Meta and Yandex are de-anonymizing Android users’ web browsing identifiers
arstechnica.comPublished: 6/3/2025
Summary
Meta and Yandex are embedding tracking code into millions of websites, potentially de-anonymizing users as Chrome exploits core security protocols like Android sandboxing to share data across apps. Researchers have found this attack vector allows linking vast browsing histories through cookies or user IDs despite measures designed to keep these interactions separate. Google is investigating the issue but risks remain significant as companies continue embedding such trackers without sufficient safeguards in place.