Julian Fietkau, Kashjap Thimmaraju, Felix Kybranz, Sebastian Neef, Jean-Pierre Seifert
{"title":"The Elephant in the Background: A Quantitative Approachto Empower Users Against Web Browser Fingerprinting","authors":"Julian Fietkau, Kashjap Thimmaraju, Felix Kybranz, Sebastian Neef, Jean-Pierre Seifert","doi":"10.1145/3463676.3485599","DOIUrl":null,"url":null,"abstract":"Tracking users is a ubiquitous practice on the web today. User activity is recorded and analyzed on a large scale to create personalized products, forecast future behavior, and prevent online fraud. While HTTP cookies have been the weapon of choice so far, new and more pervasive techniques such as browser fingerprinting are gaining traction. This paper describes how users can be empowered against fingerprinting by showing them when, how, and who is tracking them. To this end, we conduct a systematic analysis of various fingerprinting tools to create FPMON: a browser extension to measure and rate fingerprinting activity on any website in real-time. With FPMON, we evaluate the 10k most popular websites to i) study the pervasiveness of fingerprinting; ii) review the latest countermeasures; and iii) identify the networks that foster the use of fingerprinting. Our evaluations reveal that i) fingerprinters subvert privacy regulations; ii) they are present on privacy-sensitive websites (insurance, finances, NGOs); and iii) current countermeasures cannot sufficiently protect users. Hence, we publish FPMON as a free browser extension to empower users against this growing threat.","PeriodicalId":205601,"journal":{"name":"Proceedings of the 20th Workshop on Workshop on Privacy in the Electronic Society","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-10-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"6","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 20th Workshop on Workshop on Privacy in the Electronic Society","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3463676.3485599","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 6
Abstract
Tracking users is a ubiquitous practice on the web today. User activity is recorded and analyzed on a large scale to create personalized products, forecast future behavior, and prevent online fraud. While HTTP cookies have been the weapon of choice so far, new and more pervasive techniques such as browser fingerprinting are gaining traction. This paper describes how users can be empowered against fingerprinting by showing them when, how, and who is tracking them. To this end, we conduct a systematic analysis of various fingerprinting tools to create FPMON: a browser extension to measure and rate fingerprinting activity on any website in real-time. With FPMON, we evaluate the 10k most popular websites to i) study the pervasiveness of fingerprinting; ii) review the latest countermeasures; and iii) identify the networks that foster the use of fingerprinting. Our evaluations reveal that i) fingerprinters subvert privacy regulations; ii) they are present on privacy-sensitive websites (insurance, finances, NGOs); and iii) current countermeasures cannot sufficiently protect users. Hence, we publish FPMON as a free browser extension to empower users against this growing threat.