Meta and Yandex are de-anonymizing Android users’ web browsing identifiers

arstechnica.comPublished: 6/3/2025

Summary

Meta and Yandex are embedding tracking code into millions of websites, potentially de-anonymizing users as Chrome exploits core security protocols like Android sandboxing to share data across apps. Researchers have found this attack vector allows linking vast browsing histories through cookies or user IDs despite measures designed to keep these interactions separate. Google is investigating the issue but risks remain significant as companies continue embedding such trackers without sufficient safeguards in place.