(I know many of you already know it but this incident I experienced made me so paranoid about using smartphones)
To start off, I’m not that deep into privacy rabbit hole but I do as much I can possibly to be private on my phone. But for the rest of phones in my family, I generally don’t care because they are not tech savvy and pushing them towards privacy would make their lives hard.
So, the other day I pirated a movie for my family and since it was on Netflix, it was a direct rip with full HD. I was explaining to my family how this looks so good as this is an direct rip off from the Netflix platform, and not a recording of a screening in a cinema hall(camrip). It was a small 2min discussion in my native language with only English words used are record, piracy and Netflix.
Later I walk off and open YouTube, and I see a 2 recommendations pop-up on my homepage, “How to record Netflix shows” & “Why can’t you screen record Netflix”. THE WHAT NOW. I felt insanely insecure as I was sure never in my life I looked this shit up and it was purely based on those words I just spoke 5min back.
I am pretty secure on my device afaik and pretty sure all the listening happened on other devices in my family. Later that day, I went and saw which all apps had microphone access, moved most of them to Ask everytime and disabled Google app which literally has all the permissions enabled.
Overall a scary and saddening experience as this might be happening to almost everyone and made me feel it the journey I took to privacy-focused, all worth it.
- A family member might have searched it
- An ad network might have reported on your piracy (especially now with privacy sandbox)
- Your media player might just be doing some tracking and/or insecure searching for metadata
- Siri or something might have popped open
- You googled to get to the piracy website
- You may have just looked up the movie, and the movie was popular with pirates
Don’t get too paranoid
Most likely the website you pirated your movies from stored cookies in your browser which then were picked up by Google/YouTube.
There is one more thing I haven’t mentioned here. The device where I pirated the movie is different and is on different Google account and my Google account on which I opened the YouTube was different.
You just mentioned 2 different Google accounts: if your devices are connected to Google accounts they are already getting a lot of information from you that way, and Google knows that those 2 accounts are related.
That’s absurd to think they link two different Google accounts and recommend stuff on YouTube. This is less believable than them listening to mic 24/7.
Also the device I pirated content on, has only one Google account registered.
Doesn’t matter, google is well known for tracking related accounts using a variety of methods - be it location data, connected IP, tracking cookies, device proximity, even things like usage habits, etc.
No, they don’t: https://www.youtube.com/watch?v=xtfU9AsUmc4
Again, no, they don’t: https://gizmodo.com/these-academics-spent-the-last-year-testing-whether-you-1826961188
If you don’t trust a 4 minute YouTube video or an independent (?) study, try a Reddit comment: https://www.reddit.com/r/Android/comments/q1u71q/comment/hfhynid/
A phone can notice when it’s in the hands of a security expert and start acting normal. Before dieselgate, Volkswagen cars had been emissions tested for years without finding anything suspicious. Turned out VW used the car’s sensors to detect when it was being tested.
correct.
the level of unsubstantiated cope in this thread is mind boggling. from people many of whom should honestly know better.
Listening to audio would be the least effective and most expensive method of data collection for advertisers. It’s not happening. They already have literally over a million data points on you, there’s nothing useful for them to glean from your audio that they don’t already have ad nauseum.
You see thousands of ads and recommendations every day. You finally found one that was relevant to you. It’s not that deep.
Anyone saying they know for 100% certain it’s not happening is probably speaking from their emotional desire for it not to be true - rather than actual fact.
Anyone who has looked into the actual technical aspects, rather than spouting the usual surface-level “tech facts” or parroting headlines (rather than the actual academic findings), cannot seriously claim to know for certain its 100% not happening.
@op i would advise caution on stating ‘24x7’ until there is evidence of that specific claim. (unless you’re referring to while voice assistants are enabled.)
I am surprised by the response I got from majority here. I thought the people who are privacy-focused, wouldn’t give the benefit of doubt to Google of all companies. But it isn’t the case here. Everyone here just assumes and believes strongly it isn’t technically not possible which is really the case when you look at the other services offered by Google.
@op i would advise caution on stating ‘24x7’ until there is evidence of that specific claim. (unless you’re referring to while voice assistants are enabled.)
Google app which is pre-installed is pretty a forced voice assistant on everyone on android.
I get your feeling :) Don’t worry the silent majority is on your side. However they won’t comment because they fear from being banned or backslashed…
While It can’t be proven or disapproved, I also had my share of strange coincidence where my mind goes “Huh? How is that even possible?”… Kinda strange feeling! But that feeling gave me the push to the privacy route maybe in a rather to extreme direction? Always follow your guts when there’s to much noise to make a clear decision.
- RethinkDNS (block every in/out request except those manually allowed)
- Degoogles android (Shizuku+canta, magisk, debloater)
- Only open source apps and delete everything else (no exceptions here) -…
You will never get full 100% privacy or anonymity, however you can make your data as much as difficult to get and waste some of their resource and time :).
Good luck !
Looks like the silent majority disagrees with you… Stop convincing yourself of things that aren’t true.
76 up’s / 68 down’s on OP’s post.
It’s very close, still the majority wins, that’s how it works, if not happy change the system not the voters.
Maybe not 24x7 but this did happened and people have reported it multiple times. If you really think those multi-billion dollars companies are not capable of or won’t do anything so sketchy because it’s not “worth it”, then it’s time to open your mind to the possibility that those companies are not your friends.
cos the majority in this thread cannot even read the articles they cite mistakenly thinking it supports their unscientific claims that this topic is decided.
afaict no researcher has formally claimed a full coverage binary analysis.
if you know of such a study please link?
afaict the researchers are very upfront about the limits to the coverage of their studies and the importance of that uncovered ground being covered.
when the researchers themselves are saying the work isn’t over. why are all the super geniuses in this thread so smugly announcing this topic is wrapped up?
i guess they know better than the actual researchers do. amazing, someone should tell them not to worry cos the geniuses in the forums have it all worked out 🤣
[if you’re unable to reply with a direct excerpt from actual formally issued research (not some pop media headline) i will not bother responding]
Hahaha… What a stupid take. Yeah scientific research isn’t biased and hasn’t been poisoned by conflict of interest… never has been and never will I guess? Scientific research is the ultimate truth of wisdom and you don’t need your own critical thinking anymore 😮💨 (Yeah the tobacco industry was right, smoking is healthy !)
when the researchers themselves are saying the work isn’t over. why are all the super geniuses in this thread so smugly announcing this topic is wrapped up?
It’s better to be safe than sorry
Edit:
Therefore, the fact that no evidence for large-scale mobile eavesdropping has been found so far should not be interpreted as an all-clear. It could only mean that it is difficult – under current circumstances perhaps even impossible – to detect such attacks effectively.
https://link.springer.com/chapter/10.1007/978-3-030-22479-0_6
Scientific enough?
Root your phone and degoogle it if it doesn’t have LineageOS image. If it does have LineageOS image, then flash it. Oh, and don’t use Google and YouTube. Use Brave/Vivaldi for web search and Tubular for YouTube.
I’ve seen a lot of people using Vivaldi as “private” browser. What is the point here?
Because it’s one of the few browsers on Android that allow you to put your address bar down
Firefox?
Firefox is okay but most websites break on it.
Most? Are you sure you didn’t install some extensions that break your browsing?
I meant on mobile. It’s the reason why I use Vivaldi on Android.
Still personally I’ve had very very few ones breaking, but I guess it depends on our browsing habits what we use the most. A report broken site function exists on desktop, but I think it’s still missing from mobile
Don’t get things for free! Ever! The producers aren’t rich enough yet to pay the artists a living wage for their creative work. Homeland will extra-judicially use weapon systems on you even if you don’t pirate because all it takes is false accusation and then you will be tortured and never allowed to reproduce anywhere in the US sphere of influence (or TPP or UN).