Skip Links

Network World

  • Social Web 
  • Email 
  • Close

(Comma separation for multiple addresses)
Your Message:

Microsoft stifles information on Bing cashback error

If abused, the flaw would let people accumulate rebates for goods they haven't purchased
By Jeremy Kirk, IDG News Service
November 10, 2009 07:40 AM ET
  • Share/Email
  • Tweet This
  • Comment
  • Print

Microsoft has brought out its legal hammer against a businessman who publicized a problem with an incentive program run alongside the company's Bing search engine.

The Bing Cashback program returns to shoppers a small percentage of money for items they buy that were found through some ads on the search engine.

The program is designed to attract customers with a rebate and allow advertisers to only pay Microsoft for searches that result in a purchase, known as a "pay-per-action" fee. The rebate is based on a percentage of the purchase price and is determined by the advertiser.

But Samir Meghani, who co-founded a price-comparison search engine called Bountii.com, wrote on his blog on Nov. 4 that he had found an error in the way purchases are reported back to Bing for the cashback deal.

Merchants can place a tracking pixel on their order confirmation page that will report to Bing when a transaction is complete. Meghani said he found it was possible to report fake transactions back to Bing, making customers eligible for cashback rewards when in fact they haven't bought anything.

Meghani wrote that Bing seemed unable to detect the fake transactions right away, and that his Cashback account held $2,080.06. He did not post technical details of the flaw, but wrote that "it's not complicated."

It probably doesn't help that Meghani's Bountii.com could be viewed as a competitor to Bing, albeit a minor one.

Microsoft responded by sending Meghani a cease-and-desist letter dated Nov. 6.

"Microsoft believes that your actions and the direction you are providing to others regarding this method of misuse violates various laws related to computer intrusion, unauthorized access and unauthorized use of information," wrote Gabriel M. Ramsey, of Orrick, Herrington & Sutcliffe, on behalf of Microsoft.

Meghani has since removed his original blog post, but the post is still held -- ironically -- in Bing's cache.

Microsoft also closed Meghani's cashback account. In a subsequent post, Meghani said he had no intention of defrauding the company.

"The purpose of my post was to show an implementation problem, not to encourage defrauding Microsoft," Meghani wrote. "I am surprised they would go through this much trouble to make me take down information that is obvious to anyone reading their documentation."

Microsoft officials in London could not be immediately reached for comment.

  • Share/Email
  • Tweet This
  • Comment
  • Print

Partner Content

Gartner 2009 Magic Quadrant for Job Scheduling

Gartner has positioned BMC CONTROL-M in the Leaders Quadrant of their "2009 Magic Quadrant for Job Scheduling." The report assesses the ability to execute and completeness of vision of key vendors in the marketplace. Read a full copy today, courtesy of BMC Software.

Download whitepaper

Dell's SMART Approach to Workload Automation

Read a compelling case study by EMA, Inc. to learn how Dell uses BMC CONTROL-M to cut cost and increase productivity with workload automation.

Download whitepaper

Workload Automation Cost Savings 2 Minute Video

A major computer manufacturer uses BMC CONTROL-M and just four people to schedule and run over 85,000 jobs every month. By switching to BMC CONTROL-M, they more than quadrupled the workload without adding a single staff member.  See how in this 2-minute video overview.

Go to video

Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed