Risk
7/22/2008
02:54 PM
Connect Directly
RSS
E-Mail
50%
50%

N.Y. Leans On Comcast To Fight Child Porn

The state agreement includes a mandate that ISPs contribute funds to prevent the distribution of child pornography online.

Comcast has signed a national agreement promising to limit the distribution of child pornography, but that's not enough for New York state.

New York Attorney General Andrew Cuomo said he'll give the company five days to sign an agreement with the state before he pursues legal action, according to a report from Reuters.

Last month, several Internet service providers signed an agreement with New York to block newsgroups and Web sites where child pornography is distributed. Users complained that several companies blocked all newsgroups instead of narrowly targeting those that distribute child pornography.

Comcast, along with 16 other companies, signed a memorandum of agreement Monday with the National Center for Missing and Exploited Children and the National Association of Attorneys General. It said the ISPs would prevent their servers from hosting sites on an NCMEC list of those containing child pornography. They agreed to report instances of child pornography as required by federal law and to update policies to keep up with emerging sources of child pornography.

The agreement takes effect within 30 days. Other companies that signed are BendBroadband, Bresnan Communications, Bright House Networks, Broadstripe, Cablevision Systems, Charter Communications, Cox Communications, Eagle Communications, GCI, Harron Communications, Insight Communications, Mediacom Communications, Midcontinent Communications, Sjoberg's, Suddenlink Communications, and U.S. Cable. Time Warner Cable previously signed the memorandum of understanding.

In a response to Cuomo's threat, Comcast pointed out that it has signed a national agreement. The state agreement contains more requirements, including a mandate that ISPs contribute funds to prevent the distribution of child pornography online.

As of December, the NCMEC's Child Victim Identification Program had information on more than 1,233 child victims from around the world seen in sexually abusive images. The bureau also has helped seize child pornography collections from more than 11,650 investigations across the country.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-0485
Published: 2014-09-02
S3QL 1.18.1 and earlier uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object in (1) common.py or (2) local.py in backends/.

CVE-2014-3861
Published: 2014-09-02
Cross-site scripting (XSS) vulnerability in CDA.xsl in HL7 C-CDA 1.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted reference element within a nonXMLBody element.

CVE-2014-3862
Published: 2014-09-02
CDA.xsl in HL7 C-CDA 1.1 and earlier allows remote attackers to discover potentially sensitive URLs via a crafted reference element that triggers creation of an IMG element with an arbitrary URL in its SRC attribute, leading to information disclosure in a Referer log.

CVE-2014-5076
Published: 2014-09-02
The La Banque Postale application before 3.2.6 for Android does not prevent the launching of an activity by a component of another application, which allows attackers to obtain sensitive cached banking information via crafted intents, as demonstrated by the drozer framework.

CVE-2014-5136
Published: 2014-09-02
Cross-site scripting (XSS) vulnerability in Innovative Interfaces Sierra Library Services Platform 1.2_3 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
This episode of Dark Reading Radio looks at infosec security from the big enterprise POV with interviews featuring Ron Plesco, Cyber Investigations, Intelligence & Analytics at KPMG; and Chris Inglis & Chris Bell of Securonix.