Your location data is being sold – often without your knowledge


technology
 Your location data is being sold – often without your knowledge

Location-based ads are growing, which means the industry has more ways than ever to track you.
Location-based ads are growing, which means the industry has more ways than ever to track you

As location-aware advertising goes mainstream—like that Jack in the Box ad that appears whenever you get near one, in whichever app you have open at the time—and as popular apps harvest your lucrative location data, the potential for leaking or exploiting this data has never been higher.

Its true that your smartphones location-tracking capabilities can be helpful, whether its alerting you to traffic or inclement weather. That utility is why so many of us are giving away a great deal more location data than we probably realize. Every time you say “yes” to an app that asks to know your location, you are also potentially authorizing that app to sell your data.

Dozens of companies track location and/or serve ads based on this data. They aim to compile a complete record of where everyone in America spends their time, in order to chop those histories into market segments to sell to corporate advertisers.

Marketers spent $16 billion on location-targeted ads served to mobile devices like smartphones and tablets in 2017. Thats 40% of all mobile ad spending, research firm BIA/Kelsey estimates, and it expects spending on these ads to double by 2021.

The data required to serve you any single ad may pass through many companies systems in milliseconds—from data broker to ad marketplace to an agencys custom system. In part, this is just how online advertising works, where massive marketplaces hold ongoing high-speed auctions for ad space.

But the fragmentation also is due to a very real fear of the public backlash and legal liability that might occur if there were a breach. Imagine the Equifax breach, except instead of your Social Security number, its everywhere youve been, including your home, your workplace and your childrens schools.

The fix, at least for now, is that with most individual data vendors holding only parts of your data, your complete, identifiable profile is never all in one place. Giants like Google and Facebook, who do have all your data in one place, say they are diligent about throwing away or not gathering what they dont need, and eliminating personally identifying information from the remainder.

Yet as the industry and the ways to track us expand, the possibility that our whereabouts will be exposed multiplies.

If youve ever felt clever because an app on your phone asked to track your location and you said no, this should make you feel a little less smug: There are plenty of ways to track you without getting your permission. Some of the most intrusive are the easiest to implement.

Your telco knows where you are at all times, because it knows which cell towers your phone is near. In the U.S., how much data service-providers sell is up to them.

Related video: How to be safer online

    Another way you can be tracked without your knowing it is through any open Wi-Fi hot spot you might pass. If your phones Wi-Fi is on, youre constantly broadcasting a unique MAC address and a history of past Wi-Fi connections. Retailers sometimes use these addresses to identify repeat customers, and they can also use them to track you as you go from one of their stores to another.

    WeatherBug, one of the most popular weather apps for Android and iPhone, is owned by the location advertising company GroundTruth. Its a natural fit: Weather apps need to know where you are and provide value in exchange for that information. But it also means that app is gathering data on your location any time the app is open—and even when it isnt, if you agreed to always let it track your location. That data is resold to others.

    GroundTruth also gathers location data from “over a hundred thousand” other apps that have integrated bits of its code, says company president Serge Matta, who declined to disclose which apps. App makers agree to harvest location data because it grants them access to GroundTruths mobile advertising network.

    This data is what enables marketers like Jack in the Box to push an advertisers message to potential customers near its restaurants. A typical engagement includes pushing location-based promotions or coupons through mobile ads, says Iwona Alter, Chief Marketing Officer of Jack in the Box.

    Every month GroundTruth tracks 70 million people in the U.S. as they go to work in the morning, come home at night, surge in and out of public events, take vacations, you name it.

    Companies like GroundTruth try to ensure they arent tracking or storing data on individuals. Most of what they sell are anonymous blobs of people who fit particular descriptions—“soccer moms who intend to buy an SUV,” for example. But they also occasionally hand off location data to a third party, such as LiveRamp, owned by data broker Acxiom, before its matched up with potentially personally identifying information, such as your complete shopping history at a retailer. LiveRamp is almost like an escrow company for data.

    Companies like Acxiom could be prime targets for hackers, said Chandler Givens, chief executive of TrackOff, which develops software to protect user identity and personal information. LiveRamp goes to great lengths to mathematically obfuscate our individual identities, said Sheila Colclasure, chief data ethics officer at LiveRamp and Acxiom. But some security researchers fear data brokers like Acxiom may be compromised already, or could be someday.

    Acxiom and LiveRamp in the U.S. are governed by federal and state laws that regulate the collection and use of data in the particular businesses their clients are involved in, Ms. Colclasure said. Nearly every year, a bill comes up in the Senate or House that would regulate our data privacy—the most recent was in the wake of the Equifax breach—but none has passed. In some respects, the U.S. appears to be moving backward on privacy protections.

    There might never be a breach of our location data. But given the drumbeat of hacks of both companies and governments, its hard to believe hackers arent at least trying to compromise such a high-value target.

    Write to Christopher Mims at christopher.mims@wsj.com

    By: The Wall Street Journal.

    « technology

  CITIES NEWS
LONDON
DUBAI
BEDMINSTER, New Jersey
SEOUL
TAIPEI
MOSCOW
BERLIN
STOCKHOLM
WASHINGTON
LOS ANGELES
BRASILIA
SILVERSTONE, England
SAYLORSBURG, Pa
AMSTERDAM
BERGERAC, France
KABUL
BARCELONA
PARIS
MOSUL, Iraq
BRUSSELS
DOHA
CAIRO
FRANKFURT
LAUSANNE
  DATE NEWS
2018/06/22
Authorities say they expect to reunite 1,800 families by Sunday


2018/06/21
Trump: North Korea 'total denuclearization' started; officials see no new moves


2018/06/20
Trump's immigration order replaces one crisis with another


2018/06/19
US officials likely lost track of nearly 6,000 unaccompanied migrant children


2018/06/18
Moderate GOP voices on immigration are at risk of a November wipeout in the House


2018/06/17
How some elite charter schools exclude minorities