A new web page demonstrates the extensive information browsers automatically transmit to websites, including device details, location data, and user preferences—all without explicit permission.
The site sinceyouarrived.world/taken displays information your browser shares by default, sparking discussion about privacy and transparency online.
Browsers automatically send metadata to web servers, including:
- Device specifications (OS, screen resolution, processor info)
- Location data (IP-based geolocation)
- User preferences (language, timezone, Do Not Track settings)
- Browser capabilities and plugins
- Referrer information
The demonstration has gained significant attention, with 242 points and 128 comments on Hacker News, indicating broader concern about browser-level data exposure.
While this data collection is technically disclosed in browser settings, most users remain unaware of what information leaves their devices automatically. Security researchers argue this highlights the gap between technical disclosure and user understanding of privacy implications.
The page serves as an educational tool for understanding fingerprinting techniques and the baseline data available to any website without additional tracking technologies.
Visa is enabling expired payment cards to continue processing contactless transactions through a new feature. The move allows cardholders to keep using their old cards for tap-to-pay purchases even after expiration.
A Texas-based student discovered and reported an unauthorized AI system being used for cyberattacks. The disclosure prompted immediate investigation and security responses from affected organizations.
Iranian cyber actors shut down a small UK power generation facility for four days, according to sources cited by The Telegraph. The incident coincides with a broader wave of attacks targeting US water utilities attributed to Iran-affiliated groups.
A supply-chain attack is exploiting legitimate device-update apps to infect Android-based car head units with malware. The compromised devices are being enlisted into proxy botnets or used for ad fraud schemes.