Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Strategists weigh in on Treasury 2-year yield spike post-Fed

    June 18, 2026

    European stocks ease as markets digest hawkish Fed

    June 18, 2026

    Towers once planned for California shuttle launches leveled for SpaceX rockets

    June 18, 2026
    Facebook X (Twitter) Instagram
    Addison Markets
    • Home
    • USA
    • Europe
    • Business
    • Investing
    • Tech
    • Politics
    • Contact Us
    Addison Markets
    Home»Tech»Websites have a new way to spy on visitors: analyzing their SSD activity
    Tech

    Websites have a new way to spy on visitors: analyzing their SSD activity

    franperez66q@protonmail.comBy franperez66q@protonmail.comMay 28, 2026No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email



    While each file system is sandboxed, meaning it’s isolated from other websites and from the device system itself, the JavaScript can measure the I/O interactions. Then, by running those interactions through a pretrained convolutional neural network—a system that uses deep learning to analyze text, audio, and images—the attacker can deduce various apps and websites open on the device.

    “The attacker continuously measures SSD contention by performing random reads from a large OPFS file,” the researchers explained. “SSD contention caused by user activity causes measurable latency differences for these read operations. By training a convolutional neural network (CNN) on these traces, the attacker can fingerprint user activity on the host system by classifying new traces using the trained model.”

    The technique has its limitations. First, the OPFS file must be extremely large—likely a gigabyte or more. That requirement means that attacks at scale would inevitably be detected by many users. Additionally, the OPFS file must be stored on the same SSD the visitor is using. This isn’t usually a problem for tracking open websites, since the OPFS file is stored in the browser’s default location. In the event apps are using a separate SSD drive for apps, those apps couldn’t be detected by FROST.

    One of the best ways to prevent FROST attacks is to close tabs as soon as they’re no longer needed. More savvy users can monitor the creation and size of OPFS files allocated by unknown websites. The researchers proposed ways for browser makers to shut down the side channel. One such method is to limit the maximum size such files that are allowed. There are no indications FROST attacks have been performed in the wild.

    The researchers performed the full Frost attack on an M2 Mac. On Linux, they showed that the underlying primitive (measuring SSD access latency traces from JavaScript) works, but didn’t run the full attack.

    “However, since the performance of the primitive is similar between macOS and Linux, we expect similar performance for the full classification,” Hannes Weissteiner, one of the co-authors, wrote in an email. “In principle, it would be possible to train a model on any system activity that reliably generates SSD accesses.”

    The researchers did not test Windows.

    The paper linked above provides many more technical details. The research is scheduled to be presented at the DIMVA conference in July.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    franperez66q@protonmail.com
    • Website

    Related Posts

    Towers once planned for California shuttle launches leveled for SpaceX rockets

    June 18, 2026

    “Dangerous” AI models are coming no matter what

    June 18, 2026

    The Slate Truck’s price may have leaked, starts at $24,950

    June 18, 2026

    Tesco moving 40,000 server workloads off VMware amid Broadcom’s “abusive conduct”

    June 18, 2026

    Massive breach spills credentials for thousands of sensitive networks

    June 18, 2026

    California says AT&T lied to FCC in attempt to shut off old phone network

    June 18, 2026
    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    Strategists weigh in on Treasury 2-year yield spike post-Fed

    June 18, 2026

    European stocks ease as markets digest hawkish Fed

    June 18, 2026

    Towers once planned for California shuttle launches leveled for SpaceX rockets

    June 18, 2026

    People starting new jobs at lowest level in five years

    June 18, 2026
    © 2026 All right reserved
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.