So I decided to use my really old pixel 3a as a test of sorts. It has calyxos, with always on VPN (surfshark). I have no accounts on it, google or anything else. I usually use it for streamio or tiktok.

But I have noticed that I am still getting video recommendations based on what my flatmate watches (we share an internet router). Or what I watch on my other non-VPNed devices.

So what gives?

I am looking for an explanation as to why its happening, not just how to fix it. Btw I also use private DNS so dns leaking is not the likely culprit.

Anyone knows how to debug this info leak?

  • Sophocles@infosec.pub
    link
    fedilink
    arrow-up
    8
    ·
    3 days ago

    I found that apps and browsers could fingerprint me with aspect ratio alone. For me it was DuckDuckGo giving me localized results; I’m pretty sure both apps and browsers can get this info very easily. I’m sure Tiktok can fingerprint your phone with very few information points, especially if it’s an app running on your phone, if not a simple website on your browser.

    You might be able to get around fingerprinting if you use a firefox fork like Iceraven or Fennec, install ublock origin and privacy badger, and browse via the website, but even there they may have enough information points to fingerprint you. Megacorps like TikTok and Meta bend over backwards to get your info