Sean O'Brien

@evangreer @fightforthefuture.org @bsky.app @guardianproject
📸 ProofMode: Verified photo and video #evidence.
It signs every photo with a cryptographic #fingerprint, preserving proof while separating metadata.
No UI clutter, just verified evidence with integrity.
proofmode.org

Gea-Suan Lin

TAWPA (台灣公益揭弊暨吹哨者保護協會) 網站被植入木馬

新聞的部分應該蠻好搜的,這邊抓個中央社的:「揭弊者協會網站疑有惡意程式 黃國昌:沒有資安外洩」。 網站現在已經離線了,但 Internet Archive 上的資訊已經足夠判斷,看起來至少首頁就被植了? 從 web.archive.org/web/*/https:// 可以看到首頁上最近的兩筆是這兩個 archive (以寫這篇的當下): 20250313220309 (2025/03/13) 20241206095011 (2024/12/06) 直接翻網頁 html 比較可以看到 3041 行以前的結構都一樣,但今…

blog.gslin.org/archives/2025/0

#attack #fingerprint #fingerprintjs #homepage #html #javascript #js #privacy #recaptcha #script #security #tawpa #webpage

Wayback Machine

web.archive.org
✍️ Eljo #MorpurgoMedia

In 2019 @google said: “Unlike cookies, users cannot clear their #fingerprint, and therefore cannot control how their information is collected. We think this subverts user choice and is wrong.”

And now 2025 #Google is using it themselves.

tuta.com/blog/digital-fingerpr

Digital Fingerprinting: Google launched a new era of tracking, but you can fight for your privacy! | Tuta

As Google gives you the choice to opt out of cookie…

Tuta
Eugene :emacs: :freebsd:

First, I used this manual: hauweele.net/~gawen/blog/?p=40

Second, I wrote my own :dragnheadphones: (see screenshot), because some things didn't work as inteded

UPD: There is just a draft, not a "ready to use" document

#freebsd #thinkpad #fingerprint

Feb 10, 2025, 09:45 · · · 0 · 0
Eugene :emacs: :freebsd:

My laptop has a fingerprint scanner, but I haven't used it, since I bought the laptop in 2019.

And yesterday, while reading the "FreeBSD Handbook", I have a thought: "what if I set it up — I know the internal libfprint machinery, since I wrote an article about it for IBM portal in 2013, when I was a student — so it shouldn't be so hard?"

I installed frpintd and configured sudo to ask for fingerprint instead of password. And now my life is easier :dragnloaf:

#freebsd #thinkpad #fingerprint

dorotaC

#Android question - can you skip setting up the #fingerprint sensor when running the device for the first time?

#askfedi

Mark

The End of Privacy in Public campaign

Demand your MP find out if #dystopian #FacialRecognition is deployed in your local area

We’re facing the end of #privacy because of unchecked rise of facial recognition in public spaces, shops, pubs

Your face will become:

- An #ID card
- A #fingerprint
- A #QR code & #barcode all combined

All to be monitored by your local council, the Home Office, the police, even the owner of your local #CornerShop.

action.privacyinternational.or

#Orwellian #UK #PoliceState

The End of Privacy in Public | Action Privacy International

Join ‘The End of Privacy in Public’ campaign to demand…

action.privacyinternational.org
Johannes Kastl

Does anyone have a recommendation for a #USB #fingerprint reader that works on #Linux? All that I tested in the last couple of years did only work with Windows...

James Bartlett :terminal:

@breadsmasher
Great question! "Need" probably isn't the right word. "Strongly desire" or "greatly prefer" would more accurate.

The reason is that I have lots of different devices with different port types. Some of my newer devices only have USB-C ports, while my older devices only have USB-A ports, and I'd really like to have just "one key to rule them all," so to speak.

I know that I could buy a little USB-A/C adapter dongle and keep that on the same keychain with the MFA key, but that introduces a degree of fragility that I'd prefer to avoid if possible.

That being said, if I found a hardware MFA key with all of the features I listed except for USB-C, then I'd happily accept the dongle compromise, because most of my devices (even the old ones) support Bluetooth, so I'd still have that as a backup option in case the dongle fails.

#MFA #2FA #fido #fido2 #fido3 #NFC #USB #USBc #USBa #dongle #Biometric #Fingerprint #YubiCo #YubiKey #Bluetooth #CyberSecurity #InfoSec

James Bartlett :terminal:

My current hardware MFA key is no longer receiving security patches, so I'm in the market for a new one.

Here's a list of features I'd like my new hardware MFA key to have, in order of priority:
1. USB-A
2. NFC
3. USB-C
4. Biometric
5. Bluetooth

My current MFA key has features 1-3 and 5. Is there a Holy Grail MFA key somewhere out there with all 5 features?

I'm already pretty familiar with YubiCo's product lineup, and while I love their security rating and build quality, none of them have more than 2 of the features listed above, so that kinda bums me out.

Anyway, let's hear your hardware MFA key recommendations!

#MFA #2FA #fido #fido2 #fido3 #NFC #USB #USBc #USBa #Biometric #Fingerprint #YubiCo #YubiKey #Bluetooth #CyberSecurity #InfoSec

rena2019 ☑️

@realmos @robert so ~10 Jahre? Müsste ungefähr solange her sein dass ich da mal was mit #JavaCard und #Fingerprint gemacht habe 😉

Norm

Regarding #browser #fingerprinting, is there a way to prevent a website getting access to details about the browser/OS/system via #javascript?

Currently websites can use javascript to get our timezone, screen resolution, architecture, etc.

Do I have a say in what websites can read about my system? Is there a way to block this (without blocking the site's javascript entirely, since I may need it to browse the site)?

#fingerprint #privacy #js

Norm

Do I understand #fingerprinting correctly?

I created a new #Librewolf profile, then went to amiunique.org/, and it says I'm "unique among the 2819143 fingerprints in [their] entire dataset." I expected a much different result...

A new LW profile has "Enable ResistFingerprinting" ticked, as well as "Silently block canvas access requests". Yet the test results show "Canvas: 0.00%", meaning I'm unique with just that...? How does that work?

#Firefox #AmIUnique #fingerprint #privacy #RFP

Am I Unique ?

Check if your browser has a unique fingerprint, how…

www.amiunique.org
Habr

Можно ли отследить пользователя Telegram через отпечаток браузера в Mini App

Недавно мне потребовалось запустить в обычном браузере встроенное в Telegram веб-приложение, называемое Mini App. Объектом изучения стал самый популярный на данный момент кликер Hamster Kombat. Решением стал скрипт для браузерного расширения TamperMonkey, в котором я реализую объект window.Telegram с подмененным свойством platform для обхода проверки того, что приложение запускается на мобильном устройстве. Но самым интересным оказалось другое. В процессе поиска решения я наткнулся на любопытное поведение кликера. На этапе аутентификации фронтенд совершает POST-запрос к api.hamsterkombatgame.io/auth/ . В теле запроса, помимо данных пользователя Telegram, необходимых для аутентификации, передается свойство fingerprint , содержащее хэш идентификатора пользователя, и набор информации, характерный для отпечатка браузера.

habr.com/ru/articles/834186/

#telegram #osint #fingerprint #hamster_kombat #grapheneos #brave