By finding unwanted log files, logfinder informs system administrators when their servers are collecting personal data and gives them the opportunity to turn logging off if it isn't gathering information necessary for administering the system.
Logfinder was conceived by security consultant Ben Laurie and written by EFF Staff Technologist Seth Schoen. It's intended to complement EFF's recent white paper, "Best Practices for Online Service Providers," in which the organization argues that administrators should remove as many logs as possible and delete all personally identifying data from them.
"People who choose to follow our recommendations in the white paper might not know what kinds of logs they have," said Schoen. "Logfinder is an example of one way a system administrator could become aware of the presence of logs, as well as discover sensitive information being collected in known logs."
Download logfinder.
No comments:
Post a Comment