Rate limit gyroscope sampling frequency on FF mobile
By the time we get around to an official mobile port, we should double-check that Mozilla has reduced the sampling rate of the gyroscope on Android: http://crypto.stanford.edu/gyrophone/files/gyromic.pdf
Activity
-
Newest first Oldest first
-
Show all activity Show comments only Show history only
- Mike Perry added component::applications/tor browser in Legacy / Trac owner::tbb-team in Legacy / Trac priority::medium in Legacy / Trac severity::normal in Legacy / Trac status::new in Legacy / Trac tbb-fingerprinting in Legacy / Trac tbb-mobile in Legacy / Trac tbb-security in Legacy / Trac type::defect in Legacy / Trac labels
added component::applications/tor browser in Legacy / Trac owner::tbb-team in Legacy / Trac priority::medium in Legacy / Trac severity::normal in Legacy / Trac status::new in Legacy / Trac tbb-fingerprinting in Legacy / Trac tbb-mobile in Legacy / Trac tbb-security in Legacy / Trac type::defect in Legacy / Trac labels
- Developer
Trac:
Cc: N/A to gk - Developer
Trac:
Reviewer: N/A to N/A
Sponsor: N/A to N/A
Severity: N/A to Normal
Cc: gk to gk, amoghbl1
Keywords: N/A deleted, tbb-mobile added Trac:
Username: tokotoko
Cc: gk, amoghbl1 to gk, amoghbl1, fdsfgs@krutt.orgTrac:
Parent: N/A to legacy/trac#25703 (moved)- Developer
Trac:
Parent: legacy/trac#25703 (moved) to N/A - Developer
Trac:
Keywords: N/A deleted, tbb-fingerprinting added - Georg Koppen mentioned in issue legacy/trac#31084 (moved)
mentioned in issue legacy/trac#31084 (moved)
- Trac moved from legacy/trac#13367 (moved)
moved from legacy/trac#13367 (moved)
- Trac added Android Fingerprinting + 1 deleted label and removed 1 deleted label
added Android Fingerprinting + 1 deleted label and removed 1 deleted label
@sysrqb this should move to https://gitlab.torproject.org/tpo/applications/fenix/-/issues
- Georg Koppen moved from #13367 (moved)
moved from #13367 (moved)
- MDN Sensor API
- bugzilla 1425130 Sensor API exposes a High-Res timestamp
- bugzilla 1562290 Need a mechanism to limit gyroscope
current defaults, both desktop and mobile
device.sensors.* - ambientLight.enabled ; false // devicelight (false since FF62) - enabled ; true - motion.enabled ; true - orientation.enabled ; true - proximity.enabled ; false // userproximity and deviceproximity (false since FF62) - test.events ; false // FF70+
Edited by ThorinCollapse replies current defaults, both desktop and mobile
Did you look at how
resistFingerprinting
affects the output? I haven't looked at the implementation, but Mozilla thinks this results are protected (in some way) from fingerprinting:1369319: no, I haven't tested if it works
https://www1.w3c-test.org/gyroscope/Gyroscope.https.html ( and also https://codepen.io/beacrea/pen/Kkqwu )
- doesn't do anything for me with or without RFP:
3
Fail16
Not Run (Fenix nightly) - yes my phone has a working gyro etc (tested with an app)
Edited by Thorin- doesn't do anything for me with or without RFP:
Feb 2020 paper: PDF: https://www.ndss-symposium.org/wp-content/uploads/2020/02/24076-paper.pdf
AccelEve, a new side-channel attack that employs a smartphone’s accelerometer to eavesdrop on the speaker in the same smartphone
- Gaba added 1 deleted label
added 1 deleted label
- Gaba removed 1 deleted label
removed 1 deleted label
- Gaba added Roadmap::Future label and removed Backlog label
added Roadmap::Future label and removed Backlog label