Tag Archive for: allow

EU General Court Refuses To Allow St. Andrews Links To Trademark ‘St. Andrews’ For All The Things

For those of us who have fallen in love with the world’s most personally infuriating sport, golf, the name The St. Andrews Links Golf Course is of course quite notable. The famed “Cathedral of Golf” also happens to be located in a town of the same name, St. Andrews in Scotland. St. Andrews is a fairly common term in the naming of locations and famous landmarks. Despite this, The Saint Andrews Links went to the EU’s Intellectual Property Office to request it be granted a trademark for “St. Andrews” in roughly every category, including broadly in apparel and sports goods. When that request was denied in 2016 on grounds that location names have high bars to clear to get trademarks and are therefore relatively rarely granted, St. Andrews Links took its case to Luxembourg on appeal.

There, the EU General Court dismissed the appeal, arguing again that “St. Andrews” is primarily a reference to the town of St. Andrews, not to any provider of the type of goods that St. Andrews Links wanted to hold trademarks for.

But having had its application to the European Union Intellectual Property Office (EUIPO) turned down in 2016, an appeal against the decision has now been dismissed by the EU General Court in Luxembourg.  According to official documents, the appeal board argued “the expression ‘St Andrews’ referred above all to a town known for its golf courses though not particularly for the manufacturing or marketing of clothing, footwear, headgear, games and playthings.”

The court said EU and UK law generally excludes the registration of geographical names as trade marks “where they designate specified geographical locations which are already famous, or are known for the category of goods or services concerned.”

In other words, the town itself is also well known and, because the mark applied for consisted of the name of that famous town, St. Andrews Links can’t lock up “St. Andrews” for itself in a bunch of categories not directly related to its business. Readers here will likely be nodding along, understanding that this all makes perfect sense. The reason I’m highlighting all of this is because of how frustratingly rare it is for an intellectual property office and appeals court to get this so, so right. Too often, corporate wishes are simply granted, especially when dealing with an entity like St. Andrews Links, which is itself rather famous and is a point of pride for the region.

It sure would be nice if other IPOs applied the intent of the law this strictly.

Permalink | Comments | Email This Story

Techdirt.

Software Patch Claimed To Allow Aadhaar’s Security To Be Bypassed, Calling Into Question Biometric Database’s Integrity

Earlier this year, we wrote about what seemed to be a fairly serious breach of security at the world’s largest biometric database, India’s Aadhaar. The Indian edition of Huffington Post now reports on what looks like an even more grave problem:

The authenticity of the data stored in India’s controversial Aadhaar identity database, which contains the biometrics and personal information of over 1 billion Indians, has been compromised by a software patch that disables critical security features of the software used to enrol new Aadhaar users, a three month-long investigation by HuffPost India reveals.

According to the article, the patch can be bought for just Rs 2,500 (around $ 35). The easy-to-install software removes three critical security features of Aadhaar:

The patch lets a user bypass critical security features such as biometric authentication of enrolment operators to generate unauthorised Aadhaar numbers.

The patch disables the enrolment software’s in-built GPS security feature (used to identify the physical location of every enrolment centre), which means anyone anywhere in the world — say, Beijing, Karachi or Kabul — can use the software to enrol users.

The patch reduces the sensitivity of the enrolment software’s iris-recognition system, making it easier to spoof the software with a photograph of a registered operator, rather than requiring the operator to be present in person.

As the Huffington Post article explains, creating a patch that is able to circumvent the main security features in this way was possible thanks to design choices made early on in the project. The unprecedented scale of the Aadhaar enrollment process — so far around 1.2 billion people have been given an Aadhaar number and added to the database — meant that a large number of private agencies and village-level computer kiosks were used for registration. Since connectivity was often poor, the main software was installed on local computers, rather than being run in the cloud. The patch can be used by anyone with local access to the computer system, and simply involves replacing a folder of Java libraries with versions lacking the security checks.

The Unique Identification Authority of India (UIDAI), the government body responsible for the Aadhaar project, has responded to the Huffington Post article, but in a rather odd way: as a Donald Trump-like stream of tweets. The Huffington Post points out: “[the UIDAI] has simply stated that its systems are completely secure without any supporting evidence.” One of the Aadhaar tweets is as follows:

It is because of this stringent and robust system that as on date more that 50,000 operators have been blacklisted, UIDAI added.

The need to throw 50,000 operators off the system hardly inspires confidence in its overall security. What makes things worse is that the Indian government seems determined to make Aadhaar indispensable for Indian citizens who want to deal with it in any way, and to encourage business to do the same. Given the continuing questions about Aadhaar’s overall security and integrity, that seems unwise, to say the least.

Follow me @glynmoody on Twitter or identi.ca, and +glynmoody on Google+

Permalink | Comments | Email This Story

Techdirt.

Bluetooth security: Flaw could allow nearby attacker to grab your private data

  1. Bluetooth security: Flaw could allow nearby attacker to grab your private data  ZDNet
  2. Major Bluetooth Security Flaw Has Been Discovered by Intel And Fixes Are Already Out For Android And iOS  News18
  3. Update Your iPhones And Androids Now If You Don’t Want Your Bluetooth Hacked  Forbes
  4. Bluetooth SIG Security Update | Bluetooth Technology Website  Bluetooth SIG
  5. Full coverage

android security news – read more