Firefox State Partitioning in Cookies Might End Evil Tracking forever

Поділитися
Вставка
  • Опубліковано 15 вер 2024

КОМЕНТАРІ • 48

  • @reggieangus5325
    @reggieangus5325 3 роки тому +9

    Everyone is already moving on to fingerprinting via canvas, localstorage, favicons and plugins with screen size and headers... a cat and mouse game for our data

  • @noahwilliams8918
    @noahwilliams8918 3 роки тому +19

    If Firefox had any market share this would break the internet 🤩

    • @parlor3115
      @parlor3115 3 роки тому

      Lol, burn

    • @PavanMehta
      @PavanMehta 3 роки тому

      Break the internet advertisers rather!

  • @KresnaPermana
    @KresnaPermana 3 роки тому +6

    I think... That's very cool.

  • @yogeshmnit
    @yogeshmnit 3 роки тому

    One Q, from where you get these updates, you are always first to cover these topics

  • @Slate245Ivanovo
    @Slate245Ivanovo 3 роки тому +13

    Seems like this 'heuristics' for allowing sso sites is a fancy way of saying 'whitelist'

  • @andresbacalao9493
    @andresbacalao9493 3 роки тому +5

    Facebook will not be happy about this, but I am haha

    • @developersmeetup536
      @developersmeetup536 3 роки тому +1

      They already have a special one for Facebook...try Facebook Container.

  • @sigma8783
    @sigma8783 3 роки тому +4

    1:35 fire fock xD

  • @simonebottino5165
    @simonebottino5165 3 роки тому +2

    Beautiful!

  • @althafpjaleel
    @althafpjaleel 3 роки тому +2

    Could you please do a video on Dev Tooling gsuite SSO?

  • @Samsonkwakunkrumah
    @Samsonkwakunkrumah 3 роки тому

    Heuristics is an informed search strategy which uses known information or knowledge to make search more efficient and complete. These searches are known as search algorithms with brains

  • @SH.K_
    @SH.K_ 3 роки тому

    Cool ! Thanks for the interesting content 👍

  • @realericanderson
    @realericanderson 3 роки тому

    The 'share on fb' button that most websites embed to help drive traffic tracks you, wonder if the firefox solution covers that

  • @MrMysticphantom
    @MrMysticphantom 3 роки тому

    Clever, but that appendage method looks very easy to break and bypass

  • @-indeed8285
    @-indeed8285 3 роки тому +2

    🔥 🦊 ❤️

  • @jorgecornejobellido7105
    @jorgecornejobellido7105 3 роки тому

    What are your thoughts on Google Floc?

  • @SamGib
    @SamGib 3 роки тому

    How's the update from 85 to 86 works then? I guess it won't update all cookies at once. But because of the key is now different, will it treat the old cookie as the "cross site cookies". Or ask the user individually? Does end user have to delete all cookies to make it work 100%?

  • @JamesSmith-cm7sg
    @JamesSmith-cm7sg 3 роки тому

    I don't see why this is needed. You can just block outgoing api calls to unknown origins with a csp?

  • @magneto6791
    @magneto6791 3 роки тому +2

    GDPR already made the web cumbersome with cookie consent popups, soon enough browsers will start asking users to allow images to display..

    • @magneto6791
      @magneto6791 3 роки тому

      @@UliTroyo I think mozilla's case here of expecting the masses to understand the meaning of "cookies" when asking them to allow or deny app breaking features like SSO is not necessarily a light change.

  • @mentalmarvin
    @mentalmarvin 3 роки тому

    Does this mean we can trash the multi-container tabs addon?

  • @narasimhaprasannahn8996
    @narasimhaprasannahn8996 3 роки тому

    Shouldn't the unique ID for the key be generated more securely?? It's just appending, if I'm not wrong, I can easily write a Regex based search on keys. Maybe the feature is still in idea stage, mozilla community would obviously think about this, once it is approved.

  • @autohmae
    @autohmae 3 роки тому +1

    It could succeed if it turns out to work and if (BIG IF) Google agrees it's a good idea.

  • @prajwalrajbasnet9019
    @prajwalrajbasnet9019 3 роки тому +1

    *Opens the article in chrome

  • @lifeTechnicolorGuy
    @lifeTechnicolorGuy 3 роки тому

    Nice video

  • @videoguy640
    @videoguy640 3 роки тому

    This is awesome :)

  • @sanketitnal6887
    @sanketitnal6887 3 роки тому

    But isn't it similar to localStorage of browsers ?

  • @valour.se47
    @valour.se47 3 роки тому

    I think it is useless until every other browser implement it. Correct me if I am wrong

  • @ch94086
    @ch94086 3 роки тому +1

    I thought 3rd party cookies were disabled by default. (Cookies not from the main URL domain.) Cookies aren't the problem, it's scripts! I used to be frustrated waiting 6s for analytics.google.com till I found ghostery can block it and make page loads 3x faster. Ok, separate 3rd party cookies is a tweak to improve privacy, but not really. I see news sites that use 24 trackers. Ok, maybe one but 24? Ban them all. Cross site scripting is the ultimate evil, and browsers should give insecure warnings on https without integrity hash.
    Hussein, please do a video on tracking methods. Actually I don't mind the tracking as much as page loading delays. Google fixed the several second analytics delay, but it annoys me and I block it. We need a law that requires firefox to block google analytics, etc. or else get the user to enable tracking.
    How about doing a whole tutorial on tracking? I'm annoyed by the EU required cookie messages that ignore scripts that are 100x worse. The tracking scripts and XHR need to be banned by browsers. And probably by laws that protect us. Ok, that's my opinion.

    • @autohmae
      @autohmae 3 роки тому

      Yes, blocking scripts is a good way to prevent this. But don't work for a lot of regular users. Yes 3rd party cookies is disabled by default. This separates the cookies and other storage for sites so that even when scripts are used their they only get to play with separate storage like cookies.

  • @darshanprakash
    @darshanprakash 3 роки тому

    Awesome! I'm using your videos to learn more (basically everything of www) and to crack interview. Thanks!

    • @ramprabu8880
      @ramprabu8880 3 роки тому

      we should use his videos to work better and results will come when you start searching outside :) All the best anyways

  • @MakeItStik
    @MakeItStik 3 роки тому

    Hi Hussein, can you make video on network programming in Java. And different design patterns used to control socket creation and usage of sockets for better performance.

  • @ramprabu8880
    @ramprabu8880 3 роки тому

    but site A and site B can collect information independently and then they send to data to fb then can be processed.

    • @misternobody6798
      @misternobody6798 3 роки тому +2

      How would FB know that they are both talking/reporting about the same unique user?

    • @sadn1ck
      @sadn1ck 3 роки тому

      @@misternobody6798 fingerprinting maybe?

    • @ramprabu8880
      @ramprabu8880 3 роки тому

      @@misternobody6798 instead of using the APIs in UI site they may implement in Backend(FB) APIs all the sites that uses/needs FB they make be asked to implement the API in backend. I am not expert in that area just shared my thoughts.

  • @lesamelb
    @lesamelb 3 роки тому

    First