[tor-bugs] #14098 [Tor Browser]: TBB still fingerprintable by screen size

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon Jan 26 08:20:06 UTC 2015


#14098: TBB still fingerprintable by screen size
-----------------------------+--------------------------------
     Reporter:  cypherpunks  |      Owner:  tbb-team
         Type:  defect       |     Status:  new
     Priority:  normal       |  Milestone:
    Component:  Tor Browser  |    Version:
   Resolution:               |   Keywords:  tbb-fingerprinting
Actual Points:               |  Parent ID:
       Points:               |
-----------------------------+--------------------------------

Comment (by gk):

 Replying to [comment:9 randybytes]:
 > Replying to [comment:6 mcs]:
 > >
 > > Access to properties within window.screen has been patched as well.
 Are you seeing a case where window.screen leaks the actual display
 dimensions or other info?
 >
 > > Are you seeing a case where window.screen leaks the actual display
 dimensions or other info?
 >
 > Yes, on the Tor Browser bundle 4.03 with windows 8.1 leaks the actual
 display dimensions:
 >
 > On https://panopticlick.eff.org it leaks:
 >
 > Screen Size and Color Depth: 1366x633x24
 >
 > which only 1 in 82820.68 browsers have this value.
 >
 > from the javascript console window.screen shows:
 >
 > Screen { availWidth: 1366, availHeight: 383, width: 1366, height: 383,
 colorDepth: 24, ...
 >
 > Thanks for replying, is their any diagnostic information that could
 help?

 Are you resizing/maximizing your browser window? If so, then this is the
 cause of the unusual screen size. Our defense is not working with
 resized/maximized windows yet.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/14098#comment:11>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list