Ryanair vs. Booking.com: When Using a Password Isn’t Hacking!

The Computer Fraud and Abuse Act should be about hacking, not sniffing out perceived policy violations. Ryanair claims Booking.com violated CFAA by accessing airfare prices with valid logins, but this isn’t hacking. If using your partner’s Netflix account is illegal, then we’re all guilty! Let’s keep CFAA focused on real cybercrime.

Pro Dashboard

Hot Take:

Who knew that logging into a website with valid credentials could make you the next infamous “hacker”? According to the Ryanair v. Booking.com saga, the line between casual surfing and cyber villainy is thinner than an airplane ticket!

Key Points:

  • EFF argues that using valid credentials doesn’t constitute hacking under the CFAA.
  • Ryanair claims Booking.com violated CFAA by using valid credentials to access pricing data.
  • EFF’s amicus brief asks the Third Circuit to clarify that this case is about policy violations, not hacking.
  • The CFAA should only apply to actual hacking that bypasses computer security.
  • Current interpretation risks criminalizing everyday behaviors and chilling valuable research.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?