Earlier quoted context omitted.
I'm an app developer and all my apps have the "Data Not Collected" privacy nutrition label. I love the idea, but Apple's enforcement of it is very lackadaisical. I've reported dozens of apps that were blatantly lying on their privacy nutrition labels to Apple and I'm yet to see any such app's nutrition label change. Here's a good overview of the problem: https://arxiv.org/abs/2206.02658v3
Why have rules (or laws) if they don’t enforce them? Or only enforce them selectively when they feel it necessary, such as when not doing so would threaten your stock price (or re-election campaign)? Maybe I just answered my own question? Reminds me of meat processing regulations. I can sell my animals whole to buyers through a custom processing exemption, but they must go pick up their meat from the butcher. The law…
AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
111–120 of 349 posts
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#112Earlier quoted context omitted.
No, I took the first sentence of my article and then edited the rest of the intro + conclusion to keep it short for HN.
You should make that obvious in some way like using “TLDR”. I assume many people, like me, would attempt to parse your comment as a comment on the article, after all it’s in the comment section, and read that way it’s very confusing lol.
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#113Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#114Earlier quoted context omitted.
I cannot ever imagine installing something like AliExpress as an app.
Not sure if they still do, but a couple years ago prices in the app were lower than on the website. And they promoted installing it to save money.
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#115Earlier quoted context omitted.
>Obviously apps can tell if they haven't been granted a permission By design. This doesn’t need to be the case. It should be impossible to tell you have denied a permission. In TFA’s case, the browser could just keep processing audio but never hook it up to a real audio sink.
That does nothing but start an arms race. Fine, audio "works" but do you get noise? Can you read back the sounds you play? No, right? It doesn't work, QED. Now the platform needs to fake the noise. Likewise for any other hardware access you want, and most of them are harder. How do you fake local storage without storing anything? How do you fake Bluetooth access without virtualizing an entire device? Do you fake the…
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#116Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#117Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#118Earlier quoted context omitted.
I cannot ever imagine installing something like AliExpress as an app.
Not sure if they still do, but a couple years ago prices in the app were lower than on the website. And they promoted installing it to save money.
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#119I thought the App Store review guidelines explicitly prohibit hidden features and using public APIs outside their intended purpose. Is audio-based fingerprinting just not something review can realistically catch?
It's the website. The title of the article literally mentions "WebAudio", and the first paragraph states that the author is using a PC. The second paragraph mentions Chrome and Firefox. Apple and the App Store have zero involvement here.
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#120Earlier quoted context omitted.
I cannot ever imagine installing something like AliExpress as an app.
You probably buy things off amazon that are dropshipped from AliExpress all the time. Stop with the elitism