Chatroulette: Gambling with Your Privacy
Hate to break this to all those video chat fans out there, but Chatroulette isn't nearly as safe and anonymous as it appears.
The free video chat service became instantly famous for its serendipitous pairing of complete strangers via video chat, as well as for the percentage of men displaying their god-given talents in varying degrees of excitement.
Guess what, Chatrouletters? Your privates aren't private any more. In fact, they never were.
Researchers from the University of Colorado and McGill University have published a study showing that Chatroulette sessions are not nearly as anonymous as they might appear. They also demonstrated how easy it is to con other CR users via canned video.
[ See also: Why location privacy is important ]
If you've never used Chatroulette, the rules are pretty simple. Turn on your Web cam, log in to the site, and wait for a random video to appear in the window above yours. Then wait for the first guy to flash you. (I logged on this morning and got a porksword in less than 1.5 seconds -- a new record.) Don't like what you're seeing? Hit the Next button and try again.
The kielbasa factor probably wasn't what 17-year-old Andrey Ternovskiy had in mind when he created Chatroulette, but it's what he got. Leave it to the InterWebs to drag everything into the gutter. It's gotten so bad Ternivskiy is reportedly working on a 'sausage filter' to block the pervs.
Still, given the random nature of the videos, Chatroulette seems totally anonymous and largely harmless. No so, say the researchers. I'll let IDG News' Bob McMillan summarize:
"Because Chatroulette's back-end system shares user IP addresses, researchers were able to use IP-mapping services to get a general idea of user's location .... Then by searching Facebook using information obtained in chats and comparing pictures, researchers were able to identify chatters.
"Even in a city as big as Chicago, you can drill down and find the person you're actually talking to," [study co-author Richard] Han said."
In fact, a cool/creepy Web site called ChatRouletteMap does something very similar, using IP address information and Google Maps to display who's chatting and where they live, down to almost their street address. It doesn't update in real time though, so someone's unlikely to come knocking at your door in the middle of a chat session.