Live data from Hacker News

Web fingerprinting is worse than I thought (2023)

bitestring.com

211–219 of 219 posts

Re: Web fingerprinting is worse than I thought (2023)

#211
post #48

Earlier quoted context omitted.

The consequences for lying about revenue as a public company are many orders of magnitude worse than lying about compliance with some private contract or TOS.

Mess with someone's personal privacy, non-issue. Mess with investors money, instant problem.. Money is more important than people, to these groups.

Good luck arguing "defrauding the entire investment market to the tune of potentially billions of dollars and submitting fraudulent 10K form(s) under penalty of perjury" is not on its face worse than violating a private company's terms of service.

Re: Web fingerprinting is worse than I thought (2023)

#212
post #110
post #88

Earlier quoted context omitted.

https://developer.apple.com/documentation/apple-silicon/buil...

There are a whole lot of downsides to that approach. Most applications don't do it, although perhaps it does make sense for the general audience like mine. Fortunately, however, a lot of Macs are using Chrome or Firefox that expose this info.

It’s also worth noting that nobody’s going to be shipping Intel binaries in a short 2-5 years so this problem will just go away on its own.

The user base won’t even be there anymore.

This is not just because people will be retiring old Intel systems, it’s also because Apple’s marketshare exploded when the M1 chip came out, so a very large portion of the userbase never owned an Intel Mac.

Re: Web fingerprinting is worse than I thought (2023)

#213

There's a company, currently called Tie (meettie.com), formerly known as Revenue Roll, who promises to "de-anonymize your highest value web traffic", which in practice means that they give you an email address for retargeting, for a user who visited your site without ever explicitly providing any identifying info. The old site had a blog post [0] where they explicitly said they were using fingerprinting, and even cal…

Found This: https://www.youtube.com/shorts/Du1W8k6Y_kc

Re: Web fingerprinting is worse than I thought (2023)

#214

There's a company, currently called Tie (meettie.com), formerly known as Revenue Roll, who promises to "de-anonymize your highest value web traffic", which in practice means that they give you an email address for retargeting, for a user who visited your site without ever explicitly providing any identifying info. The old site had a blog post [0] where they explicitly said they were using fingerprinting, and even cal…

[deleted]

Re: Web fingerprinting is worse than I thought (2023)

#215

There's a company, currently called Tie (meettie.com), formerly known as Revenue Roll, who promises to "de-anonymize your highest value web traffic", which in practice means that they give you an email address for retargeting, for a user who visited your site without ever explicitly providing any identifying info. The old site had a blog post [0] where they explicitly said they were using fingerprinting, and even cal…

[deleted]

Re: Web fingerprinting is worse than I thought (2023)

#216

There's a company, currently called Tie (meettie.com), formerly known as Revenue Roll, who promises to "de-anonymize your highest value web traffic", which in practice means that they give you an email address for retargeting, for a user who visited your site without ever explicitly providing any identifying info. The old site had a blog post [0] where they explicitly said they were using fingerprinting, and even cal…

Funny stuff here for Revenue Roll/Tie: https://www.youtube.com/shorts/Du1W8k6Y_kc

Re: Web fingerprinting is worse than I thought (2023)

#217

There's a company, currently called Tie (meettie.com), formerly known as Revenue Roll, who promises to "de-anonymize your highest value web traffic", which in practice means that they give you an email address for retargeting, for a user who visited your site without ever explicitly providing any identifying info. The old site had a blog post [0] where they explicitly said they were using fingerprinting, and even cal…

Their opt-in doesn't work - go to a few of their customer sites (listed in their blog/success stories) and they make a lot of calls to revenueroll IPs without asking. Some of those call contain PII responses too. Trying to contact them, but they've been brushing me off

Re: Web fingerprinting is worse than I thought (2023)

#218

There's a company, currently called Tie (meettie.com), formerly known as Revenue Roll, who promises to "de-anonymize your highest value web traffic", which in practice means that they give you an email address for retargeting, for a user who visited your site without ever explicitly providing any identifying info. The old site had a blog post [0] where they explicitly said they were using fingerprinting, and even cal…

I notice they have an Opt-Out form here: https://app.termly.io/dsar/ee5088c4-5eb2-475c-a9ea-9376f1b70... It's pretty hilarious legalese and tells you nothing about what it even achieves. Maybe makes you a Very Important Marketing Target. One thing that struck me was the 'Under penalty of perjury, I declare all the above information to be true and accurate'. Shame they seem to require validating request by email. It'd…

tried the form for shits and giggles - 6 days ago and no response yet

Re: Web fingerprinting is worse than I thought (2023)

#219

There's a company, currently called Tie (meettie.com), formerly known as Revenue Roll, who promises to "de-anonymize your highest value web traffic", which in practice means that they give you an email address for retargeting, for a user who visited your site without ever explicitly providing any identifying info. The old site had a blog post [0] where they explicitly said they were using fingerprinting, and even cal…

Their opt-in doesn't work - go to a few of their customer sites (listed in their blog/success stories) and they make a lot of calls to revenueroll IPs without asking. Some of those call contain PII responses too. Trying to contact them, but they've been brushing me off

If you find the right API endpoint, you can spoof the `Forwarded` header to get different results. Big PII leak IMO but they seem to think it's intended behavior?
Post reply on HN