More details on the linked Mastodon post

  • Kissaki@programming.dev
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    17 hours ago

    Is this about/a problem with iOS or Android or both? The linked post only talks about iOS.

    I’m surprised they can include remote requests [by consequence of remote URLs] in notifications.

    • 4am@lemmy.zip
      link
      fedilink
      arrow-up
      9
      arrow-down
      1
      ·
      1 day ago

      Push notifications go through Apple servers.

      HTTP GET request comes from the device loading the image; AFAIK though wouldn’t be a big deal if Apple’s servers loaded and cached it.

      So Meta can watch for the GET requests and determine:

      • time of delivery to device
      • approximate location of the device
      • device’s IP, used to correlate other activity done on that device gathered elsewhere by the IG/FB tracking network

      And derive:

      • what kind of connection you are using
      • from where
      • when
      • what time of day and location do you most often read IG
      • optimal time to try and distract you
      • who your preferred service carriers are and if/when you change them
      • how often you deviate from this pattern
      • through correlation, determine what deviation might be significant based on other data collected from your device or nearby devices at the same time
      • oh wow so and so didn’t look at IG much because they searched for baby clothes are they pregnant? Is a friend? Can we show more ads based on that angle to get sales?
      • and other, much more devious, much grosser intrusions
      • they get more sales from oblivious users
      • they grow their panopticon
      • Suspiciousbrowsing@kbin.melroy.org
        link
        fedilink
        arrow-up
        2
        ·
        1 day ago

        For your top 3 dot points, I still don’t quite understand why they wouldn’t already have that information if you’re using the app and they’re sending push notifications anyway.

    • ReversalHatchery@beehaw.org
      link
      fedilink
      arrow-up
      10
      ·
      1 day ago

      I think the point is they get to know the exact time you first see the notification. It’s a massive flaw in the OS, and I believe I have read about this years ago already, so that “privacy OS” is not intending to fix this leak

  • KSP Atlas@sopuli.xyz
    link
    fedilink
    arrow-up
    2
    ·
    1 day ago

    Wasn’t there a trick to abuse discord image caching and cloudflare caching to allow finding the approximate location of a user using a notification?

  • DrWorm@piefed.social
    link
    fedilink
    English
    arrow-up
    7
    ·
    2 days ago

    Stop using the native app. Use the web app.

    If you want to stop being addicted to Facebook or instagram, this is an effective way to do it. The web apps suck so much, it takes away all the “fun”

    • BurntWits@sh.itjust.works
      link
      fedilink
      arrow-up
      2
      ·
      1 day ago

      I was addicted to scrolling instagram and would go for hours on end, it was pretty bad. I still wanted to have access just to keep up on a couple accounts I care about but I didn’t want to be doom scrolling, so I removed the app from my home screen and replaced it with my lemmy client so anytime I would instinctively open it without thinking I’d open lemmy instead, which I find less addicting. I still doom scroll a little but not nearly as bad.

      I’ll eventually be deleting all social media but there’s a couple people I only have on instagram or facebook messenger who I don’t want to lose contact with. But for anyone struggling with just auto opening an app and doom scrolling without thinking, maybe remove the icon from your home screen and replace it with something less addicting.