That attack requires continuously monitoring a given device or area though, right?
In other words, you could possibly track a given device through an area with enough sensors, e.g. a store, but not across visits.
In other words, you could possibly track a given device through an area with enough sensors, e.g. a store, but not across visits.
The "randomization" seems to be a pseudo-randomization: with the seed and the timestamp, you should be able to deduce the future "randomized" addresses.