Apple’s new Private Relay is leaking your original address through WebRTC
old.reddit.com
old.reddit.com
Side note: tried to test it on my Mac but for some reason it wanted me to "upgrade" to iCloud+, despite being an Apple One customer. Guess that's because the macOS betas are fairly out of cycle compared to the iOS ones and (presumably) their infra.
I think you could make something really interesting. A web page could make a pretty unique fingerprint of you by all the IoT/Printers/$X devices on your network.
[0] https://github.com/rtcweb-wg/mdns-ice-candidates/issues/121
"Prevent WebRTC from leaking local IP addresses"
https://github.com/gorhill/uBlock/wiki/Prevent-WebRTC-from-l...
If I really need it I switch to Chromium.
And .local. is specified in multicast-dns: https://datatracker.ietf.org/doc/html/rfc6762
A somewhat on topic tangent:
I did a fair amount of tinkering with this after finding my manually defined `.local` dns entries wouldn’t work with Apple devices. Apple devices see such addresses as reserved for mDNS and will only look them up via mDNS.
To get everything working on my network, I ended up going down the rabbit hole of local DNS naming schemes. In the end I found I prefer the look and feel of `.lan`, so I live on the edge and make my custom DNS entries using that.
Some browsers think I’m searching for stuff when I type “hostname.lan”, but prefixing with http:// fixes that. Wherever I can I try to set up mDNS, though, since it just works and doesn’t require any central administration. Sadly, not all devices are customizable enough for me to use mDNS everywhere.
You can even get little travel routers that you can use when traveling. No affiliation, just pointing out something many don't even see as an option they have.
you don’t need specialized hardware to do this
But how can the browser even have your email? Or is Apple leaking in from their systems somehow?