Firefox Fingerprinting using intermediate CA caching

General discussion and chat (archived)
Locked
dark_moon

Firefox Fingerprinting using intermediate CA caching

Post by dark_moon » 2017-02-23, 17:09

New browser capabilities and features are designed to improve the user experience or compatibility with technologies.
Sometimes, these features may also be used for shady activities such as user tracking.


Mozilla is aware of the issue but has not made a decision yet as to what to do about it. The organization plans to gather telemetry data on intermediate CA caching, especially how often it is useful to users.

http://www.ghacks.net/2017/02/22/firefo ... a-caching/

(The test doesnt start in Pale Moon with nativ useragent)

User avatar
Moonchild
Pale Moon guru
Pale Moon guru
Posts: 29251
Joined: 2011-08-28, 17:27
Location: Tranås, SE
Contact:

Re: Firefox Fingerprinting using intermediate CA caching

Post by Moonchild » 2017-02-23, 17:24

And not caching intermediate CA certs will allow fingerprinting to occur by other parties... with greater accuracy, since the browser will be forced to look up and verify certs each time you visit a site with the same intermediate. Not to mention it being slower and requiring many more connections.

So, it's going to happen no matter what you do, and I'm pretty sure caching certs is the lesser of two evils ;)
"Son, in life you do not fight battles because you expect to win, you fight them merely because they need to be fought." -- Snagglepuss
Image

dark_moon

Re: Firefox Fingerprinting using intermediate CA caching

Post by dark_moon » 2017-02-23, 18:15

Damn, i forget that.
Youre right

Locked