Slashdot is powered by your submissions, so send in your scoop

 



Forgot your password?
typodupeerror
×
Chrome Firefox Google Microsoft Privacy Safari Apple

Edge Browser Scores Worst in Test of Telemetry Privacy (zdnet.com) 51

"New academic research published last month looked at the phone-home [telemetry] features of six of today's most popular browsers and found that the Brave browser sent the smallest amount of data about its users back to the browser maker's servers," reports ZDNet: The research, conducted by Douglas J. Leith, a professor at Trinity College at the University of Dublin, looked at Google Chrome, Mozilla Firefox, Apple Safari, Brave, Microsoft Edge (the new Chromium-based version), and the Yandex Browser.

"In the first (most private) group lies Brave, in the second Chrome, Firefox, and Safari, and in the third (least private) group lie Edge and Yandex...." [T]he professor found evidence that Chrome, Firefox, and Safari all tagged telemetry data with identifiers that were linked to each browser instance. These identifiers allowed Google, Mozilla, and Apple to track users across browser restarts, but also across browser reinstalls...

[T]he most intrusive phoning-home features were found in the new version of Microsoft Edge and the official Yandex Browser. According to Prof. Leith, both used unique identifiers that were linked to the device's hardware, rather than the browser installation. Tracking users by hardware allows Microsoft and Yandex to follow users across installations and potentially link browser installs with other apps and online identities. The professor said that Edge collected the hardware UUID of the user's computer, an identifier that cannot be easily changed or deleted without altering a computer's hardware. Similarly, Prof. Leith also found that Yandex transmitted a hash of the hardware serial number and MAC address to its backend servers.

"As far as we can tell this behaviour [in Edge and Yandex] cannot be disabled by users," the professor said.

The article also points out that Brave was the only browser that didn't use search autocomplete functionality to collect and send back information on a user's visited web pages. (Even though this can be disabled in Firefox, Chrome, and Safari, it's on by default.)

But Edge and Yandex "also sent back information about visited web pages that did not appear to be related to the search autocomplete feature, suggesting the browsers had other ways to track users' browsing habits."
This discussion has been archived. No new comments can be posted.

Edge Browser Scores Worst in Test of Telemetry Privacy

Comments Filter:
  • by LVSlushdat ( 854194 ) on Saturday March 07, 2020 @11:39AM (#59806124)

    Since this IS Microsoft we're talking about, this should NOT surprise ANY of us who understand Microsoft and its need to learn all there is to know about EVERYbody who uses their products.

    • by Anonymous Brave Guy ( 457657 ) on Saturday March 07, 2020 @11:44AM (#59806130)

      Edge originated as part of Windows 10, which is literally an operating system with spyware you can't disable (unless you have the high-end editions that normal people don't get to buy even if they want to). It's hardly a surprise to find its telemetry doing creepy things.

      • by JustAnotherOldGuy ( 4145623 ) on Saturday March 07, 2020 @02:00PM (#59806308) Journal

        I highly recommend "Debloater", which will strip out a lot of that crap (but probably not all of it).

        https://github.com/Sycnex/Wind... [github.com]

        It gets rid of a ton of shit (and registry keys, scheduled tasks, etc):

        3DBuilder, Appconnector, Bing Finance, Bing News, Bing Sports, Bing Weather, Fresh Paint, Get started, Microsoft Office Hub, Microsoft Solitaire Collection, Microsoft Sticky Notes, OneNote, OneConnect, People, Skype for Desktop, Alarms, Camera, Maps, Phone, SoundRecorder, XboxApp, Zune Music, Zune Video, Windows communications apps, Minecraft, PowerBI, Network Speed Test, Phone, Messaging, Office Sway, Windows Feedback Hub, Bing Food And Drink, Bing Travel, Bing Health And Fitness, Windows Reading List, Twitter, Pandora, Flipboard, Shazam, CandyCrush, CandyCrushSoda, King apps, iHeartRadio, Netflix, DrawboardPDF, PicsArt-PhotoStudio, FarmVille 2 Country Escape, TuneInRadio, Asphalt8, NYT Crossword, CyberLink MediaSuite Essentials, Facebook, Royal Revolt 2, Caesars Slots Free Casino, March of Empires, Phototastic Collage, Autodesk SketchBook, Duolingo, EclipseManager, ActiproSoftware, BioEnrollment, Windows Feedback, Xbox Game CallableUI, Xbox Identity Provider, and ContactSupport

        You can also use the OEM tool to generate a Win 10 ISO that contains what you want, and ONLY what you want. Here's one tutorial on doing it, but there are lots of others out there:

        https://searchenterprisedeskto... [techtarget.com]

        • by mspohr ( 589790 )

          Why not just install Linux?

          • Why not just install Linux?

            I did, I've been a happy Linux Mint user for 1 year, 3 months and 7 days (not that I'm counting). I'm never going back to Windows as my daily driver.

            But, on another PC I have to run a bit of software that only exists on Windows, so that's why I offered this advice. Sometimes you have no choice.

            • Why not just install Linux?

              I did, I've been a happy Linux Mint user for 1 year, 3 months and 7 days (not that I'm counting). I'm never going back to Windows as my daily driver.

              But, on another PC I have to run a bit of software that only exists on Windows, so that's why I offered this advice. Sometimes you have no choice.

              Happily into my 13th year. Started with DOS 1.0 kept with MS until the DRM in Win2K Pro bit me for doing something legal then began the "Linux Experiment". Currently using Netrunner Core.

          • Why not just install Linux?

            It's the games, stupid!

        • None of that has anything to dow the spy war services. That just removes preinstalled crap
          • None of that has anything to dow the spy war services.

            Where did I say that it did?

            Perhaps a reading comprehension course is in order for you.

        • Great post! Used this. Love the results!
          Bookmarked it for the future!

          Thanks!

      • by Anonymous Coward

        If you must use Windows 10, it's best to just pirate the enterprise LTSC version. Even better, try to get a hold of the Windows 10 China government edition as it's, ironically, the most privacy oriented version because the Chinese government forced Microsoft to strip out all telemetry. I have absolutely no guilt in pirating or recommending others to pirate anything by Microsoft after the supremely unethical shit they pulled with Windows 10.

        On topic, this privacy test would have been more useful with more br

    • So having installed and briefly used, then uninstalled including clearing browser history, the Edge Beta, should I presume that it left all of its tracking bits behind and active? Would be a reasonable presumption, but what are they and how could they be found?

      Then ... the *original* Edge wasn't a piker regarding data collection either. I used it mainly to download Firefox in a fresh Win10 install, then abandoned it.

      Corporate will probably still love Edgium. It has an IE mode - needed for a lot of internal

    • I wouldn't say that Microsoft does the data harvesting only to learn about its customers. I'd also say that Microsoft does the data harvesting because the customer data is a product that Microsoft can then sell to others.
    • I've been reading this site for a while. I don't think this is meant to be surprising to most of us here. It just serves as confirmation of what most around here suspected all along.

      The more surprising thing is that Chrome apparently doesn't do this, since Google is (rightfully) seen as being about as evil as Microsoft.

      And at least to some around here it would be surprising to learn that Yandex does this.
      Although I'm sure those people already have some kind of excuse why this is somehow completely ethi
      • by raymorris ( 2726007 ) on Saturday March 07, 2020 @01:22PM (#59806254) Journal

        > The more surprising thing is that Chrome apparently doesn't do this, since Google is (rightfully) seen as being about as evil as Microsoft.

        Google absolutely collects user data in order to target their ads. That is, of course, their business model.

        Microsoft has regularly practiced a dozen different kinds of evil.
        So they are similar only if the ONLY thing that matters to you is data collected.

        Even if *privacy* is the only thing that matters to you, one difference that led to Google's huge success is that they never sold the user data like other data-collecting companies did. The old model was that the companies which collected the data sold it to advertisers. Google changed that up by keeping the data to themselves and selling ads directly. So even on privacy alone, Google is better than Facebook, magazine publishers, etc etc.

    • by AHuxley ( 892839 )
      The ads must flow.
  • Some people use that browser. The Ugly:
    Some people use that browser.
  • Why doesn't the study publish the sites (IPs and/or domains) that the telemetry is being sent to? Seems like a simple enough task to block those sites at the router. Why is blocking data being sent from the browser, or Windows for that matter not something being widely done? Just asking ...
    • Such information would be subject to change at any time. I did try to block the Microsoft telemetry servers by IP once, years ago - but learned only that they are in close proximity to Windows update, Onedrive, Skype and something-to-do-with-Office servers. I'm guessing Microsoft hosts them all in the same infrastructure, and it's probably Azure.

    • Because users are dumb and would attempt to block those sites at the router. Just like those idiots who turn off Windows update wholesale and then complain that their computer is infected. Try blocking some Microsoft IPs and watch how much actually breaks on your computer so you can see just how silly that idea actually is.

  • Yes, it's very very very shocking that a product made by Microsoft is relentlessly tracking you and sending every bit of that sweet, sweet data it can scoop up back to people who want to sell it.

    Who could have imagined such a thing??

    But it is true that Edge is "the best pre-installed browser that you can use to download a better browser."

  • All very nice and interesting, but we all know that Web Browsers using their default configuration are absolute utter shitstorms.

    What would be useful is to a comparison *AFTER* all the user-accessible privacy and no-spying options are engaged.

    Userful information would be that there is NO WAY to configure Microsoft Edge to have ANY security or privacy whatsoever -- there are no user configurable parts at all.

    Chrome is almost completely unconfigurable, and the options that you can configure have absolutely ze

  • to download the duckduckgo or other browser.

    So any telemetry shows when i download a browser or when it sneakly opens itself for certain links or searches about once every 2 weeks. (not sure why/how it does that btw if you want to tell me how to suppress it entirely. I'm on win10)

  • What is the reason so many donâ(TM)t use it? How is chromium compared to brave for privacy?
  • So that you can buy child porn on the dorknet.

"If it ain't broke, don't fix it." - Bert Lantz

Working...