Panopticlick
panopticlick.eff.org
panopticlick.eff.org
Looking at just Java plugins, and the number of releases, you could also in theory age a browser, on how long it's been operational on how far back in versions of a plugin the browser maintains.
Who is using this type of profiling as an alternative to cookies and other techniques? I would love to see some examples.
Kind of terrifying, really.
Creepy that sites can query this info so easily, though I suppose I shouldn't be surprised.
"Your browser fingerprint appears to be unique among the 48,820 tested so far."
"Currently, we estimate that your browser has a fingerprint that conveys at least 15.58 bits of identifying information."
Some formulae and explanation over here: https://www.eff.org/deeplinks/2010/01/primer-information-the...
Thus an easy workaround would be to use a plugin that randomizes all this, which turns your one unique identity into many unique identities.
Browser sniffing simply doesn't work and only brings you pain. Enough so that jquery abandoned the practice a year ago; http://docs.jquery.com/Release:jQuery_1.3
But here's a surprise. My UserAgent string is for the version of Firefox distributed three weeks ago as a security patch to Ubuntu Linux 9.10. One in 45.01 browsers has that exact rev. of Firefox.
So over 2% of EFF visitors are running this exact version of Firefox and Ubuntu Linux? That's much more popular than expected.
I do. Best programming font ever.
Your browser fingerprint appears to be unique among the 71,124 tested so far.
Enabled Private Browsing:
Within our dataset of about ten thousand visitors, only one in 36,313 browsers have the same fingerprint as yours.
A few minutes later public browsing:
Within our dataset of about ten thousand visitors, only one in 18,187 browsers have the same fingerprint as yours.
How did they go from 70k to 10k? WTF EFF?
[Edit] Now that I tested again with two of the browsers I am using, both browsers were labelled as unique :S
Browsers are Epiphany with Webkit-backend and Firefox, both on 64-bit Gentoo Linux.
It's probably Flash that ruins it for people. Allowing a per-machine cookie and identifying itself as such.
What I'm curious about is what the current state of cookie and user click stream sharing among analytics/advertising companies is. What proportion of my browsing history is known to any given company, and what proportion given collusion? Are there any studies on this?
Seriously, this is brilliant. Even with cookies off, it'll work. NoScript should still block it though.
System fonts are a very telling fingerprint, though. I tried the test on two browsers; the first time it said I was one in ~60k, the second time was one in ~30k. So it is working.