Live data from Hacker News

Advanced Denanonymization through Strava

steveloughran.blogspot.com

51–60 of 77 posts

Re: Advanced Denanonymization through Strava

#51
post #7

This is neither advanced nor denanonymization (sic). They basically pluck an interesting route from the hotmap (as per other people's recent discovery), pretend that they have also run/biked this route and Strava will show them names of others who run/biked the same way. That's clever, but that's not "advanced" by any means. It's also not a deanonymization as there's really no option in Strava for public _anonymous_…

I'd say it's advanced in terms of "escalating heatmap information into identifying people running round a submarine base". Yes, you can (should!) use aliases there, at which point the people stay anonymous. Except: in the screenshot I have of that segment before I deleted it, only 2 of the 16 people don't use full names.

Re: Advanced Denanonymization through Strava

#52

Earlier quoted context omitted.

Strava is opt-in, so I don't know what default standards you mean. You can track activities on other platforms that aren't designed to be social networks.

I think I haven't come to a conclusion about it, but I think it is more complicated than Strava just being opt-in. This op-ed makes the argument that it is difficult for users and even the companies offering services to fully understand the impact of their privacy choices: https://www.nytimes.com/2018/01/30/opinion/strava-privacy.ht... A sort of concrete scenario here would be the app asking the user before uploading…

It's too complex, and to keep a govt/ site secure, you'd need every person who runs round it to keep their info locked down. I think Strava will end up having specific "national-state privacy zones" where no runs ever appear in heatmaps and segments cannot be created

Re: Advanced Denanonymization through Strava

#53
post #3

This isn't even "deanonymization" in the sense of "performing statistical inference to re-associate different pieces of data." It's "you ask the company to give you personally identifiable data, and it does so."

I couldn't think of any other good title. It's going from a heatmap to identifying individuals, who, if they didn't use an alias, are now identified. And of the 16 people faster than me on that circuit, 14 used full names.

Re: Advanced Denanonymization through Strava

#54
post #7

This is neither advanced nor denanonymization (sic). They basically pluck an interesting route from the hotmap (as per other people's recent discovery), pretend that they have also run/biked this route and Strava will show them names of others who run/biked the same way. That's clever, but that's not "advanced" by any means. It's also not a deanonymization as there's really no option in Strava for public _anonymous_…

I wonder why Uber/Lyft/Waze don't have a feature like this for ridesharing. Seems like it would be useful to find commuters going on the same commute each day.

[deleted]

Re: Advanced Denanonymization through Strava

#55

I find it hilarious that this guy outlines his cloak-and-dagger tactics to avoid people tracking down his bike via Strava, and then as an aside he mentions the time his bike actually got nicked was when a drug addict accessed it through an unlocked door. That never happened to Jason Bourne.

I was pretty unhappy about, I can tell you. And yes, I mentioned that fact to make clear that physical security comes first, and because I cherish the irony myself.

In Bristol, most mountain bikers do cross the Bristol Suspension bridge on their way home, same for a lot of the roadies. There's been a fair few cases of people being followed back by some teenagers and then having their bike stolen that night, so rather than go straight home (main roads), I just hit the back streets to see that it's clear. And now I make sure that we haven't left a set of keys out in the garden, even when the door is locked. Which was a fact on its own: it's an implicit metric of how often people try breaking in to an urban house here.

Re: Advanced Denanonymization through Strava

#56
> "Give us a list of secret sites you don't want us to cover".

This seems like a non-starter to me. If the gov't hands out an accurate list, they've given out the secret and it's no longer under their control, negating the whole point of having secret sites. If they pollute the list with random, bogus (but plausible) data to reduce it's utility for discovering secret gov't locations, it also reduces the utility for Strava as well, as now there's random swaths of land where nothing is logged, despite there being nothing there.

I have to say, part of this seems like an opsec failure on the part of the various militaries and government agencies. I would hope that whomever is in charge of security at a sensitive facility would recognize that modern phones are general purpose computers that are, amongst other things, location aware. If a facility's location or whom works there is sensitive info, the security officer should probably be forbidding phones from being operated while on site, or even being brought to the site in the first place.

Re: Advanced Denanonymization through Strava

#57
post #29

> Here are some things Strava may reveal ... These are all things I want to share and use Strava to do that. (Well maybe not "When you are away from your house" but you could not turn on the live beacon if that's a concern.)

> maybe not "When you are away from your house" but you could not turn on the live beacon if that's a concern

people have schedules, their commute timetables reveal them. If I start appearing on the logs as riding in in a different part of the world then I'm away for longer. That info is visible to anyone you are in the same "club" as, even if you have enhanced privacy enabled.

Re: Advanced Denanonymization through Strava

#58
I think it's really a shame that Strava is taking so much heat. The heatmap was a really cool visualization and also useful to find out where people are running and biking, generally. And, it was created from tracks that people willing uploaded and made public, even if they didn't fully understand the privacy implications.

But it's also frightening that this data, stored indefinitely, is effectively a mass surveillance system. I was contacted by local law enforcement who had gotten my email address from Strava via an "official legal process" because I had ridden my bike in an area around the time a homicide occurred.

Chew on that. The police or the government have access to your whereabouts, just because someone stored them.

Re: Advanced Denanonymization through Strava

#59

I think it's really a shame that Strava is taking so much heat. The heatmap was a really cool visualization and also useful to find out where people are running and biking, generally. And, it was created from tracks that people willing uploaded and made public, even if they didn't fully understand the privacy implications. But it's also frightening that this data, stored indefinitely, is effectively a mass surveillan…

>I was contacted by local law enforcement who had gotten my email address from Strava via an "official legal process" because I had ridden my bike in an area around the time a homicide occurred.

If it makes you feel any better they probably filtered out all the "less likely to murder people" demographics, went though everything they could dig up on your and your friends/family looking for interesting things (e.g. traumatic life events that could possibly give you a reason to murder someone) before they bothered contacting you (and likely a handful other people). They were only contacting you because you were one of their best leads based on metadata and circumstantial evidence.

/s

Re: Advanced Denanonymization through Strava

#60
post #17

Interesting tips in this article for the paranoid. But it's way easier to do it old school: don't use a service that gobbles your data up, no matter how free it is. It'd be great if there were better "really free"--noncentralized--alternatives built on open source. Maybe there are.

> don't use a service that gobbles your data up, no matter how free it is

we've conceded that option by living in a world where phones add GPS location data to cameras, you use pay-by-phone over cash, oystercards for public transport. I felt I was in control until I discovered a paragraph in the manual of the used BMW we'd bought about how to turn flash off.

Think about that: we are building cars with flash embedded in a browser wired op to a 3G+ modem and a car network bus whose vehicle motor data would be sufficient to identify where you are driving round Bristol (speed, time sitting at junctions, hill climbs inferred by RPM:speed), where you live, which school you drive you children to...

Post reply on HN