warning about a security risk in the browser's default settings.
US-Cert noted that the browser is initially set to accept all downloads without user notification. This allows for the possibility of an attacker placing malicious applications on a user's system without warning.
The security organisation advises users to turn on the 'ask where to save each file before downloading' option under the browser's 'minor tweaks' preference tab in order to negate the security risk.
Latest stories from Open Source
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Hands on with the highly anticipated Android 4.0 Ice Cream Sandwich hybrid tablet
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
(Roc Search - Network Support Engineer, 2nd line, 3rd...
3rd Line Engineer / Infrastructure Engineer - Berkshire...
MySQL SQL SERVER DBA / Database Administrator - Online...
PMO Analyst - Banking Client A financial organisation...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Google rush!
Poor old google! They try to do something great... make all the technical stuff very cutting edge and new, yet it's the same old story about geeks and consistency. They get so wrapped up in the technical asepcts and innovating, that they forget to do the basics such as checking simple things such as 'is it secure?' Google... nice browser to look at, but egg on your face!
Posted by: Mark 07 Sep 2008