I wrote a blog about Effective Web Tracking Methods that are still widely used in 2026.

  • ArcaneSlime@lemmy.dbzer0.com
    link
    fedilink
    arrow-up
    1
    ·
    1 day ago

    I mean, no matter how good your opsec is, you logging into your acct is handing them your identity on a silver platter. Like, you go to facebook using Tails with good opsec, the log in page doesn’t know who you are, but then you type “my@email.balls” and “hunter2” and it knows you’re either a hacker or you’re actually you, so they send you an email “blah blah been accessed from such and such IP/IMEI/etc” but unless you say “fuck no it wasn’t” then they’re like “alright, guess it’s him, add this to the list of tracking this guy’s shit.” It’s like, the guy at the liquor store doesn’t “know who you are” but then you pull out your ID and all of a sudden he does, “yeah, because you gave him your ID.”

    You’d need to create a new acct with fake details you haven’t previously used and a fresh email. Or just like, not sign in at all.

    • eldavi@lemmy.ml
      link
      fedilink
      English
      arrow-up
      1
      ·
      1 day ago

      you misunderstand, i didn’t provide any email or password; it automatically let me log into the account without any credential challenge like i had an active cached session already.

      but it did send me an email saying that i logged in from an unknown location, so go figure.

      • ArcaneSlime@lemmy.dbzer0.com
        link
        fedilink
        arrow-up
        1
        ·
        1 day ago

        Ah, I see. Had you ever logged in with that device before? Even if you’d reset it, you can’t reset the IMEI number (and apparently there’s a similar tracker on windows).

        • eldavi@lemmy.ml
          link
          fedilink
          English
          arrow-up
          2
          ·
          23 hours ago

          It’s a brand new device that I used for the first time and I think it happened because I was logged into several other things at the same time to test it.

          Instagram prompted me for the profile I wanted to use while in private mode and that was when I realized that I never provided the password.

            • eldavi@lemmy.ml
              link
              fedilink
              English
              arrow-up
              1
              ·
              10 hours ago

              that’s exactly my point – 3rd parties are sharing data w each other enabling tracking that defeats most opsec postures.

              • ArcaneSlime@lemmy.dbzer0.com
                link
                fedilink
                arrow-up
                1
                ·
                9 hours ago

                I mean, unless you avoid all the trackers, at least as much as possible. You can at least lessen it if you’re smart about it.