Originally published Monday, November 3, 2008 at 12:00 AM
Brier Dudley
Inflexible security? Lighten up
Fellow Americans, it's time to ask ourselves if we are tired of living in a world defined by fear and mistrust. How much more freedom and liberty will we sacrifice in this never-ending quest for security?
![]() |
Seattle Times staff columnist
Fellow Americans, it's time to ask ourselves if we are tired of living in a world defined by fear and mistrust. How much more freedom and liberty will we sacrifice in this never-ending quest for security?
Online security, that is.
Like when you just want to share a snapshot with Grandma. Should you have to remember passwords, navigate registration hoops and be sure she's on your sharing safe list?
It's a snapshot, not plans for a bomb. If it falls into the wrong hands, it's not the end of the world.
As more of our casual lives are spent online, we need to find a middle ground on security and privacy. Not every transaction and gateway needs the digital equivalent of a scowling paramilitary guard demanding to see our papers. Yet most of us aren't comfortable letting it all hang out online.
That's why I'm intrigued by an easy-access control system called Friendbo, which is being developed by a group of students and professors at the University of Washington.
It started in early 2007 as a classroom research project by Michael Toomim, a mustachioed 28-year-old Ph.D. candidate from Oakland, Calif. Professors saw potential and helped arrange a $50,000 grant from the UW's tech transfer program. Now Friendbo's a company with patents pending that may release its first application, for Facebook, in a few weeks.
Friendbo lets users put photos and other files in "safe boxes," which others can access by answering a simple question based on shared knowledge within a group of friends or family.
To see pictures from a party, you might have to know, "What was Joe wearing when he danced?" Toomim said a rugby player could give his team access to photos by asking, "On whose roof we celebrated beating Stanford?"
The goal is to "enable more semiprivate social content to go online," he said during a recent presentation to supporters of the UW Computer Science & Engineering Department. It's an alternative for times when "industrial access control systems" are overkill.
Online security systems use cryptographic locks and keys passed to trusted parties.
"We're simply giving you a prompt to get the key you already have," said associate professor James Landay, Toomim's adviser.
![]()
The security strength depends on the question, but in testing, at least 70 percent of the questions couldn't be guessed. It won't work for banks but might be fine for photo sharing.
Friendbo is also playful, so it may appeal to social networkers wanting more control over who sees material they post online.
Landay said it's aiming for a sweet spot: providing enough privacy without the hassles of current access-control systems. That could make people more comfortable sharing material online.
Friendbo is not just a security play. It's also intended to help people manage their online-friend lists. That's getting complicated, now that people have hundreds of friends on various sites. It gets even trickier to keep track of whitelists, blacklists and other systems for managing privileges.
The market for Facebook applications has cooled, but Toomim thinks Friendbo will find a niche there and elsewhere on the Web.
"If we provide people with actual value, let them do something they care about," he said, "it doesn't really matter what the state of the ecosystem is."
Brier Dudley's column appears Mondays. Reach him at 206-515-5687 or bdudley@seattletimes.com.
Copyright © 2008 The Seattle Times Company
bdudley@seattletimes.com | 206-515-5687
UPDATE - 09:46 AM
Exxon Mobil wins ruling in Alaska oil spill case
UPDATE - 09:32 AM
Bank stocks push indexes higher; oil prices dip
UPDATE - 08:04 AM
Ford CEO Mulally gets $56.5M in stock award
UPDATE - 07:54 AM
Underwater mortgages rise as home prices fall
NEW - 09:43 AM
Warner Bros. to offer movie rentals on Facebook

nwautos
Are you one of the many hanging onto their old beater? Or do you just love that new-car smell? When did you last purchase a vehicle? Take our poll or....
Post a comment
- Agency set to investigate handling of 911 call about Josh Powell
- Proposal to link Market, aquarium may be too ambitious for Seattle
- Chilling 911 tapes reveal pleas for help to go to Josh Powell home
- UW's Shawn Kemp Jr. makes own way despite familiar name, number | Steve Kelley
- State Medicaid program to stop paying for unneeded ER visits
- NBA's David Stern open to league returning to Seattle
- Lakewood cop accused of embezzling $150K meant for slain officers' families
- Prosecutor: Powell's final act ends doubt he killed wife
- Was idea of court-ordered test too much for Josh Powell?
- 3 big health insurers stockpile $2.4 billion as rates keep rising
- Gay-marriage bill passes House, awaits Gregoire's signature
423 - Historic day for gay marriage as another fight looming
343 - Sheriff's office unhappy with 911 dispatcher in caseworker's call
282 - 3 big health insurers stockpile $2.4 billion as rates keep rising
233 - Source: NY, California to sign mortgage settlement
195 - Pac-12 picks ... including the UW game
140 - Lakewood cop accused of taking donations for slain officers' families
108 - Department of Justice owes the Seattle Police Department an apology
84 - Thursday morning links --- and a video!!!
65 - Scouting report: Oregon
57
- State Medicaid program to stop paying for unneeded ER visits
- 3 big health insurers stockpile $2.4 billion as rates keep rising
- Here it is: The secret to stir-fried chicken | Taste
- Local aerospace suppliers say they feel squeezed by Boeing
- Dicks channeled federal money to Puget Sound project his son ran
- 'Gauguin and Polynesia': dazzling mix-and-match | Art review
- Buttoned Up: Nine immutable laws of time management
- Happy Hour: French-accented charm at Gainsbourg
- One man's audacious pursuit of sailing history
- Gay-marriage bill passes House, awaits Gregoire's signature








