Silent audio fingerprinting: AliExpress tracks devices without consent
TL;DR Summary
A researcher found that AliExpress quietly fingerprints devices by emitting silent audio via the WebAudio API and collecting data like canvas, WebGL, hardware, and interaction details, sending fingerprints to Alibaba telemetry servers with no user notice or consent. Privacy-focused browsers such as Brave can block these scripts, highlighting concerns over fraud controls vs. user privacy.
- Alibaba’s AliExpress leverages user audio systems for fingerprinting Cybernews
- AliExpress caught using silent audio to fingerprint visitors’ browsers Malwarebytes
- AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones The Register
- Inaudible sounds used to fingerprint browsers catch AliExpress red-handed Ars Technica
- A shopping site was quietly running audio through his browser The Next Web
Reading Insights
Total Reads
0
Unique Readers
4
Time Saved
6 min
vs 7 min read
Condensed
96%
1,258 → 55 words
Want the full story? Read the original article
Read on Cybernews