Earlier quoted context omitted.
I cannot ever imagine installing something like AliExpress as an app.
They're all doing some level of this
AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
321–330 of 348 posts
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#322Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#323I wish such shenanigans would simply trigger the little speaker icon most browser display on tabs these days. Given that they don't (at least in my experience), I'm assuming "playing silent audio" is a sufficiently common thing for websites to do to have motivated browsers into doing the slightly more complicated thing of actually analyzing audio streams for content... Now I wonder, does this also allow websites to c…
I wish the browser would classify the fingerprinting and not load the site and show a security risk warning like it does for http sites. Then Advanced > Accept risk to continue. @FireFoxDudes You need to be addressing fingerprinting
A colleague of mine made a recent post here: https://ritter.vg/blog-webaudio_alibaba.html
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#324I wish such shenanigans would simply trigger the little speaker icon most browser display on tabs these days. Given that they don't (at least in my experience), I'm assuming "playing silent audio" is a sufficiently common thing for websites to do to have motivated browsers into doing the slightly more complicated thing of actually analyzing audio streams for content... Now I wonder, does this also allow websites to c…
It does on my Firefox, I had to close their tab because it also tricks kde into thinking I'm playing audio.
A colleague of mine made a recent post here: https://ritter.vg/blog-webaudio_alibaba.html
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#325Earlier quoted context omitted.
This doesn't look like it gives websites something they couldn't do before with CSS and JS.
I'm pretty sure it does but maybe I'm wrong, I had never tried to create popovers/popups using CSS. What's neat[†] about the popovers API is that it doesn't need any JS, you just write a couple of HTML attributes and voila, a popover/popup. They will run with JS disabled as well. https://chrisburnell.com/html-can-do-that/ [†] Neat for me building things like tooltips and dropdowns into my web apps without using JS; n…
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#326Earlier quoted context omitted.
It does on my Firefox, I had to close their tab because it also tricks kde into thinking I'm playing audio.
The actual fingerprinting here does not work in Firefox though. A colleague of mine made a recent post here: https://ritter.vg/blog-webaudio_alibaba.html
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#327I'm confused, doesn't access to microphone raise pop up asking for permissions? I'm nearly sure I saw it
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#328Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#329I dont get how this fingerprints the browser? Are they able to read back the playback of audio somehow?
Re: AliExpress runs silent WebAudio fingerprinting that breaks Bluetooth multipoint
#330Earlier quoted context omitted.
Yesterday on here, somebody was demo'ing a sun clock website that asks for your position....... ....and yes, many HN'ers were clearly happy to give there precise GNSS coordinates to some random scrote who askes for them.
What's the threat scenario here? Unless you Saddam Hussein...
b) Browser fingerprinting and the like links this position to me and my activities.
Do you not find it bizarre that many people see nothing wrong in routinely giving their precise location to anybody who asks for it?