As IndexedDB is a low-level API, many developers choose to use wrappers that abstract most of the technicalities and provide an easier-to-use, more developer-friendly API. It’s supported in all major browsers and is very commonly used. IndexedDB is a browser API for client-side storage designed to hold significant amounts of data. A short introduction to the IndexedDB API Update (Wednesday January 26th 2022): Apple has released Safari 15.3 on iOS and macOS where this vulnerability has been fixed. The leak was reported to the WebKit Bug Tracker on Novemas bug 233548. We have also published a demo site to see the vulnerability in action: In this article, we discuss a software bug introduced in Safari 15’s implementation of the IndexedDB API that lets any website track your internet activity and even reveal your identity. To help fix it, we have submitted a bug report to the WebKit maintainers, created a live demo, and have made a public source code repository available to all. We believe that vulnerabilities like this one should be discussed in the open to help browsers fix them as quickly as possible. We focus on stopping fraud and support modern privacy trends for removing cross-site tracking entirely. DISCLAIMER: Fingerprint does not use this vulnerability in our products and does not provide cross-site tracking services.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. Archives
January 2023
Categories |