The Null Device

2009/5/24

Regarding the last post about last.fm: one of last.fm's staff has posted a rebuttal on their web forums, to wit:

* Nobody at Last.fm had any knowledge of our user data being fed to the RIAA (or any labels directly), before or after the alleged incident, or at any other point in the history of the company.
* Last.fm has never given data linking IP addresses and scrobbles to any third party. * Last.fm has never given data linking IP addresses and scrobbles to CBS (who, by the way, we don't consider a third party, but who do have to uphold our privacy policy).
* We've been in communication with CBS and they deny that they gave any third party any of our user data.
If TechCrunch have any evidence which contradicts any of the statements I've made here, I'd love to see it, but I think someone is taking them for a ride. I'm not sure why, though.
Make of that what you will. Assuming the denials are true, last.fm and/or CBS will have no choice but to sue TechCrunch for libel to protect their reputation; it'll be interesting to see how that unfolds.

Nonetheless, even if this isn't true, the possibilities it raises are thought-provoking:

In short, if you're sending over fingerprints of the music on your hard drive, make sure that there is nothing there you wouldn't want to prove possession of to hostile parties.

copyfight last.fm paranoia riaa security 1 Share

Further corroboration of the claim that last.fm handed over user data to the RIAA's enforcement arm, or rather that their parent company requested the data "for internal use only" and then handed it over. Of course, the good folks at last.fm had nothing to say in it, and their denials were sincere, but that doesn't diminish the fact that, if the allegations are true, last.fm (owned by Big Copyright corporation CBS) is now effectively part of the RIAA's intelligence-gathering apparatus:

We provided the data to the RIAA yesterday because we know from experience that they can negatively impact our streaming rates with publishers. Based on the urgency of the request they probably just wanted to learn more about the leak but who knows. Seriously, can you blame them? [______] Our ops team provided the usual reports along with additional log data including user IP addresses. The GM who told them to do it said the data was for internal use only. Well, that was the big mistake. The team in the UK became irate because they had to do it a second time since we were told some of the data was corrupted. This time they transferred the data directly to them and in doing so they discovered who really made the request.
Meanwhile, in this thread, several last.fm staff members swear up and down that this didn't happen, and would not have happened, as it would have been against EU data-protection laws and triggered too many red flags. Which could be true, or it could be a plausible cover story. (The RIAA and their goons aren't above bending the law, after all.)

If you don't like lawsuit-happy copyright extortionists keeping a beady eye on your listening habits, you may want to refrain from sending information to last.fm. Fortunately, someone is coming up with an open-source AudioScrobbler-compatible site named libre.fm, which may well end up taking the place of last.fm.

(via /.) copyfight evil last.fm mafiaa privacy riaa treachery 0 Share