Earlier quoted context omitted.
So we're willing to destroy the web's big shot at peer-to-peer networking out of concern that this adds one more data point for fingerprinting, out of dozens? Let's keep the big picture in mind here, people. Peer-to-peer networking is the web's big chance to weaken these huge personal data-scarfing companies. Please let's not kill it while it's just starting to grow.
The web isn't peer to peer. Why would I want a web browser to do peer to peer? Its a web browser!
“We are considering adding an extension to restrict the use of WebRTC”
71–80 of 159 posts
Re: “We are considering adding an extension to restrict the use of WebRTC”
#72Earlier quoted context omitted.
In many European countries they can. They set up honey pots, log everything and then send costly C&Ds to thousands of people. Courts usually believe their "proof", no matter how bad it is. It's probably a billion dollar business by now.
Citation please.
http://arstechnica.com/tech-policy/2013/06/pirate-bay-data-s...
Earlier this week, Prenda faced a new and serious allegation: that it had actually put some pornography on BitTorrent itself, intending for it to be downloaded so that it could start a campaign of lawsuits and threat letters.
The Pirate Bay gave the data to TorrentFreak, which says that the IP address 75.72.88.156, which uploaded some porn files that Prenda has litigated over, "was previously used by someone with access to John Steele’s GoDaddy account."
http://arstechnica.com/tech-policy/2015/07/pirate-bay-founde...
Re: “We are considering adding an extension to restrict the use of WebRTC”
#73What the fuck, this leaked your real IP behind VPN since January 2014 and this isn't fixed yet? This sure looks like a Heartbleed-tier high-priority security hole to me. How is this not bigger news?
Re: “We are considering adding an extension to restrict the use of WebRTC”
#74Earlier quoted context omitted.
It is a technical requirement, because the protocol attempts to connect over the local network if both peers are under the same NAT. The local IP is shared so that the peers can attempt to make a local connection.
I'd assume that this is a rather rare usecase in the world wide web, so why is it not disabled by default?
Re: “We are considering adding an extension to restrict the use of WebRTC”
#75What the fuck, this leaked your real IP behind VPN since January 2014 and this isn't fixed yet? This sure looks like a Heartbleed-tier high-priority security hole to me. How is this not bigger news?
Re: “We are considering adding an extension to restrict the use of WebRTC”
#76Re: “We are considering adding an extension to restrict the use of WebRTC”
#77Earlier quoted context omitted.
And by "exactly that purpose" you mean preventing ad fraud [1], right? They weren't using WebRTC to put you in a "VPN user" advertising segment. 1. https://www.reddit.com/r/netsec/comments/3dgwee/how_the_new_...
[deleted]
Yes, if they identify themselves and their company and what they say aligns with my personal experience.
> You don't have the foggiest idea what they are really doing with the data. All we know is that they are collecting the data without user's consent.
You never have any absolute certainty what anyone does with your data - all you have are hypotheses and probabilities. Who are "they" and what do you think they are doing?
If adtech companies cared whether you're behind a VPN, they would make or buy a list of IP's that are provide VPN services and match that list. That's a ton easier than implementing a STUN server that scales to handle traffic from every single person who views one of their ads.
Re: “We are considering adding an extension to restrict the use of WebRTC”
#78IMHO it should be a configuration option, per-site, and off by default. WebRTC also isn't the only thing that applies to.
Re: “We are considering adding an extension to restrict the use of WebRTC”
#79Earlier quoted context omitted.
And by "exactly that purpose" you mean preventing ad fraud [1], right? They weren't using WebRTC to put you in a "VPN user" advertising segment. 1. https://www.reddit.com/r/netsec/comments/3dgwee/how_the_new_...
Doesn't matter. Privacy is not about right or wrong, it is about privacy.
Re: “We are considering adding an extension to restrict the use of WebRTC”
#80What the fuck, this leaked your real IP behind VPN since January 2014 and this isn't fixed yet? This sure looks like a Heartbleed-tier high-priority security hole to me. How is this not bigger news?