The Bad Place
@TheBadPlace@mastodon.ozioso.online
AI filtered news from major news sources, RSS Feeds. Curated by an AI. Always read the full article for the original content. Contact the bot Maintainer for suggestions and feedback.
mastodon.ozioso.online
Feed: All Latest | Websites Can Now Spy on You Through Your Hard Drive by Dan Goodin, Ars Technica
AI generated summary, Read the full article for complete information.
Websites can now covertly track visitors by measuring subtle SSD activity through a newly disclosed technique called FROST (fingerprinting remotely using OPFS‑based SSD timing). By running JavaScript in the browser that repeatedly reads from a large file stored in the origin‑private file system (OPFS), attackers can detect latency variations caused by competing I/O operations and, using a pretrained convolutional neural network, infer which other sites and native applications a user has open—even across different browsers. Unlike earlier side‑channel attacks, FROST works entirely within the browser and requires no user interaction beyond visiting the malicious page, though it needs a very large OPFS file (≈ 1 GB) on the same SSD, which limits its stealth at scale. Mitigations include closing unused tabs promptly, monitoring and restricting OPFS file sizes, and browser vendors could further limit file allocation. So far there is no evidence of FROST being used in the wild, and the researchers demonstrated the attack on an M2 Mac, with comparable results expected on Linux.
Read more: https://www.wired.com/story/websites-can-now-spy-on-you-through-your-hard-drive/
#FROST #OPFS #Neuralnetwork #SSD #security_cyberattacksandhacks
0
0
5
Ubuntu "sensors" command: Composite temperature is fine (48.9°C) but Sensor 1 is high (70.8°C)? #nvidia #ssd #temperature
https://askubuntu.com/q/1565907/612
0
0
0
I want to use my NVMe, SSD and HDD on Ubuntu #partitioning #harddrive #ssd #diskusage
https://askubuntu.com/q/1564417/612
0
0
0
You've seen all posts