Live data from Hacker News

Show HN: Your Social Media Fingerprint (maybe NSFW)

robinlinus.github.io

51–60 of 258 posts

Re: Show HN: Your Social Media Fingerprint (maybe NSFW)

#53
post #10

Nice, so now by using this I have an NSFW site logged in my workplace's DNS log. Be careful if your employer checks such things.

Made the same mistake. "Maybe NSFW" isn't really clear – "makes a request to YouPorn" is probably more fitting.

Re: Show HN: Your Social Media Fingerprint (maybe NSFW)

#54
post #50

Earlier quoted context omitted.

Personally, I don't set the DNT header. You have no way of knowing if any sites are actually going to comply, and it actually provides an extra datapoint to fingerprint you with.

But isn't it better to at least ask instead of not asking at all?

As I said, simply asking for it will actually reduce your privacy for any service that doesn't comply, by making you more fingerprintable.

Re: Show HN: Your Social Media Fingerprint (maybe NSFW)

#55

Earlier quoted context omitted.

huh. I didn't think of that.. that's kinda harsh.

Yep I also clicked first. It might need an "NSFW" tag in the title to warn other users. (Let's see how long it takes for Corporate IT to come yell at us)

I get blocking it but I have to wonder about departments run like that. Do they really have nothing better to do?

Re: Show HN: Your Social Media Fingerprint (maybe NSFW)

#56
post #41

Earlier quoted context omitted.

If you had done your job instead of reading HN, there would be no problem!

100+ days old account, love it!

On the other hand, let's keep the novelty accounts to reddit (even there they are annoying though).

Re: Show HN: Your Social Media Fingerprint (maybe NSFW)

#57

This is why I use 'browser isolation', which is a way to separate different types of surfing activity into different buckets. Currently the best way to do this in Firefox is to create multiple profiles, or in Chrome, you can simply add a different user/persona. Having one profile, or even an entire dedicated browser just for Twitter/FB ensures the login is not spilled over into other sites. If you're surfing the web…

I was horrified to find I'm logged in to FB with my 'common' cookie jar. At least that explains the recently increased accuracy of its targeted ads.

I only ever log in to Facebook in private browsing mode.

Re: Show HN: Your Social Media Fingerprint (maybe NSFW)

#58
post #50

Earlier quoted context omitted.

Personally, I don't set the DNT header. You have no way of knowing if any sites are actually going to comply, and it actually provides an extra datapoint to fingerprint you with.

But isn't it better to at least ask instead of not asking at all?

Its pretty obvious the default should be the opposite to avoid a race condition like that.

Re: Show HN: Your Social Media Fingerprint (maybe NSFW)

#59
post #3

Keep in mind that it doesn't show up the icons at all if you're using a content blocker and activated Fanboy’s Annoyance List. This is because the critical resource is named "/socialmedia-leak/socialmedia-leak.js".

Yes, this needs to be made clear: Fanboy Annoyance won't protect you from Social Media Fingerprinting, it just prevents the proof of concept on that one site from working properly.

Disabling 3rd-party cookies in your browser is what protects people against Social Media Fingerprinting.

I always advise to disable 3rd-party cookies -- unfortunately this is not enabled by default in browsers. Even without this Social Media Fingerprinting issue, anyone looking at cookie payload (which also include local and session storage) on common top sites will be horrified at the result of not blocking 3rd-party cookies.

I found it's quite rare to find a site broken because 3rd-party cookies are blocked.

Re: Show HN: Your Social Media Fingerprint (maybe NSFW)

#60

This is why I use 'browser isolation', which is a way to separate different types of surfing activity into different buckets. Currently the best way to do this in Firefox is to create multiple profiles, or in Chrome, you can simply add a different user/persona. Having one profile, or even an entire dedicated browser just for Twitter/FB ensures the login is not spilled over into other sites. If you're surfing the web…

Its only in testing right now, but Firefox Nightly has "Containers" so you can exactly have different "buckets" for different types of browsing - https://wiki.mozilla.org/Security/Contextual_Identity_Projec...
Post reply on HN