<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.expertiza.ncsu.edu/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Tmlangwo</id>
	<title>Expertiza_Wiki - User contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.expertiza.ncsu.edu/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Tmlangwo"/>
	<link rel="alternate" type="text/html" href="https://wiki.expertiza.ncsu.edu/index.php?title=Special:Contributions/Tmlangwo"/>
	<updated>2026-08-18T17:40:01Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.41.0</generator>
	<entry>
		<id>https://wiki.expertiza.ncsu.edu/index.php?title=CSC_379:Week_4,_Group_4&amp;diff=1948</id>
		<title>CSC 379:Week 4, Group 4</title>
		<link rel="alternate" type="text/html" href="https://wiki.expertiza.ncsu.edu/index.php?title=CSC_379:Week_4,_Group_4&amp;diff=1948"/>
		<updated>2007-07-28T17:38:35Z</updated>

		<summary type="html">&lt;p&gt;Tmlangwo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Biometrics and Privacy of Genetic Data=&lt;br /&gt;
A concern with ID cards that contain biometric information is that once one is stolen, it would be more difficult for someone to reclaim their identity as the nature of the representation of biometric data that would be used would be something that would not change over a person’s lifetime (e.g. fingerprints or eye-scan)[http://en.wikipedia.org/wiki/Biometrics#Common_biometric_characteristics].  Thus for technologies that rely solely on the biometric data contained within the IDs to establish identity, once a card is stolen, ones “identity” may never be able to be reclaimed.&lt;br /&gt;
&lt;br /&gt;
Ethical issues related to privacy of genetic data follow closely with this topic since it suffers from similar issues as biometrics, although genetic data is much more invasive to ones privacy as society becomes more able to interpret it.  There have been discussions of a constitutional amendment to prohibit genetic discrimination.  If ones genetic information is made available, or information derived from, it opens the person to an increased threat of discrimination (jobs, insurance, social), as well as other threats to privacy not yet realized, but that will likely be realized within ones lifetime as there becomes a greater capability to interpret genetic data.&lt;br /&gt;
&lt;br /&gt;
'''What types of protections should be afforded to biometric data compared to other types of data?  For genetic data?  Should biometric/genetic data be incorporated into various technology from ID cards to diagnostic equipment?  Examine ethical issues related storage and use.'''&lt;br /&gt;
&lt;br /&gt;
==Resources==&lt;br /&gt;
===Relevant External Links:===&lt;br /&gt;
The National Science and Technology Council some good resources related to biometrics and privacy issues.&lt;br /&gt;
* [http://www.biometrics.gov/ReferenceRoom/Introduction.aspx Introduction to Biometrics]&lt;br /&gt;
* [http://www.biometrics.gov/nstc/publications.aspx Biometrics and Privacy]&lt;br /&gt;
&lt;br /&gt;
Wikipedia's article on biometrics:&lt;br /&gt;
[http://en.wikipedia.org/wiki/Biometrics http://en.wikipedia.org/wiki/Biometrics]&lt;br /&gt;
&lt;br /&gt;
EFF has an introduction to some concerns voiced about biometrics:&lt;br /&gt;
[http://www.eff.org/Privacy/Surveillance/biometrics/ http://www.eff.org/Privacy/Surveillance/biometrics/]&lt;br /&gt;
&lt;br /&gt;
===Relevant Class Website Links:===&lt;br /&gt;
* [http://ethics.csc.ncsu.edu/privacy/web/identity/ http://ethics.csc.ncsu.edu/privacy/web/identity/]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==What are Biometrics?==&lt;br /&gt;
A biometric is a measure of some physical or behavioural characteristic of an individual. These measurements can then be used to identify and individual or at least aid in confirming a claimed identity. Some examples of human characteristics that can be conveniently captured in a biometric include: Fingerprints, Retinal scan, Voice, Signature, DNA, Gait. After your individual information is recorded it can be used in a biometric system.&lt;br /&gt;
&lt;br /&gt;
===The Purpose of Biometrics===&lt;br /&gt;
Biometric systems have several purposes. They can verify that a person is who they claim to be by checking your information against the data the system has on you. A biometric system can identify you without you telling the system who you are by your physiological or behavioral characteristics. And biometric systems can also be used to screen individuals. The system may raise a flag or alert the police if it identifies you as being on its watch list.&lt;br /&gt;
&lt;br /&gt;
===Flaws in Biometric Systems===&lt;br /&gt;
These systems are not flawless though. Depending on what characteristic is being measured, there is often a significant chance of error. Each biometric has its own false accept rate and false reject rate. A false accept rate is the chance that the biometric verifies that you are who you claim to be, when you actually aren't. The higher the percent chance for a false acceptance, the easier the system is to fool. A false reject rate is the chance that a system says you are lying about who you claim to be when you are telling the truth. The false accept rate and false reject rate of a particular biometric should be taken into account when designing an identification or verification system.&lt;br /&gt;
&lt;br /&gt;
==Physiological Biometric Systems==&lt;br /&gt;
===Facial Identification===&lt;br /&gt;
Facial identification can either identify people based on the image of their face or a thermal scan of their face.  At first glance this seems to be a sound method, after all it's how people identify each other without technology.  Unfortunately, there are several issues with implementing it as a technology.  For cosmetic scans, the image can look very different based on lighting or could be fooled with makeup.  In addition, both facial and thermal scans will change as people age.  While one of the easiest and least obtrusive means of identification, it is also one of the least accurate and most easily fooled.&lt;br /&gt;
&lt;br /&gt;
===Fingerprint===&lt;br /&gt;
Fingerprint identification is one of the most widely used biometric means of identification in the world today.  The ridges of the skin on the finger are taken and compared to known records taken in the past.  It is well suited to its task for several reasons.  A person's fingerprints do not change as they age nor are they easily copied.  In addition they are completely unique.  Due to its widespread use there are fewer personal issues with the scanning of fingerprints than some other biometric identifiers.&lt;br /&gt;
&lt;br /&gt;
===Hand veins===&lt;br /&gt;
Similar to fingerprints, the lines of the hand may also be used for identification.  It is harder to fool than a fingerprint scan, but also slightly less accurate.  It is also more vulnerable to changes over time than fingerprints and sometimes harder to tell the difference between the scans of two individuals.  &lt;br /&gt;
&lt;br /&gt;
===Eye scans===&lt;br /&gt;
There are two kinds of eye scans, one that scans the retina(blood vessels) and the other that scans the iris(colored part).  Both of these share the advantage of scanning an internal organ which is less vulnerable to damage over time.  Both suffer from a difficulty in building a database to compare to due to how they have to scan in addition to a lack of public approval for getting their eyes scanned.  People associate the technology with something they would see in a movie and pair it will a loss of privacy as is the case in such movies.&lt;br /&gt;
&lt;br /&gt;
===DNA scans===&lt;br /&gt;
DNA is the most accurate way of identifying a person.  Nobody, with the exception of identical twins, will have the same DNA.  Unfortunately, a sample from someone else will allow a fraudulent person to trick the system.  In addition, collecting information for a database to compare scans to would be a major issue, as most people do not want to go in to a government office to have their DNA sampled.  This brings up the next issue, because it is so accurate there is would be a massive loss of anonymity which would receive large public backlash. &lt;br /&gt;
&lt;br /&gt;
==Ethical Issues Surrounding Biometrics==&lt;br /&gt;
===The Permanence of Biometric Identification===&lt;br /&gt;
Many forms of biometric data do not expire. While a person's face or voice may change some as they age, for the most part your physical and behavioral characteristics are going to stay the same throughout your life. &lt;br /&gt;
&lt;br /&gt;
With current forms of identification your can, for example, change your password or get a new credit card or driver's licence or passport. For the most part with biometric identification, you can't simply change your information (short of surgery). This posses a large privacy issue. Not only will anonymity be almost impossible in a world were biometric identification is the norm, but identity theft will be every more devastating because one can't simply adopt new identifying data to defeat the thief.&lt;br /&gt;
&lt;br /&gt;
===Biometrics as a Means of Discrimination===&lt;br /&gt;
If a particular biometric can not be measured on a person-- they are missing a finger, for example-- then inherently that person is going to seem more suspicious. Administrators of the system might think: &amp;quot;Sure maybe they have a legitimate reason for not doing the fingerprint ID, but maybe they are trying to bypass the system.&amp;quot; &lt;br /&gt;
&lt;br /&gt;
Biometrics systems could be used in small scale discriminatory screening processes such as stores using a biometric ID system to deny business to those found guilty of shoplifting in the past.&lt;br /&gt;
&lt;br /&gt;
===Steps to Take to Mitigate Invasion of Privacy===&lt;br /&gt;
Paraphrased from the [http://www.bioprivacy.org/ IBG BioPrivacy Initiative]&lt;br /&gt;
&lt;br /&gt;
* Biometric systems should only be expanded when absolutely necessary.&lt;br /&gt;
* Systems should not be expanded without public knowledge. &lt;br /&gt;
* Biometric information should not be used as a universal unique identifier. &amp;lt;br&amp;gt;&amp;quot;Universal unique identifiers facilitate the gathering and collection of personal information from various databases, and can represent a significant threat to privacy if misused.&amp;quot;&lt;br /&gt;
* These systems should not store more information about an individual than is absolutely necessary to verify or identify the individual.&lt;br /&gt;
&lt;br /&gt;
==Links and Resources==&lt;br /&gt;
* [http://www.anu.edu.au/people/Roger.Clarke/DV/Biometrics.html Biometrics and Privacy] by Roger Clarke&lt;br /&gt;
* [http://www.eff.org/Privacy/Surveillance/biometrics/ Who's watching you?] by William Abernathy and Lee Tien&lt;br /&gt;
* [http://www.bioprivacy.org/ IBG BioPrivacy Initiative]&lt;br /&gt;
* [http://www.biometricwatch.com/privacy.htm Biometric News Portal]&lt;br /&gt;
* [http://www.pcworld.com/article/id,81444-page,1/article.html Biometrics: Security Boon or Busting Privacy?] by Saumya Roy&lt;br /&gt;
* [http://en.wikipedia.org/wiki/Biometrics Good ol' Wikipedia]&lt;/div&gt;</summary>
		<author><name>Tmlangwo</name></author>
	</entry>
	<entry>
		<id>https://wiki.expertiza.ncsu.edu/index.php?title=CSC_379:Week_2,_Group_5&amp;diff=1678</id>
		<title>CSC 379:Week 2, Group 5</title>
		<link rel="alternate" type="text/html" href="https://wiki.expertiza.ncsu.edu/index.php?title=CSC_379:Week_2,_Group_5&amp;diff=1678"/>
		<updated>2007-07-15T01:30:34Z</updated>

		<summary type="html">&lt;p&gt;Tmlangwo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=GNU General Public License=&lt;br /&gt;
&lt;br /&gt;
==Overview==&lt;br /&gt;
&lt;br /&gt;
The General Public License (GPL) was created in 1989 by Richard Stallman as originally a way of allowing many projects to share source code under a unifying license. In simple terms, a project licensed with the GPL can be freely distributed and charged for, but any and all distribution must provide the source code to the consumer as well.  Also, according to the GPL, any work which uses code licensed by the GPL must license itself with the GPL.  It ensures that any software that was derived from open source remains available to the general public and freely distributable.&lt;br /&gt;
&lt;br /&gt;
* GPLV1&lt;br /&gt;
&lt;br /&gt;
* GPLV2&lt;br /&gt;
&lt;br /&gt;
* GPLV3&lt;br /&gt;
&lt;br /&gt;
==Discussion Questions==&lt;br /&gt;
&lt;br /&gt;
'''What is the impact of GPL use?'''&lt;br /&gt;
&lt;br /&gt;
* Personal Software Users&lt;br /&gt;
&lt;br /&gt;
* Developers - Open Source, Commercial&lt;br /&gt;
&lt;br /&gt;
* Software Companies&lt;br /&gt;
&lt;br /&gt;
* Industry and Business&lt;br /&gt;
&lt;br /&gt;
* Non-profit organizations&lt;br /&gt;
&lt;br /&gt;
* Government&lt;br /&gt;
&lt;br /&gt;
* Education and Research&lt;br /&gt;
&lt;br /&gt;
* Foreign Countries&lt;br /&gt;
&lt;br /&gt;
'''What are the ethical considerations for licenses like GPL that require their adoption if work licensed under it is incorporated into a parent work, with additional stipulations that include the acceptance of the most current version of the GPL license?'''&lt;br /&gt;
&lt;br /&gt;
The main ethical issue with a license requiring the acceptance of the most recent version is that it forces the user to sign a contract which has not been written yet.  While the user could agree with the current version, a future version may change in such a fashion as to restrict the liberties of the user beyond what they would agree to.  This setup provides a large amount of leverage and power to the writers of the new versions of the license because they can force a huge tree of people into new agreements.  If a small, but widely used section of code was licensed under the GPL and the new version required additional profit restrictions, it would affect every project which used that code, as well as the projects which used those projects ect.  At the same time, if the license is changed in such a way that it benefits the users then that too can affect a large group.  The main ethical issue is the amount of power given to the writers of the license and how it is used.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''What ethical considerations are highlighted by the patent sharing/protection agreement between Microsoft and Novell?'''&lt;/div&gt;</summary>
		<author><name>Tmlangwo</name></author>
	</entry>
	<entry>
		<id>https://wiki.expertiza.ncsu.edu/index.php?title=CSC_379:Week_1,_Group_5&amp;diff=1521</id>
		<title>CSC 379:Week 1, Group 5</title>
		<link rel="alternate" type="text/html" href="https://wiki.expertiza.ncsu.edu/index.php?title=CSC_379:Week_1,_Group_5&amp;diff=1521"/>
		<updated>2007-07-08T15:31:22Z</updated>

		<summary type="html">&lt;p&gt;Tmlangwo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Techniques Against Spam==&lt;br /&gt;
&lt;br /&gt;
===Block Domains===&lt;br /&gt;
'''Background'''&lt;br /&gt;
A Technique to black spam that creates a blacklist of known spammers that can be used by email providers by the user. This will cause suspect spam to be sent to a spam folder or  the automatic rejection of emails from blocked domains&lt;br /&gt;
&lt;br /&gt;
'''Positive'''&lt;br /&gt;
&lt;br /&gt;
It will effectively block spam from known spamming addresses.&lt;br /&gt;
&lt;br /&gt;
'''Negative'''&lt;br /&gt;
&lt;br /&gt;
Legitimate domains could be blocked as a result of a computer being hijacked&lt;br /&gt;
&lt;br /&gt;
===Require users to request permission to send your email===&lt;br /&gt;
'''Background'''&lt;br /&gt;
A Technique to black spam that requires senders to request permision to send you an email. Senders not on your approved list , or white list email will be rejected or sent to a differnt folder. One example of this is the [http://www.earthlink.net/software/free/spamblocker/ Earthlink Spam Blocker]&lt;br /&gt;
&lt;br /&gt;
'''Positive'''&lt;br /&gt;
&lt;br /&gt;
The user should never receive spam.&lt;br /&gt;
&lt;br /&gt;
'''Negative'''&lt;br /&gt;
&lt;br /&gt;
Could have emails that a user might want to see that is not spam, but also not on your approved list.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Charge for e-mail sent===&lt;br /&gt;
'''Background'''&lt;br /&gt;
If there is a cost per email sent spammers sending out millions of spam then would not be able spam at such a high rate&lt;br /&gt;
http://www.cnn.com/2004/TECH/internet/03/05/spam.charge.ap/&lt;br /&gt;
&lt;br /&gt;
'''Positive'''&lt;br /&gt;
&lt;br /&gt;
Spam would be cut down due to the cost&lt;br /&gt;
&lt;br /&gt;
'''Negative'''&lt;br /&gt;
&lt;br /&gt;
users will have to pay a cost per email sent as well&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Opt in / opt out===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Opt-in''' is a type of permission-based mailing where recipients must first give consent before becoming part of a mass mailing list.  This guarantees that the sender of the advertisement, newsletter, or other mass mailing is targeting only those who want the mail.&lt;br /&gt;
&lt;br /&gt;
'''Opt-out''' is a less stringent form of acquiring permission because recipients are not asked for consent before receiving the mailing, but are permitted to opt out of further mailings by indicating they wish to receive no further messages from the sender.  The process of opting out usually takes the form of a web link embedded in an email or a specially formatted reply to the sender.&lt;br /&gt;
&lt;br /&gt;
The European Union Privacy and Electronics Communication Directive mandates that entities wishing to contact existing customers through email or text/SMS must provide an opt-out option in their message.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Domain authentication===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Domain Authentication''' is a means of ensuring a valid sender identity in email to help prevent spam, email forgery, and fraud.  There are different methods of domain authentication, such as Sender Policy Framework, Certified Server Validation, SenderID and DomainKeys, and different methods have different advantages.  DomainKeys, for example, can authenticate the entire content of a message as well as the domain from which it originated, while SPF and CSV can reject a forged email before any data transfer occurs.  However, they are all effective for authenticating a sender's domain, and it is yet to be determined which method or methods will become most popular.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Bounties===&lt;br /&gt;
&lt;br /&gt;
'''Bounties''' in a general sense are monetary rewards for either information leading to the arrest of criminals or for delivering the criminal in question to the authorities.  In the case of bounties on spammers, some proposed plans would award money equal to a percentage of the penalty for the spammer.  For example, information provided on a spammer who was not convicted or fined would yield no bounty, while a twenty percent (20%) bounty on a large spamming operation that was fined two million dollars would yield forty thousand(40,000) dollars.  &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.msnbc.msn.com/id/5326107/%20 news report of possible bonds law]&lt;br /&gt;
&lt;br /&gt;
===The &amp;quot;Goodmail&amp;quot; approach===&lt;br /&gt;
&lt;br /&gt;
The '''Goodmail''' approach to spam was an idea to have spammers pay isps to ensure that their mail was delivered past spam filters.  In theory this would reduce spam because only legitimate companies could pay the fee and not individual con artists.  Many nonprofit groups were concerned that they would not be able to send Email because they did not have the finances to pay for goodmail services.  There was also concern among customers that all mail which was not Goodmail certified would be blocked, including personal Email.  There is also the risk that if isps rely on goodmail to stop spam, they will defer development on their spam blockers until they are completely ineffective.&lt;br /&gt;
&lt;br /&gt;
[http://www.goodmailsystems.com Goodmail homepage]&lt;br /&gt;
&lt;br /&gt;
===Bonds with escrow agencies===&lt;br /&gt;
&lt;br /&gt;
This system requires mail senders who are not whitelisted by recipients to pay a small fee to a bond agency.  If the recipient feels the mail is spam and unwanted, they can then retrieve the bond money from the agency.  In effect, this means that they charge the sender for wasting their time.&amp;lt;ref&amp;gt;[http://www.itu.int/osg/spu/spam/contributions/Spam%20economics-faq.pdf]  For non-spam email, no money would change hands at all, the original bond amount would simply be returned to the sender.&lt;br /&gt;
&lt;br /&gt;
[http://www.itu.int/osg/spu/spam/contributions/Spam%20economics-faq.pdf full description of bond system]&lt;/div&gt;</summary>
		<author><name>Tmlangwo</name></author>
	</entry>
</feed>