Live data from Hacker News

Behavioral Profiling: The password you can't change

paul.reviews

11–20 of 99 posts

Re: Behavioral Profiling: The password you can't change

#11

We already know that places like Facebook monitor our every keystroke and store them for posterity. Yes, they hang on, also to the text you regretted, backspaced, and never published. It would seem utterly unprofessional, and potentially detrimental to shareholder interest, for them to not also keep track of timings and typing rhythms. Which makes me wonder how much mood analysis, lie detection, and other psychometri…

Google Doc does that as well

Re: Behavioral Profiling: The password you can't change

#12

We already know that places like Facebook monitor our every keystroke and store them for posterity. Yes, they hang on, also to the text you regretted, backspaced, and never published. It would seem utterly unprofessional, and potentially detrimental to shareholder interest, for them to not also keep track of timings and typing rhythms. Which makes me wonder how much mood analysis, lie detection, and other psychometri…

That would be... disturbing. Fortunately it's not true, as you can see for yourself with the chrome developer tools.

Re: Behavioral Profiling: The password you can't change

#13

We already know that places like Facebook monitor our every keystroke and store them for posterity. Yes, they hang on, also to the text you regretted, backspaced, and never published. It would seem utterly unprofessional, and potentially detrimental to shareholder interest, for them to not also keep track of timings and typing rhythms. Which makes me wonder how much mood analysis, lie detection, and other psychometri…

That would be... disturbing. Fortunately it's not true, as you can see for yourself with the chrome developer tools.

On the other hand, Windows 10 collects these data by default, according to their privacy statements.

Re: Behavioral Profiling: The password you can't change

#14
post #3

It sounds great and much more protective than passwords. You can't copy/imitate behaviors. However, I am wondering if the system still works if you are tired or sick. Your behavior might change in this case and therefore the system would not recognise you.

And keyboards, different devices I.e. laptop vs desktop.

You could use it as an indicator and trigger a warning email.

Re: Behavioral Profiling: The password you can't change

#15
post #8

I wonder if it makes sense to disable some of that information in JavaScript. You couldn't disable it for js videogames, but I see no reason for most websites to be able to track your behavioral profile. The problem is that behavioral profiling will get better. How long you stay on a page, which links you prefer, and potentially a lot of the metrics that companies routinely use to A/B test their page would also revea…

These sorts of techniques have widespread applicability. Who needs facial recognition when you have kinematic behavioral analysis? Just imagine the trove of data you could pull from existing information sources if you had unlimited analytical time and computational power? As computing power becomes even cheaper and various analytical techniques become better our "effective privacy" window in our partially-anonymous society will grow ever smaller.

Re: Behavioral Profiling: The password you can't change

#17
What a huge nightmare waiting to happen. Sites already give me shit for changing my location, making me jump through additional hoops because my browser signature changed, refusing to let me purchase something because I don't access them from my home country. The last thing I need is a behavioral profiler that insists it has determined I'm not me and there is nothing I can do to prove it wrong.

Re: Behavioral Profiling: The password you can't change

#18

We already know that places like Facebook monitor our every keystroke and store them for posterity. Yes, they hang on, also to the text you regretted, backspaced, and never published. It would seem utterly unprofessional, and potentially detrimental to shareholder interest, for them to not also keep track of timings and typing rhythms. Which makes me wonder how much mood analysis, lie detection, and other psychometri…

That would be... disturbing. Fortunately it's not true, as you can see for yourself with the chrome developer tools.

It was true at one stage, according to official acknowledgement form Facebook. There's a discussion somewhere here on Hacker News. Can't find the link right now.

Re: Behavioral Profiling: The password you can't change

#19
post #11

We already know that places like Facebook monitor our every keystroke and store them for posterity. Yes, they hang on, also to the text you regretted, backspaced, and never published. It would seem utterly unprofessional, and potentially detrimental to shareholder interest, for them to not also keep track of timings and typing rhythms. Which makes me wonder how much mood analysis, lie detection, and other psychometri…

Google Doc does that as well

That was actually my first thought. There was the story last year about replaying the typing of a Google Doc[1], and as it stores the time between keystrokes it struck me that an attacker could feed document you've written into an extension like this but in reverse, thus typing with exactly the same signature as yourself (at least in respect to the gap time).

[1] - http://features.jsomers.net/how-i-reverse-engineered-google-...

Post reply on HN