{"id":33343,"date":"2019-10-31T21:52:06","date_gmt":"2019-10-31T18:52:06","guid":{"rendered":"https:\/\/prohoster.info\/blog\/v-chrome-poyavitsya-zashhita-ot-peredachi-storonnih-cookie-i-skrytoj-identifikatsii\/"},"modified":"2019-10-31T21:52:06","modified_gmt":"2019-10-31T18:52:06","slug":"v-chrome-poyavitsya-zashhita-ot-peredachi-storonnih-cookie-i-skrytoj-identifikatsii","status":"publish","type":"post","link":"https:\/\/prohoster.info\/en\/blog\/news\/v-chrome-poyavitsya-zashhita-ot-peredachi-storonnih-cookie-i-skrytoj-identifikatsii","title":{"rendered":"Chrome will introduce protection against third-party Cookie transmission and hidden identification.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Google Inc. <noindex><a rel=\"nofollow\" href=\"https:\/\/blog.chromium.org\/2019\/05\/improving-privacy-and-security-on-web.html\">introduced<\/a><\/noindex> upcoming changes in Chrome aimed at enhancing privacy. The first part of the changes concerns cookie handling and support for the SameSite attribute. Starting with Chrome 76, expected in July, there will be <noindex><a rel=\"nofollow\" href=\"https:\/\/web.dev\/samesite-cookies-explained\/\">activated<\/a><\/noindex> The flag &#171;same-site-by-default-cookies&#187; will set the value &#171;SameSite=Lax&#187; by default in the absence of the SameSite attribute in the Set-Cookie header, restricting the sending of cookies for embeds from third-party sites (although sites can still override this restriction by explicitly setting the SameSite=None value when setting cookies).<\/p>\n<p>The attribute <noindex><a rel=\"nofollow\" href=\"https:\/\/tools.ietf.org\/html\/draft-ietf-httpbis-cookie-same-site-00\">SameSite<\/a><\/noindex> allows defining the situations in which cookie transmission is permissible when a request comes from a third-party site. Currently, the browser sends cookies on any request to the site for which cookies are set, even if a different site was originally opened, and the request is made indirectly through image loading or via iframe. Ad networks use this feature to track user movements between websites, while<br \/>\nattackers use it for organization <noindex><a rel=\"nofollow\" href=\"https:\/\/ru.wikipedia.org\/wiki\/%D0%9C%D0%B5%D0%B6%D1%81%D0%B0%D0%B9%D1%82%D0%BE%D0%B2%D0%B0%D1%8F_%D0%BF%D0%BE%D0%B4%D0%B4%D0%B5%D0%BB%D0%BA%D0%B0_%D0%B7%D0%B0%D0%BF%D1%80%D0%BE%D1%81%D0%B0\">the SameSite attribute specified in the Set-Cookie header is set to 'SameSite=Lax' by default in Chrome 76, which limits the sending of cookies for inserts from third-party sites, but sites can override this restriction by explicitly setting SameSite=None when installing cookies. The SameSite attribute can take two values: 'strict' or 'lax'. In 'strict' mode, cookies are prevented from being sent for any type of cross-site requests. In 'lax' mode, softer restrictions apply, blocking cookie transmission only for cross-site sub-requests, such as image requests or content loading via iframe.<\/a><\/noindex> (when opening a resource controlled by the attackers, a request is invisibly sent to another website where the current user is authenticated, and the user's browser sends session cookies for such a request). On the other hand, the ability to send cookies to third-party sites is used for embedding widgets on pages, for example, for integration with YouTube or Facebook.<\/p>\n<p>The SameSite attribute can control the behavior of cookies and allow them to be sent only in response to requests initiated from the site where those cookies were originally obtained. SameSite can take three values: &#171;Strict&#187;, &#171;Lax&#187;, and &#171;None&#187;. In \u2018Strict\u2019 mode, cookies are not sent for any type of cross-site requests, including all incoming links from external sites. In \u2018Lax\u2019 mode, more lenient restrictions apply, and cookie transmission is blocked only for cross-site subrequests, such as image requests or content loading via iframe. The difference between \u2018Strict\u2019 and \u2018Lax\u2019 lies in blocking cookies when clicking links.<\/p>\n<p>Other upcoming changes also include the implementation of strict restrictions prohibiting the processing of third-party cookies for non-HTTPS requests (with the SameSite=None attribute, cookies can only be set in Secure mode). Additionally, work is planned to protect against hidden identification (\u2018browser fingerprinting\u2019), including methods for generating identifiers based on indirect data, such as  <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=46046\">screen resolution<\/a><\/noindex>, a list of supported MIME types, specific parameters in headers (<noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=47821\">HTTP\/2<\/a><\/noindex> and <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=42943\">HTTPS<\/a><\/noindex>), analysis of installed <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=26635\">plugins and fonts<\/a><\/noindex>, availability of certain Web APIs specific to graphics cards <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=48736\">Features<\/a><\/noindex> rendering using WebGL and Canvas, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=47902\">Manipulations<\/a><\/noindex> with CSS, analyzing the peculiarities of working with <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=44027\">mouse<\/a><\/noindex> and <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=42685\">keyboard<\/a><\/noindex>.<\/p>\n<p>Additionally, in Chrome <noindex><a rel=\"nofollow\" href=\"https:\/\/groups.google.com\/a\/chromium.org\/forum\/?#!msg\/blink-dev\/T8d4_BRb2xQ\/WSdOiOFcBAAJ\">support for GeForce 20 (TU10x) series graphics cards will be added. The corresponding driver was developed by Ben Skeggs from the Nouveau project. Unfortunately, GeForce 16 (TU11x) will remain \"on the sidelines\" for now. Nvidia has not provided the firmware images needed to initialize the card. Additionally, new graphics cards may encounter performance issues under Linux due to the lack of reclocking \u2014 automatic frequency management. In the past, it was found that Nouveau drivers<\/a><\/noindex> protection against abuses related to hindering the return to the original page after navigating to another site. This refers to the practice of cluttering the transition history with a series of automatic redirects or artificially adding fake entries to the browsing history (via pushState), resulting in users being unable to use the &#171;Back&#187; button to return to the original page after an accidental transition or forced redirect to a fraudulent or malicious site. To protect against such manipulations, Chrome will skip entries related to automatic redirects and manipulation of visit history in the Back button handler, leaving only pages opened as a result of explicit user actions.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Source: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=50661\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Google \u043f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u0438\u043b\u0430 \u0433\u0440\u044f\u0434\u0443\u0449\u0438\u0435 \u0438\u0437\u043c\u0435\u043d\u0435\u043d\u0438\u044f \u0432 Chrome, \u043d\u0430\u0446\u0435\u043b\u0435\u043d\u043d\u044b\u0435 \u043d\u0430 \u043f\u043e\u0432\u044b\u0448\u0435\u043d\u0438\u0435 \u043a\u043e\u043d\u0444\u0438\u0434\u0435\u043d\u0446\u0438\u0430\u043b\u044c\u043d\u043e\u0441\u0442\u0438. \u041f\u0435\u0440\u0432\u0430\u044f \u0447\u0430\u0441\u0442\u044c \u0438\u0437\u043c\u0435\u043d\u0435\u043d\u0438\u0439 \u043a\u0430\u0441\u0430\u0435\u0442\u0441\u044f \u043e\u0431\u0440\u0430\u0431\u043e\u0442\u043a\u0438 Cookie \u0438 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u043a\u0438 \u0430\u0442\u0440\u0438\u0431\u0443\u0442\u0430 SameSite. \u041d\u0430\u0447\u0438\u043d\u0430\u044f \u0441 \u0432\u044b\u043f\u0443\u0441\u043a\u0430 Chrome 76, \u043e\u0436\u0438\u0434\u0430\u0435\u043c\u043e\u0433\u043e \u0432 \u0438\u044e\u043b\u0435, \u0431\u0443\u0434\u0435\u0442 \u0430\u043a\u0442\u0438\u0432\u0438\u0440\u043e\u0432\u0430\u043d \u0444\u043b\u0430\u0433 &#171;same-site-by-default-cookies&#187;, \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u0432 \u0441\u043b\u0443\u0447\u0430\u0435 \u043e\u0442\u0441\u0443\u0442\u0441\u0442\u0432\u0438\u0435 \u0430\u0442\u0440\u0438\u0431\u0443\u0442\u0430 SameSite \u0432 \u0437\u0430\u0433\u043e\u043b\u043e\u0432\u043a\u0435 Set-Cookie \u043f\u043e \u0443\u043c\u043e\u043b\u0447\u0430\u043d\u0438\u044e \u0431\u0443\u0434\u0435\u0442 \u0432\u044b\u0441\u0442\u0430\u0432\u043b\u044f\u0442\u044c \u0437\u043d\u0430\u0447\u0435\u043d\u0438\u0435 &#171;SameSite=Lax&#187;, \u043e\u0433\u0440\u0430\u043d\u0438\u0447\u0438\u0432\u0430\u044e\u0449\u0435\u0435 \u043e\u0442\u043f\u0440\u0430\u0432\u043a\u0443 Cookie \u0434\u043b\u044f \u0432\u0441\u0442\u0430\u0432\u043a\u043e\u043a \u0441\u043e \u0441\u0442\u043e\u0440\u043e\u043d\u043d\u0438\u0445 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-33343","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Google \u043f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u0438\u043b\u0430 \u0433\u0440\u044f\u0434\u0443\u0449\u0438\u0435 \u0438\u0437\u043c\u0435\u043d\u0435\u043d\u0438\u044f \u0432 Chrome, \u043d\u0430\u0446\u0435\u043b\u0435\u043d\u043d\u044b\u0435 \u043d\u0430 \u043f\u043e\u0432\u044b\u0448\u0435\u043d\u0438\u0435.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/en\/blog\/news\/v-chrome-poyavitsya-zashhita-ot-peredachi-storonnih-cookie-i-skrytoj-identifikatsii\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0412 Chrome \u043f\u043e\u044f\u0432\u0438\u0442\u0441\u044f \u0437\u0430\u0449\u0438\u0442\u0430 \u043e\u0442 \u043f\u0435\u0440\u0435\u0434\u0430\u0447\u0438 \u0441\u0442\u043e\u0440\u043e\u043d\u043d\u0438\u0445 Cookie \u0438 \u0441\u043a\u0440\u044b\u0442\u043e\u0439 \u0438\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0446\u0438\u0438 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Google \u043f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u0438\u043b\u0430 \u0433\u0440\u044f\u0434\u0443\u0449\u0438\u0435 \u0438\u0437\u043c\u0435\u043d\u0435\u043d\u0438\u044f \u0432 Chrome, \u043d\u0430\u0446\u0435\u043b\u0435\u043d\u043d\u044b\u0435 \u043d\u0430 \u043f\u043e\u0432\u044b\u0448\u0435\u043d\u0438\u0435.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/en\/blog\/news\/v-chrome-poyavitsya-zashhita-ot-peredachi-storonnih-cookie-i-skrytoj-identifikatsii\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2019-10-31T18:52:06+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2019-10-31T18:52:06+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Chrome will introduce protection against the transmission of third-party Cookies and hidden identification | ProHoster","description":"Google has announced upcoming changes in Chrome aimed at enhancing security.","canonical_url":"https:\/\/prohoster.info\/en\/blog\/news\/v-chrome-poyavitsya-zashhita-ot-peredachi-storonnih-cookie-i-skrytoj-identifikatsii","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"en_US","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0412 Chrome \u043f\u043e\u044f\u0432\u0438\u0442\u0441\u044f \u0437\u0430\u0449\u0438\u0442\u0430 \u043e\u0442 \u043f\u0435\u0440\u0435\u0434\u0430\u0447\u0438 \u0441\u0442\u043e\u0440\u043e\u043d\u043d\u0438\u0445 Cookie \u0438 \u0441\u043a\u0440\u044b\u0442\u043e\u0439 \u0438\u0434\u0435\u043d\u0442\u0438\u0444\u0438\u043a\u0430\u0446\u0438\u0438 | ProHoster","og:description":"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Google \u043f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u0438\u043b\u0430 \u0433\u0440\u044f\u0434\u0443\u0449\u0438\u0435 \u0438\u0437\u043c\u0435\u043d\u0435\u043d\u0438\u044f \u0432 Chrome, \u043d\u0430\u0446\u0435\u043b\u0435\u043d\u043d\u044b\u0435 \u043d\u0430 \u043f\u043e\u0432\u044b\u0448\u0435\u043d\u0438\u0435.","og:url":"https:\/\/prohoster.info\/en\/blog\/news\/v-chrome-poyavitsya-zashhita-ot-peredachi-storonnih-cookie-i-skrytoj-identifikatsii","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2019-10-31T18:52:06+00:00","article:modified_time":"2019-10-31T18:52:06+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"33343","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-01-21 14:52:19","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-03-01 02:42:23","updated":"2026-01-21 14:52:19","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/33343","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/comments?post=33343"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/33343\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/media?parent=33343"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/categories?post=33343"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/tags?post=33343"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}