Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Software
Security Apps
Kaspersky
What information can -kaspersky-steal when installed for - HOME USER?
Message
<blockquote data-quote="MacDefender" data-source="post: 988956" data-attributes="member: 83059"><p>Yep I mentioned in my thread originally, most AV software has similar wording for cloud submission / telemetry. But of the ones I reviewed, Kaspersky has the strongest wording. Nobody else collects exact URLs of your browsing history to improve Web Protection and few collect memory contents...</p><p></p><p>But again all could be ordered to collect information about you and most have the means to be specifically targeted too.</p><p></p><p></p><p>I have some experience here, and it's <strong>both</strong> about where the data is sent and who has the keys to the house.</p><p></p><p>For example, at my company based in the USA, we have complied with legal warrants that target out-of-country non-US-citizens which home to a CDN in the EU. But engineers in the USA have access to said EU servers to comply with the warrant, and therefore it's compelled. OTOH, the way we set up our China operations, we set up a completely independent subsidiary, a different PKI chain for secure boot keys burned into the hardware, and our US employees have zero network or building access to the Chinese subsidiary. In this arrangement, the US cannot compel us to do stuff to Chinese customers, and more importantly China cannot compel us to do things to US customers (and they spend a lot of effort compelling us to do all sorts of stuff to Chinese customers, it's ridiculous)</p><p></p><p>But as a customer, you'd have to take my word that things are set up this way, and our leadership won't cave to requests from either country to change this.</p><p></p><p></p><p>So for me, the questions I have involve whether Russia has any compelling control over Kaspersky USA products (their signature databases and access to uploaded samples, in particular). Also, where does the company stand in terms of Russian or Ukraine sympathy? Eugene already used minimizing language about this "situation" which projects a little bit of bias (honestly I wish he didn't say anything). That's not enough for me to guess what the company would do.</p><p></p><p>And yes, unfortunately like everything, this is political. Political with real implications though.</p></blockquote><p></p>
[QUOTE="MacDefender, post: 988956, member: 83059"] Yep I mentioned in my thread originally, most AV software has similar wording for cloud submission / telemetry. But of the ones I reviewed, Kaspersky has the strongest wording. Nobody else collects exact URLs of your browsing history to improve Web Protection and few collect memory contents... But again all could be ordered to collect information about you and most have the means to be specifically targeted too. I have some experience here, and it's [B]both[/B] about where the data is sent and who has the keys to the house. For example, at my company based in the USA, we have complied with legal warrants that target out-of-country non-US-citizens which home to a CDN in the EU. But engineers in the USA have access to said EU servers to comply with the warrant, and therefore it's compelled. OTOH, the way we set up our China operations, we set up a completely independent subsidiary, a different PKI chain for secure boot keys burned into the hardware, and our US employees have zero network or building access to the Chinese subsidiary. In this arrangement, the US cannot compel us to do stuff to Chinese customers, and more importantly China cannot compel us to do things to US customers (and they spend a lot of effort compelling us to do all sorts of stuff to Chinese customers, it's ridiculous) But as a customer, you'd have to take my word that things are set up this way, and our leadership won't cave to requests from either country to change this. So for me, the questions I have involve whether Russia has any compelling control over Kaspersky USA products (their signature databases and access to uploaded samples, in particular). Also, where does the company stand in terms of Russian or Ukraine sympathy? Eugene already used minimizing language about this "situation" which projects a little bit of bias (honestly I wish he didn't say anything). That's not enough for me to guess what the company would do. And yes, unfortunately like everything, this is political. Political with real implications though. [/QUOTE]
Insert quotes…
Verification
Post reply
Top