AliExpress is accused of using hidden code within its website to fingerprint users' PCs via the browser's Web Audio API. Developer Matt Callaghan discovered that loading AliExpress pages interfered with his Bluetooth headphones, even when no audio was playing. The scripts, identified as collina.js and fireyejs.js, generate and analyze audio waveforms, collecting data on device specifics like screen dimensions, browser plugins, and WebGL rendering, which is then encrypted and sent to Alibaba's telemetry services. Browsers like Firefox and Brave reportedly have built-in protections against such audio fingerprinting techniques. AI
IMPACT This incident highlights potential privacy risks in web technologies and may prompt further development of browser-based anti-fingerprinting measures.
RANK_REASON The article details a specific privacy-invasive technique used by a commercial website, which falls under the category of a tool or method rather than a core AI release or significant industry event.
- AliExpress
- Debian
- DEF CON
- DEF CON Franklin
- EQT Partners
- FRAME
- Gnome
- Joomla
- Linux Mint
- Microsoft
- Salesforce
- signal
- Switzerland
- Wayland
- X Window System
- Alibaba Group
- AudioContext
- AudioNode.prototype.connect
- Brave
- collina.js
- Firefox
- fireyejs.js
- Google Chrome
- Matt Callaghan
- Web Audio API
- WebGL
AI-generated summary · Google Gemini · from 2 sources. How we write summaries →