Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The Forbes piece just seems to be a restatement of this story, which is deeper though still a little on the alarmist side: https://www.theregister.co.uk/2020/02/20/chrome_deploys_deep...

Is there a serious discussion of the privacy implications of this feature somewhere we can read instead? I'm not completely understanding the scenario. The one given is that you can probe a page for text (e.g. "cancer" in the example) by looking at resources requested. But doing that naively seems to require access to the unencrypted HTTP traffic between the endpoints, which would give you that data anyway.

What's the actual attack vector here?



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: