Live data from Hacker News

Web fingerprinting is worse than I thought (2023)

bitestring.com

51–60 of 219 posts

Re: Web fingerprinting is worse than I thought (2023)

#51

> go to about:config and setting privacy.resistFingerprinting = true in your Firefox browser Two questions jump to mind: Why isn't this the default in Firefox? What is the downside? I.e., what can break by enabling this parameter?

It's actually part of the privacy preferences in the normal settings, and they supply this warning

> This setting may cause some websites to not display content or work correctly. If a site seems broken, you may want to turn off tracking protection for that site to load all content.

Some sites use light fingerprinting to provide features

Re: Web fingerprinting is worse than I thought (2023)

#52

Earlier quoted context omitted.

probably just ignored them. Aren't those privacy protections basically you saying "pretty please don't track me?"

If we're exploring the space of "they're lying" isn't a simpler explanation be that they're lying about their revenue?

No. The SEC gets very grumpy with public companies if they do that.

Re: Web fingerprinting is worse than I thought (2023)

#53

This isn't exactly browser fingerprinting (though it may involve browser fingerprinting.) But the biggest open question I have right now is: what is Meta doing to get around Apple's iOS privacy protections? A couple of years ago, Apple launched App Tracking Transparency as a way to reduce tracking across their iOS app ecosystem. People predicted that this would be devastating for companies like Meta and Snap, and it…

probably just ignored them. Aren't those privacy protections basically you saying "pretty please don't track me?"

Not on iOS, as I understand it. If you "Ask app not to track" on iOS then the app cannot access your IDFA, which was the ID that previously was used to track a device across apps.

Re: Web fingerprinting is worse than I thought (2023)

#54

It's a little unclear to me - does Brave prevent it or not? Edit: some interesting background on what they do here: https://github.com/brave/brave-browser/wiki/Fingerprinting-P...

https://privacytests.org

Maintained by a Brave employee, though the site is fully open in all senses of the word, as far as I'm aware.

Re: Web fingerprinting is worse than I thought (2023)

#55

Earlier quoted context omitted.

sure, if they ask you can we track you and you say no they should not fingerprint.

EU (or whoever) could mandate a switch in the browser, when turned on, all identifying apis are disabled. But the IP is still the same, so..

Non-hostile websites use identifying apis for functionality.

Disabling them globally means a broken browsing experience.

Re: Web fingerprinting is worse than I thought (2023)

#56
post #20
post #9

Browser fingerprinting is one of those things that should be outright illegal - it is far more of a threat than tracking cookies ever were. But it hasn't permeated the public consciousness like cookies have, so regulators seem to ignore it.

Or... You could read GDPR and realize that "cookie dialogs" were never about cookies: https://news.ycombinator.com/item?id=44670345

So does that mean that fingerprint.com, which records your fingerprint without asking for your consent, is operating illegally?

Re: Web fingerprinting is worse than I thought (2023)

#57
post #27

So, one thing I don't quite get about fingerprinting: > For example, websites can see web browser version, number of CPUs on your device, screen size, number of touchpoints, video/audio codecs, operating system and many other details If, for example, I upgrade my web browser in two weeks (i.e. I get a new version number), doesn't that mean that the site has lost me? Sites like https://coveryourtracks.eff.org seem to…

That is why they probably don't put features that can be easily changed into the final fingerprint hash.

Re: Web fingerprinting is worse than I thought (2023)

#58
post #19
post #9

Browser fingerprinting is one of those things that should be outright illegal - it is far more of a threat than tracking cookies ever were. But it hasn't permeated the public consciousness like cookies have, so regulators seem to ignore it.

We need regulators with more balls. And more brains. This privacy theater is becoming very painful to watch.

The core issue is that politically you gain nearly no votes and definitely no money by running with regulation as a pillar of your campaign.

In fact, doing so will often times end up bringing donations from relevant industries directly to your opponent.

Now, this system of perverse incentive and legal bribery should be fixed at the constitutional level but thats a gigantic can of worms.

In the current system there are two methods that can circumvent the issue. The first is one deployed by the likes of Elizabeth Warren; run your campaign on a broad array of "fighting for your constituents" and don't get specific until you see already elected and drafting a bill.

The second path is underutilized and should be done more: lie out your ass to the moneyed interests. Take their money, make them promises, eat at their fancy dinners, befriend them, laugh at their awful jokes. Then just fucking dunk on them in the legislature, as quietly as possible. Make a big show of being forced to, keep the charade going as long as possible.

The inverse of this has been done a lot recently, with Sinema, with Fetterman. But the good version is quite rare, and a good opportunity to make our country a better place.

Key notes: tough to do in bigger positions because they're rarely the first public office seats people hold, so track records build. Tough to do in many districts because voters can be rubes who actively agree with the corporations stomping on their nards. Tough to do if you make too large of a profile(not really a concern).

Re: Web fingerprinting is worse than I thought (2023)

#59
post #19
post #9

Browser fingerprinting is one of those things that should be outright illegal - it is far more of a threat than tracking cookies ever were. But it hasn't permeated the public consciousness like cookies have, so regulators seem to ignore it.

We need regulators with more balls. And more brains. This privacy theater is becoming very painful to watch.

People with ideas are a dying breed. The west doesn't have a fraction of the idealism of the 80s and 90s
Post reply on HN