OLPC's Bitfrost: Privacy disaster, or security haven? - Security - News - ZDNet Australia

OLPC's Bitfrost: Privacy disaster, or security haven?

Faced with a young, tech-inexperienced user base, the One Laptop Per Child foundation set out to build an easy to use security system, Bitfrost — but did it create a privacy threat that tracks users' identity instead?

According to a paper presented at the March USENIX UPSEC conference in San Francisco by Meredith Patterson, CTO of Osogato and Iowa University student; Len Sassaman doctoral student at Katholieke Universiteit Leuven; and David Chaum, Digicash founder; Bitfrost raises serious security concerns.

The paper's authors criticised Bitfrost for storing the digital identity of the XO user — likely to be a schoolchild in a developing country — when the laptop is activated. The user's name and photo is linked to a pair of keys, generated upon activation, and then sent to their school's activation server and central backup server.

"Thus, the child is immediately linkable, by name and appearance, to the laptop he or she has been issued," the paper notes.

The paper also expresses concerns over the XO's automatic back-up facility, saying that since there are no passwords attached to the XO's identity keys, any individual who gains access to the key store can pretend to be a backup service and so compromise private data.

The paper also examines a phrase in Bitfrost's P_IDENT identity management policy which says that all computer-to-computer communications such as emails and IMs can be cryptographically signed — a threat to the users' anonymity. The policy does not say when the signing will occur, leading the authors to assume all communications will always be signed. "It is impossible for XO users to use any form of anonymous communication with confidence", making P_IDENT a "threat to many forms of speech which have been shielded by anonymity in the past".

Bitfrost's anti-theft system P_THEFT, which works by having the XO connect to a server once a day, is also called into question. If the XO is reported stolen, the P_THEFT daemon shuts the machine down, with a new activation key required for it to work again.

The paper concludes that where internet connectivity is scarce, P-THEFT could mean computers being shut down for no reason when users aren't able to get online every day. It also said the system can be easily abused by governments: "A country can also shut off all its XOs in one fell swoop by flagging them all, or simply shutting off the anti-theft server and waiting for all the leases to expire."

A volunteer for OLPC Australia, Joel Stanley, says the paper is purely hypothetical and full of "hot air". According to Stanley, the P_THEFT functionality isn't even switched on in the devices which have been deployed to date, and for most users tracking is the "least of their problems" because of a lack of available internet connection: "In the deployments so far, getting onto the internet is more of a problem," he told ZDNet.com.au.

"When technology evolves to the point where every laptop can have high bandwidth connections then sure, it's something to worry about," he added.

People should be concentrating on the positive points of Bitfrost. "It lets you launch a program on your computer which may have malicious intent, and it can't take out the whole system," he said. "That's the bit that's actually been implemented. If people have comments or criticism, they should focus on that."

Talkback

Add your opinion

In order to post a comment, you need to be registered. (Sign In or register below)

Post your comment

Terms of Service - As a ZDNet registrant, and by using this service, you indicate that you agree to our Terms and Conditions and have read and understand our Privacy Policy.

ZDNet Australia Live

Google readying #cloud storage service: Google is reportedly getting ready to take on Dropbox with its own cloud... http://t.co/GTFIbQC7

Lax data #privacy laws hurt Australia: Australia may be setting a bad example and limiting its options when it c... http://t.co/6q6L9DOG

Ethical iPhone protests hit Apple stores. Love your iPhone? Love it more if it is made ethically? http://t.co/LkKm9StB via @zdnetaustralia

Lax data privacy laws hurt Australia: Australia may be setting a bad example and limiting its options when it co... http://t.co/sGjo2Y6w

Ethical iPhone protests hit Apple stores http://t.co/LkKm9StB via @zdnetaustralia

RT @SecMash: Lax data privacy laws hurt Australia - ZDNet Australia http://t.co/NaFCw4Xr #InfoSec

Lax data privacy laws hurt Australia - ZDNet Australia http://t.co/NaFCw4Xr #InfoSec

Apple app developers may have copied your address book, despite it being against the rules which Apple has ignored http://t.co/C6PgoMQd

Lax data privacy laws hurt Australia: Australia may be setting a bad example and limiting its options when it co... http://t.co/f9CnwmTy

by http://t.co/vmlQ0Ecb: Lax data privacy laws hurt Australia: Australia may be setting a bad example and limitin... http://t.co/G0fEMhs7

LinkedIn posts strong Q4 earnings, up in after hours trading http://t.co/TJSBmtlT

Twitter now available in emergencies with satellite providers: Twitter is being pumped up to save the day with t... http://t.co/Oz2xsX0K

Microsoft plans to release a flavour of Windows 8 on ARM chips http://t.co/10rKSoAs

RT @zdnetaustralia: Why a $25 computer means revolution http://t.co/ufWQdLzT

Senator Conroy imposes limits on amount of spectrum telcos can buy at Digital Dividend auction: http://t.co/PD7DNr4r

Reminders: Be aware and beware @facebook's #rules. You could lose valuable rights | http://t.co/chuIKcIq | via @ZDNet | #socialmedia #smm

Facebook: 60 million users access apps via mobile http://t.co/jLxQXuQM

Windows 8 Consumer Preview due February 29: why it's not called beta http://t.co/MEAZzVA6

RT @ldignan: New post: LinkedIn posts strong Q4 earnings, up in after hours trading http://t.co/Q95IUhzo

RT @Timothy_Hughes: Windows 8 Consumer Preview due February 29: why it's not called beta http://t.co/sbPX5RwT

http://t.co/JaYhkJjV

Armageddon of War 1.5 (Mobile): Top Hit Game for everybodyIdea is simple,Collect red items, Avoid green objects,... http://t.co/BqJhQRiO

Court agrees to speed up case over #Google's privacy policies http://t.co/hCf5CbQT | RT @ZDNet | #privacy

RT @ZDNet: Facebook admits it needs to fight scams more efficiently http://t.co/O7DvYt87

Twitter now available in emergencies with satellite providers http://t.co/dZUPbpj1

RT @zdnetaustralia: Why a $25 computer means revolution http://t.co/ufWQdLzT

RT @ZDNet: Twitter now available in emergencies with satellite providers http://t.co/ZKibHIsQ

Facebook: 60 million users access apps via mobile: By Emil Protalinski | February 9, 2012, 10:01am PST Summary: ... http://t.co/Nq0TvzJY

New website hopes to improve the Federal datacenter consolidation process: New website hopes to bring together I... http://t.co/5yeK9VMO

iPhone commands better resale value than Android or Blackberry: @danjames2012 I find it hard to believe that som... http://t.co/GryjHpQZ

RT @ZDNet: Twitter now available in emergencies with satellite providers http://t.co/ZKibHIsQ

Twitter now available in emergencies with satellite providers: http://t.co/FxfaiPqi

RT @ZDNet: Twitter now available in emergencies with satellite providers http://t.co/ZKibHIsQ

RT @ZDNet: Twitter now available in emergencies with satellite providers http://t.co/ZKibHIsQ

Facebook admits it needs to fight scams more efficiently http://t.co/AHU5iPKV

invention these appreciate Every using after Numerous Not well ordering customer any custom route do make these current can consider of N...

1 hour ago by gurbapagnonna on Abetz shifted in reshuffle

I'd say a reasonable amount of it would be. In the Queensland Department of Education's case, it said it was trying to make as much of it...

1 hour ago by suzanne.tindal on The application nation

Great article, Suzanne—couldn’t agree more. It is only logical for organisations – private or public-- to take a long, hard look â€...

2 hours ago by kashe on The application nation

Every example of action against child molesters in this story related to internet protocols other than the www. This filter then achieves...

2 hours ago by Bob.H on Interpol defends voluntary filter

Soooo... it's okay for Apple to demand use of technologies and designs falling under competitors patents (considered "standards"), but on...

11 hours ago by MoWeb on Apple wants new rules for mobile patents

But I am having an intelligent conversation young fibes, my point is the lofty goal that all are equal is unfortunately not so. That is w...

12 hours ago by Doubt on NBN Co inks $620m satellite deal

May be so, but we do need to lighten up some of these people who are so serious. poor old fibretech nearly brings tears to the eyes and j...

13 hours ago by Doubt on Turnbull decries 'Rolls-Royce' satellites

The latest MS Windows update for XP tries hard to persuade you to update. For those machines that already have IE8 loaded it tries to re-...

13 hours ago by brak on Windows XP clings on as dominant OS

Will be interesting to see if he drives the qld gov political IT agenda or looks to address the IT challenges being faced by qld gov agen...

13 hours ago by Flly on Queensland's CIO returns to the post

So angry! NOKIA has forgotten the main purpose and the user function, and instead prioritised their industry level concerns. I bought my...

14 hours ago by spaceagesoup on Nokia skips Australia in Symbian Belle roll-out

I get what you mean in your context, meski. If the filter is like speed cameras, then people can alternately take side streets and back r...

16 hours ago by techkid on Interpol defends voluntary filter

Remind me again how people can get to a leadership position with absolutely no practical knowledge? I would ask Alexander how he intends...

16 hours ago by cleversoap on Internet won't always be anonymous: ITU

I was reading about DMARC at http://www.unlocktheinbox.com/resources/dmarc.aspx, perhaps they should try to implement something like this...

17 hours ago by wpfn on Phishing scam causes Telstra email woe

As you can tell, I'm a big follower. For AFL read NRL.

17 hours ago by phildobbie on The TV Now aftermath

Im not sure if David Gallop realises he now works for the AFL.

18 hours ago by katerich on The TV Now aftermath

That assumes that people see the stop sign. If you're using proxies, or whatever *all* the time, then these stop signs will never be obs...

19 hours ago by meski on Interpol defends voluntary filter

The advanced remote controlled machines reduce the human working rate from hazardous environment.

19 hours ago by Manasy on Robotic mining worth its high cost: Rio

Internet connection rate tremendously increasingly a lot.

19 hours ago by Manasy on Optus unveils NBN small business plans

content producers see Quickflix as a cheap and effective way of distributing copy-protected content in the Australian market.

19 hours ago by Manasy on Quickflix looks to avoid Netflix's failures

After this it could be very easy to identify the vulnerability products.

19 hours ago by Manasy on Body scanners coming to airports in July

This story has been voted 20 times in the last 24 hours!

2 days ago, Symantec confirms hacker extortion

This story has been voted 10 times in the last 24 hours!

2 days ago, Symantec confirms hacker extortion

Facebook Activity

Keep up with ZDNet Australia

ZDNet Events Calendar

ZDNet Events Calendar