11
submitted 2 weeks ago by beep@piefed.world to c/tech@piefed.world

You can read about it yourself here on page 12 (or page 8 of affidavit), then page 33 and down (page 29 of affidavit)

First one to notice this: Security researcher, VX-Underground.

you are viewing a single comment's thread
view the rest of the comments
[-] SirHaxalot@nord.pub 5 points 1 week ago

The question here is how they were able to tie the GDID to a whole bunch of different domain visits. This is not something that is usually sent with web requests, and is not something that a typical web server config would log or be able to correlate.

The most plausible explanation I’ve seen is that some telemetry service checked in over the VPN, allowing Microsoft to log GDID<->IP, and correlate the GDID with other check-ins, from his real IP. If the VPN provider maps one IP per customer/session this would create a quite high confidence link.

Or he did something exceptionally stupid like being signed into a Microsoft account with enabled web history syncing enabled. Which of course would allow them to tie history

Remember, no matter what the commercial VPN companies want you to believe, a VPN only encrypts content between two points and masks your IP. It does very little for privacy on its own as most tracking is done with cookies and other session tokens.

this post was submitted on 07 Jul 2026
11 points (100.0% liked)

Technology

94 readers
91 users here now

Blacklisted SitesList inspired by other community rules.

  • Mac Rumors;
  • Al Jazeera;
  • NBC;
  • CNBC;
  • Tom’s Hardware;
  • ZDNet;
  • TechSpot;
  • Ars Technica;
  • Engadget;
  • TechCrunch;
  • Gizmodo;
  • Futurism;
  • PCWorld;
  • ComputerWorld;
  • Mashable;
  • Fortune;
  • Hackaday;
  • WCCFTECH;
  • Neowin;
  • Jacobin;
  • Yahoo;
  • Freethink;
  • Big Think;
  • Newsweek.

Technology news, blogs and articles.

Forbidden:

founded 2 months ago
MODERATORS