假如剑桥学生公布的是研究对象的隐私

看到一则有趣的新闻,剑桥学生Omar Choudary在其硕士论文中提到了Chip-and-PIN支付系统的一个安全漏洞,尽管该漏洞在专业领域已广为人知,但Omar将论文上传到剑桥网站的行为还是引起了英国银行业的担忧,于是UK Cards Association主席Melanie Johnson给Omar所在的剑桥计算机实验室写信要求从网站撤下文章,结果,他得到的是实验室Ross J. Anderson教授牛逼哄哄的答复

Second, you seem to think that we might censor a student’s thesis, which is lawful and already in the public domain, simply because a powerful interest finds it inconvenient. This shows a deep misconception of what universities are and how we work. Cambridge is the University of Erasmus, of Newton, and of Darwin; censoring writings that offend the powerful is offensive to our deepest values. Thus even though the decision to put the thesis online was Omar’s, we have no choice but to back him. That would hold even if we did not agree with the material! Accordingly I have authorised the thesis to be issued as a Computer Laboratory Technical Report. This will make it easier for people to find and to cite, and will ensure that its presence on our web site is permanent….

……

You complain that our work may undermine public confidence in the payments system. What will support public confidence in the payments system is evidence that the banks are frank and honest in admitting its weaknesses when they are exposed, and diligent in effecting the necessary remedies. Your letter shows that, instead, your member banks do their lamentable best to deprecate the work of those outside their cosy club, and indeed to censor it.

不难想象,这一举动会被许多人视为剑桥言论自由和学术独立精神的一次响亮展示而获得欢呼和羡慕(中文报道在Google Reader上获得了25个喜欢),不过,我怎么看都觉得这位Anderson的火气有点莫名其妙。

我甚至没弄明白他究竟要表达什么意思,剑桥对其学生/学者公布任何研究内容都没有限制?即便不予限制,连指导意见或准则都没有?而一旦他们公布了就no choice but to back him?否则便辱没了Newton和Darwin?

举个例子,假如这个Omar研究的是性生理学,而他公布了临床志愿者的姓名和临床资料,剑桥管理部门真的没意见?或者他是人类学家,不小心泄露了田野调查对象的敏感隐私,人家来投诉要求做匿名化处理,你也会这么火大?

我不信剑桥在此类问题上完全没有准则,当然Omar的行为可能没有逾越这些准则,但在信用卡安全这么敏感的事情上,外人指望一下存在相关准则,也不为过吧?犯得着为此发飙?

我猜,答案或许隐藏在“a powerful interest finds it inconvenient”这句话里,假如finds it inconvenient的不是银行业协会,而是妇女保护组织,儿童关怀组织,绿色环保组织,回答大概会温柔的多,果若如此,那到底是谁更powerful呢?……

相关文章

标签:
1478
看到一则有趣的新闻,剑桥学生Omar Choudary在其硕士论文中提到了[[Chip-and-PIN]]支付系统的一个安全漏洞,尽管该漏洞在专业领域已广为人知,但Omar将论文上传到剑桥网站的行为还是引起了英国银行业的担忧,于是UK Cards Association主席[[Melanie Johnson]]给Omar所在的剑桥计算机实验室写信要求从网站撤下文章,结果,他得到的是实验室[[Ross J. Anderson]]教授牛逼哄哄的答复

Second, you seem to think that we might censor a student's thesis, which is lawful and already in the public domain, simply because a powerful interest finds it inconvenient. This shows a deep misconception of what universities are and how we work. Cambridge is the University of Erasmus, of Newton, and of Darwin; censoring writings that offend the powerful is offensive to our deepest values. Thus even though the decision to put the thesis online was Omar's, we have no choice but to back him. That would hold even if we did not agree with the material! Accordingly I have authorised the thesis to be issued as a Computer Laboratory Technical Report. This will make it easier for people to find and to cite, and will ensure that its presence on our web site is permanent....

......

You complain that our work may undermine public confidence in the payments system. What will support public confidence in the payments system is evidence that the banks are frank and honest in admitting its weaknesses when they are exposed, and diligent in effecting the necessary remedies. Your letter shows that, instead, your member banks do their lamentable best to deprecate the work of those outside their cosy club, and indeed to censor it.

不难想象,这一举动会被许多人视为剑桥言论自由和学术独立精神的一次响亮展示而获得欢呼和羡慕(中文报道在Google Reader上获得了25个喜欢),不过,我怎么看都觉得这位Anderson的火气有点莫名其妙。 我甚至没弄明白他究竟要表达什么意思,剑桥对其学生/学者公布任何研究内容都没有限制?即便不予限制,连指导意见或准则都没有?而一旦他们公布了就no choice but to back him?否则便辱没了Newton和Darwin? 举个例子,假如这个Omar研究的是性生理学,而他公布了临床志愿者的姓名和临床资料,剑桥管理部门真的没意见?或者他是人类学家,不小心泄露了田野调查对象的敏感隐私,人家来投诉要求做匿名化处理,你也会这么火大? 我不信剑桥在此类问题上完全没有准则,当然Omar的行为可能没有逾越这些准则,但在信用卡安全这么敏感的事情上,外人指望一下存在相关准则,也不为过吧?犯得着为此发飙? 我猜,答案或许隐藏在“a powerful interest finds it inconvenient”这句话里,假如finds it inconvenient的不是银行业协会,而是妇女保护组织,儿童关怀组织,绿色环保组织,回答大概会温柔的多,果若如此,那到底是谁更powerful呢?……


已有7条评论

  1. Haihan @ 2011-01-03, 22:01

    同意最后一段,其实这个问题的有趣之处不在于这份火气很大的回应,而在于回应的对象是一个公众形象不怎么好的银行家,所以这时候,跟富人抬杠在知识界永远是一件政治正确的事情,所以在“政治正确”的默许下,校方发一下飙也就是很明智的做法,即使最后银行通过法律途径要求把文章拿下,校方起码可以说我们已经努力过了,这不过政治法律体系都被富人操纵了

    [回复]

  2. 小橘子 @ 2011-01-04, 03:55

    很有趣的文章。浮想联翩,可惜要睡觉去啦。

    [回复]

  3. gaohan_cn @ 2011-01-05, 10:20

    如果’认真仔细‘读一下回应的全文的话,你很难说剑桥大学是理亏。最多是,卖你银行面子是个人情,不卖那是我的本分。
    当然卖妇女保护协会个人情的几率更大,但是谁没有写感情偏好呢?

    [回复]

    辉格 回复:

    我还真十分蛋痛的仔细读了全文,我也没觉得他“理亏”了,只是对这种牛逼哄哄颇为不解,这看上去就像在给未来的自己打耳光,总有一天他们会卖那个“人情”的,到那时要不要再把Newton和Darwin拉出来陪练呢?

    [回复]

  4. 阿斗 @ 2011-01-05, 17:51

    我也觉得很哄哄的感觉。

    不过可能要看看主席写的信,也许主席也太哄哄了

    [回复]

  5. padrick @ 2011-01-06, 23:35

    松鼠会文章:科技 大脑 (上)
    http://songshuhui.net/archives/48029

    [回复]

    辉格 回复:

    胡说八道

    [回复]

发表评论