Live data from Hacker News

Hacker Uses XSS and Google Street View Data to Determine Physical Location

securityweek.com

31–33 of 33 posts

Re: Hacker Uses XSS and Google Street View Data to Determine Physical Location

#31
post #29

Maybe I missed something, but is this really how Firefox's location services work? By phoning google with the MAC address? I understood google was logging them, but didn't know they were _using_ them...

The location services are pretty creepy actually. I gave a site access and it knew my exact address. I will not be giving another site access, until I can specify that it should only provide my city.

Re: Hacker Uses XSS and Google Street View Data to Determine Physical Location

#32
post #24

Earlier quoted context omitted.

Relevance? Are you the same guy telling people "I went to high school with that chick" when looking at porn with comment features?

We're a small community here on HN. I'm sure others know him too. I don't need to toot my own horn.

Also, davidu didn't mention that he is the kind of person who people might brag about knowing =)

Re: Hacker Uses XSS and Google Street View Data to Determine Physical Location

#33
Firefox about:config

Set geo.enabled to false.

Not clear how to do the equivalent in Chrome yet. What's alarming is, in my brief search, there does not seem to be an easy way to retroactively go back and delete permissions formerly/accidentally granted.

Same thing with html5 storage (offtopic but related). There is likewise no way I know of to browse what exactly is stored in html5 storage via the browser (preferences or otherwise).

Post reply on HN