Live data from Hacker News

A Potential Privacy Model for the Web

github.com

31–40 of 40 posts

Re: A Potential Privacy Model for the Web

#31
post #6

Earlier quoted context omitted.

> take that away and you'll see user data aggregated on the back-end instead OK, but at least then it's not polluting the user's experience and burning the user's CPU cycles. Still a strictly positive change IMO.

The negative side is that you can no longer see what sites are doing it, what they're doing, or block it in your browser

You still don't know what sites are doing right now, even with all of your ad-block extensions.

Re: A Potential Privacy Model for the Web

#32
post #23

Earlier quoted context omitted.

> They mine data at the browser level and sell it to advertisers Go you have any actual proof of this?

Read Google's own proposal for privacy on the web. The first thing they talk about is differential privacy when collecting user data in chrome.

Any progress > No progress?

Re: A Potential Privacy Model for the Web

#33
post #23

Earlier quoted context omitted.

> They mine data at the browser level and sell it to advertisers Go you have any actual proof of this?

Read Google's own proposal for privacy on the web. The first thing they talk about is differential privacy when collecting user data in chrome.

Can you point to the specific part? I really don't see what you're talking about.

Re: A Potential Privacy Model for the Web

#35
post #23

Earlier quoted context omitted.

Read Google's own proposal for privacy on the web. The first thing they talk about is differential privacy when collecting user data in chrome.

Can you point to the specific part? I really don't see what you're talking about.

I am on my mobile and the chromium blog doesn’t quite work. So go here and click on the link in the page that says “we have announced a plan”.

https://www.blog.google/products/chrome/building-a-more-priv...

Re: A Potential Privacy Model for the Web

#36
post #4

> The identity "Me while I'm visiting nytimes.com" is distinct from the identity "Me while visiting cnn.com". Trying to solve this through purely technical means is futile. If you block it at the user-agent, sites will share data at the back-end to create a super-profile. Right now it's really convenient for advertisers to run an ad auction right in the user's web browser because all the context is there -- take that…

One thing that might counteract this is that right now, violating user's privacy is normalized. Regulation exists (GDPR), enforcement is missing. Everyone is doing it, most sites have cookie notices/consent forms that blatantly violate GDPR, and because everyone is doing it, nobody is willing or motivated to change.

Break the platform and force everyone to re-engineer, and you can start severely hitting the companies that continue violating GDPR in the "new world".

Re: A Potential Privacy Model for the Web

#37

Earlier quoted context omitted.

Harder on shared internet connections, for sure. But my apartment's internet connection is for the most part my own traffic, or guests who bring their phone over. Any traffic coming from that can be trivially tied to me. I can use a VPN to hide my IP on most of my devices, except for when I'm trying to watch Netflix/Amazon/whatever. But I wish I didn't have to.

There's a big difference between your ISP knowing stuff and the river of scum that is advertising. > But I wish I didn't have to. One way or other you will always have to. Perhaps the most important way of destroying the ad industry online is to have an alternative means of funding sites. Maybe that would work.

Of course my ISP knows my identity, but my point is it's also probably not hard for an advertising company to get one piece of data that links my real identity to my cable modem's IP address, and then any tracking data they've previously accumulated can potentially be tied to that after the fact. They just need to tell when IP was assigned to me, which is probably easy to infer from a sudden change in what websites an IP is visiting.

On a related note, remember that time when AT&T and Verizon were just giving out the cell numbers associated with their customers' IP addresses to whoever asked, because they're complete fucking morons who thought that was a good idea?

https://medium.com/@philipn/want-to-see-something-crazy-open...

Re: A Potential Privacy Model for the Web

#38
post #8

Earlier quoted context omitted.

With JS and cookies disabled and using a VPN you can get a decent browsing experience without tor slowness and blocks. At least your browsing is mixed with thousand people.

Sure. But lately I keep hearing that these users are implicitly under attack by constantly requiring them to fill CAPTCHAs.

I haven't experienced any captcha so far. I did when using tor.

Re: A Potential Privacy Model for the Web

#39
post #38

Earlier quoted context omitted.

Sure. But lately I keep hearing that these users are implicitly under attack by constantly requiring them to fill CAPTCHAs.

I haven't experienced any captcha so far. I did when using tor.

That's exactly what I was saying: that many websites' algorithms punish you for choosing privacy (Tor) by making you fill captchas all the time.

Re: A Potential Privacy Model for the Web

#40
post #38

Earlier quoted context omitted.

I haven't experienced any captcha so far. I did when using tor.

That's exactly what I was saying: that many websites' algorithms punish you for choosing privacy (Tor) by making you fill captchas all the time.

Oh, now I get it. Great idea. Also implement Namecoin support would be great.
Post reply on HN