home.social

#fingerprinting — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #fingerprinting, aggregated by home.social.

fetched live
  1. #EEF met à disposition un outil pour mesurer le degré de vulnérabilité de votre #navigateur #web au #fingerprinting :

    coveryourtracks.eff.org/

    Sous #Librewolf avec #ublock, #JSShelter et #PrivacyBadger, on obtient un résultat pas trop mauvais, même si (1) l'outil ne couvre pas tout et (2) « Your browser has a nearly-unique fingerprint ».

    Après, plus il y aura de monde sous #linux et moins mon empreinte sera unique 😄

  2. @brave

    What's also interesting their localhost open ports scan is inconsistent on #Brave.

    Sometimes it shows "none" (dev tools show a CORS error then) and sometimes it finds 3 (127.0.0.1:5900 [qemu], 0.0.0.0:5000 [octoprint, aka a webserver], 0.0.0.0:631 [cups, also a webserver])

    On Google Chrome it always finds 2 my octoprint and cups. The 5900 shows up with an "invalid http response" error in the dev tools there.

    Interesting.

    #fingerprinting

  3. @brave

    What's also interesting their localhost open ports scan is inconsistent on #Brave.

    Sometimes it shows "none" (dev tools show a CORS error then) and sometimes it finds 3 (127.0.0.1:5900 [qemu], 0.0.0.0:5000 [octoprint, aka a webserver], 0.0.0.0:631 [cups, also a webserver])

    On Google Chrome it always finds 2 my octoprint and cups. The 5900 shows up with an "invalid http response" error in the dev tools there.

    Interesting.

    #fingerprinting

  4. Prøv det !

    En praktisk demo af, hvordan du kan identificeres - og spores på tværs af internettet - uden at en enkelt cookie nogensinde bliver indstillet i din browser

    #fingerprinting #privacy
    kuber.studio/cookie/

  5. Prøv det !

    En praktisk demo af, hvordan du kan identificeres - og spores på tværs af internettet - uden at en enkelt cookie nogensinde bliver indstillet i din browser

    #fingerprinting #privacy
    kuber.studio/cookie/

  6. Das Fingerprinting ist schon krass. Bzw. auf dem Handy dachte ich, naja ok - so überraschend sind die Details nicht. Aber dass es auf dem PC implizit laufendes MySQL erkennt, überrascht mich nun doch.

    "Your browser can't read localhost responses, but it can *time* the connection. Port 3306 accepted a TCP connection in a way a closed port never would (296ms vs the instant refusal of a dead port)."

    kuber.studio/cookie/

    #cookies #fingerprinting #browser

  7. Das Fingerprinting ist schon krass. Bzw. auf dem Handy dachte ich, naja ok - so überraschend sind die Details nicht. Aber dass es auf dem PC implizit laufendes MySQL erkennt, überrascht mich nun doch.

    "Your browser can't read localhost responses, but it can *time* the connection. Port 3306 accepted a TCP connection in a way a closed port never would (296ms vs the instant refusal of a dead port)."

    kuber.studio/cookie/

    #cookies #fingerprinting #browser

  8. Was #Browser in Standardeinstellung zulassen oder blocken in einer großen Übersicht.

    Aufschlussreich in diesen datenhungrigen Zeiten …

    #Datensparsamkeit #Fingerprinting #Tracking

    privacytests.org

  9. Was #Browser in Standardeinstellung zulassen oder blocken in einer großen Übersicht.

    Aufschlussreich in diesen datenhungrigen Zeiten …

    #Datensparsamkeit #Fingerprinting #Tracking

    privacytests.org

  10. #Google hat Werbetreibende darüber informiert, dass sie ab dem 3. August 2026 IP-Adressen von Nutzenden aus EU, UK und der Schweiz für die Anzeigenmessung und -personalisierung verwenden wird.
    Diese Daten werden schon länger gesammelt. Neu ist die gezielte Nutzung zur Identifikation von Endgeräten für Werbezwecke.

    Höchste Zeit, um
    - personalisierte Werbung bei euch abzustellen
    - Chrome zu ersetzen -> Alternativen mit mehr Schutzmöglichkeiten
    - Tracking überall abzulehnen

    #Fingerprinting

  11. #Google hat Werbetreibende darüber informiert, dass sie ab dem 3. August 2026 IP-Adressen von Nutzenden aus EU, UK und der Schweiz für die Anzeigenmessung und -personalisierung verwenden wird.
    Diese Daten werden schon länger gesammelt. Neu ist die gezielte Nutzung zur Identifikation von Endgeräten für Werbezwecke.

    Höchste Zeit, um
    - personalisierte Werbung bei euch abzustellen
    - Chrome zu ersetzen -> Alternativen mit mehr Schutzmöglichkeiten
    - Tracking überall abzulehnen

    #Fingerprinting

  12. @evacide

    Eva, I'm not sure whether I believe that's a dedicaed privacy mining funnel.

    After attempting to jump through all of the hoops with the crazy KYC-like requirements, including the reliance of IIRC, https://gov.com logon and not until the very end of the verification that I was who I said I was it went and required me to provide a DID (that's a phone number, for those of you who do not already know) that it liked.

    I'm sorry (NOT) but there was way more than enough divulged, including my existing Gov.com creds, to believe that California was privacy mining for the sake of tracking their subjugated chattel.

    Thanks, great idea and thank you also for your public service, but I don't even know if I"m going to bother to go look again - I FELT REALLY VIOLATED

    #tallship #privacy #privacy_mining #fingerprinting #industrial_surveillance

    .

  13. sitebehavior.org

    "a free, opensource scanner that opens any public website in a controlled browser and records what it actually does, not what its privacy policy says it does. Every request, cookie, storage key, and tracker, with the exact scan conditions attached."

    #privacy #tracker #cookies #browser #fingerprinting

  14. Архитектура обмана. Как технически устроены фермы накрутки отзывов в 2026 году?

    Подделка рейтингов окончательно перешла с бирж фриланса на автоматизированные конвейеры. Сегодня отзывы генерируют локальные LLM, а публикуют скрипты через антидетект-браузеры и резидентные прокси. Такая ботоферма самостоятельно формирует цифровой след: собирает cookies на сторонних сайтах, закладывает лексические ошибки в текст и подменяет отпечатки железа, чтобы система приняла профиль за живого человека с реальным провайдером. В ответ маркетплейсы и геосервисы перестали анализировать исключительно сам текст и переключились на графовый анализ. Антифрод отслеживает микродвижения мыши, скорость скроллинга и сетевые пересечения аккаунтов. Математически идеальный рейтинг 5.0 или шаблонные тайминги публикации становятся для алгоритма прямой командой к действию. Площадка не просто удаляет сомнительные комментарии, а отправляет карточку товара в теневой бан, срезая органические показы в поиске.

    habr.com/ru/articles/1049936/

    #антифрод #накрутка_отзывов #ботофермы #фейковые_отзывы #LLM #антидетект_браузеры #графовый_анализ #fingerprinting #резидентные_прокси #поведенческий_анализ

  15. Wie viel verrät dein iPhone, ohne dass du es merkst? Die Open-Source-App Loupe zeigt es dir - direkt und ungefiltert. Sie liest dieselben Werte, die jede andere App ebenfalls abrufen kann: Geräteinfos, Zeitzone, Bildschirmgröße, Akkuladung und vieles mehr. Einzeln harmlos, zusammen ein Fingerabdruck, der dich sitzungsübergreifend identifizierbar macht. 👇

    apps.apple.com/us/app/loupe-wh

    github.com/mysk-research/loupe

    #iOS #Fingerprinting #Datenschutz #OpenSource #Tracking

  16. Wie viel verrät dein iPhone, ohne dass du es merkst? Die Open-Source-App Loupe zeigt es dir - direkt und ungefiltert. Sie liest dieselben Werte, die jede andere App ebenfalls abrufen kann: Geräteinfos, Zeitzone, Bildschirmgröße, Akkuladung und vieles mehr. Einzeln harmlos, zusammen ein Fingerabdruck, der dich sitzungsübergreifend identifizierbar macht. 👇

    apps.apple.com/us/app/loupe-wh

    github.com/mysk-research/loupe

    #iOS #Fingerprinting #Datenschutz #OpenSource #Tracking

  17. wired.com/story/websites-can-n

    Sites have a new way to spy on their visitors: by measuring subtle interactions with their solid-state drives. The technique, named FROST (fingerprinting remotely using OPFS-based SSD timing), allows sites to monitor other sites a visitor is viewing and what apps are open on their devices.

    #Privacy #Tech #FROST #Security #Fingerprinting

  18. wired.com/story/websites-can-n

    Sites have a new way to spy on their visitors: by measuring subtle interactions with their solid-state drives. The technique, named FROST (fingerprinting remotely using OPFS-based SSD timing), allows sites to monitor other sites a visitor is viewing and what apps are open on their devices.

    #Privacy #Tech #FROST #Security #Fingerprinting

  19. @rolle The extension I had issues with was #CanvasFingerprintDefender, which shouldn't cause any issues unless #Turnstile specifically is using #Canvas #fingerprinting attacks, and my issue is more with the advanced fingerprinting than the breakage itself. You are of course free to use it on your instance, which I'm not on, and this was just intended as a friendly #privacy tip, in case of interest.

    chromewebstore.google.com/deta

  20. @rolle The extension I had issues with was #CanvasFingerprintDefender, which shouldn't cause any issues unless #Turnstile specifically is using #Canvas #fingerprinting attacks, and my issue is more with the advanced fingerprinting than the breakage itself. You are of course free to use it on your instance, which I'm not on, and this was just intended as a friendly #privacy tip, in case of interest.

    chromewebstore.google.com/deta

  21. @rolle IME #Cloudflare #Turnstile can break if you use #browser extensions to defeat #fingerprinting for #privacy. That should make users uncomfortable with being forced to pass its invasive #tracking.

  22. @rolle IME #Cloudflare #Turnstile can break if you use #browser extensions to defeat #fingerprinting for #privacy. That should make users uncomfortable with being forced to pass its invasive #tracking.

  23. Vertraulichkeit, ein grundlegendes Schutzziel der Informationssicherheit.

    Doch nicht für Google. Darum werten sie diesen bemerkenswerten Angriff per Browser-SSD-Fingerprinting nicht als Sicherheitslücke.

    heise.de/news/Webbrowser-koenn

    #itsicherheit #DigitalerVerbraucherschutz #fingerprinting #google

  24. Vertraulichkeit, ein grundlegendes Schutzziel der Informationssicherheit.

    Doch nicht für Google. Darum werten sie diesen bemerkenswerten Angriff per Browser-SSD-Fingerprinting nicht als Sicherheitslücke.

    heise.de/news/Webbrowser-koenn

    #itsicherheit #DigitalerVerbraucherschutz #fingerprinting #google

  25. Как DPI вычисляет MTProto-прокси: технический разбор детекции протоколов по сигнатурам

    В конце мая 2026 рунет накрыло волной отказов MTProto-прокси — сервисы перестали работать почти у всех операторов одновременно. Технические каналы пестрят заголовками “обойти невозможно”. Разбираю это не как новость, а с инженерной стороны: что технически означает “DPI анализирует сигнатуры протокола”, почему Fake-TLS, работавший годами, внезапно перестал спасать, и какие фундаментальные свойства трафика выдают прокси даже при идеально зашифрованной нагрузке. Это разбор теории обнаружения протоколов, не руководство по обходу

    habr.com/ru/articles/1041486/

    #DPI #MTProto #ТСПУ #traffic_analysis #JA3 #fingerprinting #сетевая_безопасность #обнаружение_протоколов

  26. sinceyouarrived.world/taken

    Ce site montre à quel point votre navigateur révèle beaucoup d’informations sur vous via les API web.
    Une démonstration simple, et assez dérangeante, du browser #fingerprinting.

  27. This also shows 2/3 of my concerns about #watermarking, the 3rd being that it’s applied only if you use the “right” corporate product to produce your content. Mire excited about #fingerprinting / detecting original data sources, though obviously that’s computationally way more expensive. #aiethics

    RE: https://bsky.app/profile/did:plc:dus2ftflcqjg6joeuw46sz5g/post/3mmobyu24e22f

  28. This also shows 2/3 of my concerns about #watermarking, the 3rd being that it’s applied only if you use the “right” corporate product to produce your content. Mire excited about #fingerprinting / detecting original data sources, though obviously that’s computationally way more expensive. #aiethics

    RE: https://bsky.app/profile/did:plc:dus2ftflcqjg6joeuw46sz5g/post/3mmobyu24e22f

  29. nothing is private. nothing is real.

    wanna lil horror in your feed?

    find out what they know about you*:

    sinceyouarrived.world/taken

    *hint: it's a lot.

    #browser #fingerprinting #privacy

  30. nothing is private. nothing is real.

    wanna lil horror in your feed?

    find out what they know about you*:

    sinceyouarrived.world/taken

    *hint: it's a lot.

    #browser #fingerprinting #privacy