Veille de CCM Benchmark Group

Let's build a Chrome extension that steals everything

Today's adventure: DIY whole hog data exfiltration

Ahah ça change des articles sur comment protéger là c’est comment tout piquer mais très précis <mattfrisbie.substack.com>
By dam75 - - Javascript
Visiblement de grosses amélio

Visiblement de grosses améliorations pour que le fingerprint de chrome headless « ressemble » à celui de chrome normal ? >
Web Push for Web Apps on iOS and iPadOS

With iOS and iPadOS 16.4 beta 1 comes support for Web Push for Home Screen web apps, Badging API, Manifest ID, and more.

<webkit.org>
By xavierccm - - Javascript
By xavierccm - - Javascript
GitHub - editablejs/editable: Editable is a rich text editor framework that provides stable rich text editing capabilities without relying on the contenteditable attribute.

Editable is a rich text editor framework that provides stable rich text editing capabilities without relying on the contenteditable attribute. - GitHub - editablejs/editable: Editable is a rich tex...

<github.com>
By vgrebot - - Javascript
GitHub - apitable/apitable: ???????????? APITable, an API-oriented low-code platform for building collaborative apps and better than all other Airtable open-source alternatives. [WIP]

???????????? APITable, an API-oriented low-code platform for building collaborative apps and better than all other Airtable open-source alternatives. [WIP] - GitHub - apitable/apitable: ???????????? APITable, an AP...

Alternative open-source à Airtable <github.com>
By dam75 - - Javascript
Utiliser les hébergements sta

Utiliser les hébergements statiques pour y mettre du sqlite fetché sur http, malin! >
InboxSDK - Build Apps inside Gmail

The InboxSDK is high level Javascript library used to easily build browser extensions that interact with Gmail

Si on voulait développer une extension pour gmail ... <www.inboxsdk.com>
By dam75 - - Javascript
By vor - - Javascript
By vor - - Javascript
GitHub - ImVexed/muon: GPU based Electron on a diet

GPU based Electron on a diet. Contribute to ImVexed/muon development by creating an account on GitHub.

<github.com> le "GPU based Electron on a diet" (basé sur webkit)
By dam75 - - Javascript
AdGuard publishes the world's first ad blocker built on Manifest V3

Manifest V3, Chrome's new extension API, is no longer an illusory threat. It's now the new reality in which dozens of ad-blocking extensions, including the AdGuard Browser extension, will (or won't) work.

<adguard.com>
By mgradaive - - Javascript
Bun is a fast all-in-one JavaScript runtime

Bundle, transpile, install and run JavaScript & TypeScript projects – all in Bun. Bun is a new JavaScript runtime with a native bundler, transpiler, task runner and npm client built-in.

<bun.sh>
By mgradaive - - Javascript
The State of JS 2021

The 2021 edition of the annual survey about the latest trends in the JavaScript ecosystem.

<2021.stateofjs.com>
By vor - - Javascript
David Legrand on Twitter

“Mozilla évoque l’initiative sur laquelle elle a travaillé avec Meta (????) pour de l’attribution préservant la vie privée dans la publicité sans doute en réponse à celles d’Apple et Google : l’Interoperable Private Attribution (IPA) https://t.co/K5PcfxD

La réponse Mozilla et meta (?!) a la fin des cookies tiers sur la problématique de l’attribution <twitter.com>
By xavierccm - - Javascript
blog-nojs-fingerprint-demo/signal_sources.ts at master · fingerprintjs/blog-nojs-fingerprint-demo

A demo for the no-JavaScript fingerprinting article - blog-nojs-fingerprint-demo/signal_sources.ts at master · fingerprintjs/blog-nojs-fingerprint-demo

euh ça fait une jolie blague mais j'ai l'impression que ça va pas très loin. Genre tous les iphone 13 Pro configurés dans un pays (langue + variante géo de la langue) auront le même id. On peut voir <github.com|dans ce fichier> la liste des signaux utilisés, sans surprise ça ne va pas très loin vu les contraintes qu'ils se donnent.
By xavierccm - - Javascript
No-JS fingerprinting

This demo illustrates that fingerprinting is possible even without JavaScript and cookies

<noscriptfingerprint.com>
By vor - - Javascript
Google abandons FLoC, introduces Topics API to replace tracking cookies

Google claims Topics can help balance privacy vs. ads.

allez épisode suivant <www.theverge.com>
By mgradaive - - Javascript