- Local time
- 12:58 AM
- Posts
- 332
- OS
- Windows 11 Pro 24H2
Only slightly related, but FYI, Meta (and Yandex) just got caught using a back door to track web users at levels never before encountered [on Android phones and quite likely Iphone although details are still scant on both].
Short version of the scam: Web sites can't normally identify you through browsing. What Meta did was to call back to their own apps on the same device and gain direct access to the identifying info on your phone through the greater access that apps are allowed (vs. browsers that are supposed to run 'in a sandbox').
Apparently this has been going on since 2024. (Yandex has been doing it since 2017 but "Russian Search Engine", so, go figure :- ) .
Even Google tongue-lashed them for this violation of longstanding web security protocols. Meta's response was to say "Oh, we stopped doing that as soon as we heard of the concerns.". Yeah... they stopped three days ago when it went public - and they knew the rules like everyone else has since 1995. It's like a bank robber saying "Oh, were we not supposed to rob banks? Well, now that we know that, we've stopped." Meta also said Google had a "misunderstanding" as to what they were doing. Uh huh.
Google (chrome) and FIrefox are both taking steps to stop the exploit from the browser side.
www.techradar.com
www.bankinfosecurity.com
Short version of the scam: Web sites can't normally identify you through browsing. What Meta did was to call back to their own apps on the same device and gain direct access to the identifying info on your phone through the greater access that apps are allowed (vs. browsers that are supposed to run 'in a sandbox').
Apparently this has been going on since 2024. (Yandex has been doing it since 2017 but "Russian Search Engine", so, go figure :- ) .
Even Google tongue-lashed them for this violation of longstanding web security protocols. Meta's response was to say "Oh, we stopped doing that as soon as we heard of the concerns.". Yeah... they stopped three days ago when it went public - and they knew the rules like everyone else has since 1995. It's like a bank robber saying "Oh, were we not supposed to rob banks? Well, now that we know that, we've stopped." Meta also said Google had a "misunderstanding" as to what they were doing. Uh huh.
Google (chrome) and FIrefox are both taking steps to stop the exploit from the browser side.

Meta halts phone and browser tracking tools after researchers expose user snooping
Meta removes exploit after it was spotted by researchers

Researchers: Meta and Yandex Broke Android Privacy
American social media giant Meta and Russian counterpart Yandex each found methods to break through privacy protections enabled by Android users, say academics in
My Computer
System One
-
- OS
- Windows 11 Pro 24H2
- Computer type
- Laptop
- Manufacturer/Model
- HP
- CPU
- Intel Ultra 7 155H
- Memory
- 16gb
- Graphics Card(s)
- Intel Arc integrated
- Hard Drives
- SSD