Lokacin tattaunawa
Kan X-Client-Bayanai ba boyayyen aiki bane kuma halinsa shine
Rubuta
An bayyana taken don ƙunshe da babu wani bayani da za a iya gane kansa kuma yana bayyana kawai matsayin shigarwar Chrome da fa'idodin gwaji masu aiki. Idan mai amfani da na'ura mai ba da hanya tsakanin hanyoyin sadarwa da kuma rahoton faɗuwa an kashe su a cikin saituna, samar da tushen ƙimar taken X-Client-Data yana amfani da rago 13 na entropy kawai (haɗin 8000 daban-daban), wanda bai isa ba don ganowa.
Ganin cewa taken kuma yana ɓoye wasu saitunan tsarin da sigogi, a ƙarshe abubuwan da ke cikin X-Client-Data sun dace sosai azaman ƙarin tushen bayanai don gano mai amfani kai tsaye a cikin ɗan gajeren lokaci (ana kunna ƙarfin gwaji da naƙasa akan lokaci, wanda ke haifar da canjin ƙima na lokaci-lokaci a cikin bayanan-Client-X).
Koyaya, ban da entropy na farko, lokacin samar da ƙimar X-Client-Data, akwai kuma jerin iri da sabobin Google suka dawo kuma ya danganta da ƙasar, adireshin IP da sauran sharuɗɗan da Google ke ɗauka suna da mahimmanci (misali, babu abin da ke hanawa. ku daga dawo da babban jerin bazuwar , wanda zai zama ainihin mai ganowa).
Bugu da kari, dubawa ta amfani da abin rufe fuska na Google lokacin aika bayanan-Client-X baya keɓance yanayin da maharin zai iya yin rajistar yanki kamar "youtube.xn--55qx5d" kuma ya fara tattara abubuwan ganowa.
source: budenet.ru