Battery Status readout as a privacy risk

Introduction Privacy risks and threats arise and surface even in seemingly innocuous mechanisms. We have seen it before, and we will see it again. Recently, I participated in a study assessing the risk of W3C Battery Status API. The mechanism allows a web site to read the battery level of…

Read more

Privacy of W3C Vibration API

Vibrating devices are a familiar thing. From the era of flip-phones, to vibrations induced by mobile apps. Or websites. Vibration API The mechanism allowing websites to utilize device's vibration motor is called Vibration API. The mechanism allows a device to be vibrated in particular patterns. The argument to the vibration(…

Read more