Your health, tax, and search data siphoned

Google, Yahoo, Microsoft's Bing, and other leading websites are leaking medical histories, family income, search queries, and massive amounts of other sensitive data that can be intercepted even when encrypted, computer scientists revealed in a new research paper.

Researchers from Indiana University and Microsoft itself were able to infer the sensitive data by analyzing the distinct size and other attributes of each exchange between a user and the website she was interacting with. Using man-in-the-middle attacks, they could glean the information even when transactions were encrypted using the Secure Sockets Layer, or SSL, protocol or the WPA, or Wi-fi Protected Access protocol.

“As we move further down the route of web 2.0 with all its wonderful and new abilities, more vulnerabilities will be revealed over time”, comments Michael Struss, Sales Director at InfoWatch Central Europe, one of the leading companies specializing on the protection of private and confidential data. “The operators of social networks and other web driven applications and related services need to be adamant to close any open data leakage channel. If not, users must refrain from using them – for the sake of their own personal data security safety”.


l.12-.057c.834-.407 1.663-.812 2.53-1.211a42.414 42.414 0 0 1 3.345-1.374c2.478-.867 5.078-1.427 7.788-1.427 2.715 0 5.318.56 7.786 1.427z" transform="translate(-128 -243)"/>