Close Menu
AI News TodayAI News Today

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    As the browser wars heat up, here are the hottest alternatives to Chrome and Safari in 2026

    Best Smart Home Gyms for 2026

    Qdrant TurboQuant Explained: Is TurboQuant the Silver Bullet?

    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AI News TodayAI News Today
    • Home
    • Shop
    • AI News
    • AI Reviews
    • AI Tools
    • AI Tutorials
    • Chatbots
    • Free AI Tools
    AI News TodayAI News Today
    Home»Chatbots»Websites have a new way to spy on visitors: analyzing their SSD activity
    Chatbots

    Websites have a new way to spy on visitors: analyzing their SSD activity

    By No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Image of a solid state drive.
    Share
    Facebook Twitter LinkedIn Pinterest Email

    While each file system is sandboxed, meaning it’s isolated from other websites and from the device system itself, the JavaScript can measure the I/O interactions. Then, by running those interactions through a pretrained convolutional neural network—a system that uses deep learning to analyze text, audio, and images—the attacker can deduce various apps and websites open on the device.

    “The attacker continuously measures SSD contention by performing random reads from a large OPFS file,” the researchers explained. “SSD contention caused by user activity causes measurable latency differences for these read operations. By training a convolutional neural network (CNN) on these traces, the attacker can fingerprint user activity on the host system by classifying new traces using the trained model.”

    The technique has its limitations. First, the OPFS file must be extremely large—likely a gigabyte or more. That requirement means that attacks at scale would inevitably be detected by many users. Additionally, the OPFS file must be stored on the same SSD the visitor is using. This isn’t usually a problem for tracking open websites, since the OPFS file is stored in the browser’s default location. In the event apps are using a separate SSD drive for apps, those apps couldn’t be detected by FROST.

    One of the best ways to prevent FROST attacks is to close tabs as soon as they’re no longer needed. More savvy users can monitor the creation and size of OPFS files allocated by unknown websites. The researchers proposed ways for browser makers to shut down the side channel. One such method is to limit the maximum size such files that are allowed. There are no indications FROST attacks have been performed in the wild.

    The researchers performed the full Frost attack on an M2 Mac. On Linux, they showed that the underlying primitive (measuring SSD access latency traces from JavaScript) works, but didn’t run the full attack.

    “However, since the performance of the primitive is similar between macOS and Linux, we expect similar performance for the full classification,” Hannes Weissteiner, one of the co-authors, wrote in an email. “In principle, it would be possible to train a model on any system activity that reliably generates SSD accesses.”

    The researchers did not test Windows.

    The paper linked above provides many more technical details. The research is scheduled to be presented at the DIMVA conference in July.

    activity Analyzing spy SSD Visitors websites
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleCalifornia defeats Tesla’s attempt to throw out racial discrimination lawsuit
    Next Article NordVPN’s New App Acts as an All-in-One Digital Privacy and Security Hub
    • Website

    Related Posts

    Chatbots

    This $300 pizza oven can easily help elevate your summer pizza nights

    Chatbots

    007 First Light is the James Bond game we’ve been waiting for

    Chatbots

    Grifters, cynics, and true believers: The family tree of vaccine opponents

    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    As the browser wars heat up, here are the hottest alternatives to Chrome and Safari in 2026

    0 Views

    Best Smart Home Gyms for 2026

    0 Views

    Qdrant TurboQuant Explained: Is TurboQuant the Silver Bullet?

    0 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    AI Tutorials

    Quantization from the ground up

    AI Tools

    David Sacks is done as AI czar — here’s what he’s doing instead

    AI Reviews

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    As the browser wars heat up, here are the hottest alternatives to Chrome and Safari in 2026

    0 Views

    Best Smart Home Gyms for 2026

    0 Views

    Qdrant TurboQuant Explained: Is TurboQuant the Silver Bullet?

    0 Views
    Our Picks

    Quantization from the ground up

    David Sacks is done as AI czar — here’s what he’s doing instead

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Terms & Conditions
    • Privacy Policy
    • Disclaimer

    © 2026 ainewstoday.co. All rights reserved. Designed by DD.

    Type above and press Enter to search. Press Esc to cancel.