Live data from Hacker News

Off-Facebook activity

facebook.com

191–200 of 395 posts

Re: Off-Facebook activity

#191

Real nice that there is no bulk turn-off feature. Giant pain to click through a few hundred sites to block future activity. But I suppose that's the point, right? To make it as difficult as possible for users to block this kind of oh-shit creepy behavior.

There is not turn-off at all. If you read carefully you will see that they will still collect the data, just that they "promise" won't assign it to you. Yeah right :)

Re: Off-Facebook activity

#192

Allegedly, I ditched my Facebook account years ago. Not just deactivated but delete, though I don’t really believe it. Is there anyway to see what’s in this (or to see if my account really is gone) without accidentally re-upping?

I had followed a guide in ~2010 to delete my account (since the magic incantations to delete your account at that point were really obscure). I was told via email that my account would be deleted a certain amount of time (90 days IIRC); I got curious in 2015 and logged back in. I was not terribly surprised to find that I could log back into the account and all my old data was still there. They may actually delete accounts now, but this certainly hasn't always been true.

Re: Off-Facebook activity

#193

Earlier quoted context omitted.

No, if it's data they can collect it's data they can sell. Can't sell cash transactions yet!

Unless you are carrying your cell phone at the time—not sure anyone is doing this yet, but I have heard of at least one chain that tracks customers' cell phone locations via triangulation.

The accuracy by Bluetooth is horrendous.

Re: Off-Facebook activity

#194
post #12

In my profile, they managed to obtain a `PURCHASE` event from Macy's -- for an in-person purchase at a physical store . Macy's has my email address and certainly linked it to my credit card number, but this is nonetheless seriously creepy. I just tried to change my email address on Facebook and discovered that they canonicalize plus and dot variations in gmail.com addresses, and thus claim that the new email address…

>, they managed to obtain a `PURCHASE` event from Macy's interesting.. they could use that to predict earnings..

Predict? Facebook buys earnings data directly from payroll companies.

Re: Off-Facebook activity

#195
I realize this is an unpopular opinion around here... but can anyone explain how they have actually been harmed by this? Like for real not in abstract notions of "creepiness" or whatever. I, for one with Facebook actually figured how to do something useful with that data and not be that raw sewage stream that basically led to stop logging in.

Re: Off-Facebook activity

#196
post #25

My off-facebook activity was empty. That's encouraging, because it looks like my countermeasures have been working: - Fingerprinting resistance in Firefox (privacy.resistFingerprinting = true) - First-party isolation in Firefox (privacy.firstparty.isolate = true) - Blocking third-party cookies in Firefox (network.cookie.cookieBehavior = 1) - Firefox container when I need to login to ad/tracking companies (Facebook, G…

I had exactly one item, and it's a store I never shop at, so assuming they are actually showing all the information they "have" on me, I also feel encouraged that my opsec is sufficient.

I guess the only thing better would be 50 stores I never shop at. I might experiment in the future with finding ways to deliberately poison companies' data wells with incorrect information...

Re: Off-Facebook activity

#197
Kinda surprised how many interactions I've had tracked from my visits to Home Depot, I've only recently started stopping by there in the past year or so. What data could they have possibly even used? Sell me more cardboard moving boxes? Plant supplies?

Re: Off-Facebook activity

#198
post #45

Man I feel hopeless. I have not connected my Facebook account for over 90% of these sites/apps but they still sent my data to Facebook.

They probably just have a Like button on their website, which passes on data even if you don't click it. Use a request blocker like uBlock Origin.

Re: Off-Facebook activity

#199
post #13

Earlier quoted context omitted.

What you can do to prevent this is: 1) Install https://www.eff.org/privacybadger to prevent trackers from being loaded 2) Install https://addons.mozilla.org/en-US/firefox/addon/cookie-autode... to delete any cookies you might have accepted after a week time or so, which prevents the infinite gobbling-up of your data after innocently accepting a cookie once 3) Install the Google, Facebook, Twitter and Amazon container…

Those are good, but they don't work for what the GP is talking about. I'm seeing games/apps associated with my FB account even though I never logged in to FB with them or gave them any info. I literally just opened the app and that activity was associated with my FB account. I have no idea how they're doing this, since they didn't even request storage access (or I didn't give it). Can any Android developer here chime…

Are you using Instagram or WhatsApp?

Re: Off-Facebook activity

#200
post #89

Earlier quoted context omitted.

By far the worst thing are android phone applications (not only FB official app). They have their spyware bundled and can slurp from you the data which are normally unaccessible by web browser, from phone number, imei, mail addresses to all your contacts and there is almost nothing you can do except installing vpn based firewall (like NetGuard) and block all access and add permissions one by one for each url. This sh…

How can phone apps with no permissions get my phone number? > except installing vpn based firewall So they can send the data instead?

From your friends :) Or you will allow it. To use it. On the other side you can at least control that the common advertisers wont get it (like fb). For everything else get root and xposed + xprivacy. But for most users that is too much. I just gave the easiest advice. I am running microg lineage, xprivacy lua and netguard. But I wonder was this as advice worth the letters used? ;) Will someone go trough the trouble to use it? To replace the rom, install everything, run everything in block mode and allow only what is really needed, like connection to my own mail server? My own ssh tunnel? Probably not. And then comes the master villan, google. How many will remove that one from the phone? Waste of words, right?

Anyway even netguard is far better than nothing, most apps dont need their own servers. And the largest data slurpers are known. For fb just block all fb domains.

Post reply on HN