Note: This post now archived and as such no longer works

5 points

Would be interesting to use such an embedded image to acquire some statistics on lemmy users. We could answer questions like: What percentage of lemmy users use Linux?

permalink
report
reply
5 points

“You are viewing this from Firefox on Windows.”

I should worry that this info is exposed?

permalink
report
reply
3 points

Probably not. Every time your web browser makes a request to a server, it always transmits some “user agent” describing itself. By default, it’ll be something that boils down to “Safari version X on macOS version Y” or “Firefox version A on Windows version B” or something similar. You can often change your user agent (on desktop browsers at least) of you care.

What can someone do with this specific info? Well, not a huge amount. It can be used as a sort of a fingerprint - the more unique a browser’s user agent, the more easy it is to target you as a demographic or individual. It could be used in phishing, to legitimize spam - think, “I know you use Firefox on Windows, you don’t want to know what else I know!” But honestly, for the vast majority of people (in my opinion) the reality is that letting the server know your user agent isn’t going to be doing much.

To be fair, user agent is one of many ways that remote services can track you and identify you.

permalink
report
parent
reply
8 points

Unknown mobile client. Yeah, I’m pretty mysterious like that.

permalink
report
reply
0 points

Can countermeasures be implemented in the clients to mitigate privacy risks, while not having to proxy images?

permalink
report
reply
1 point

At it’s basic level it will capture your IP address, but it won’t really tie the IP to a user name, and there’s not a role lot you can do with it

Attacks I can think of:

  • target advertising at users in a particular lemmy community
  • get a collection of IP addresses of people with specific problems or beliefs (indicated by membership in a lemmy community) to target with malware

A VPN would protect you in this case, but you need to be a bit of a privacy nut to also protect yourself from things that identify for advertising right now

permalink
report
parent
reply
7 points

on hexbear, all i get is

*removed externally hosted image*

permalink
report
reply

Lemmy

!lemmy@lemmy.ml

Create post

Everything about Lemmy; bugs, gripes, praises, and advocacy.

For discussion about the lemmy.ml instance, go to !meta@lemmy.ml.

Community stats

  • 4

    Monthly active users

  • 289

    Posts

  • 963

    Comments

Community moderators