this post was submitted on 29 Sep 2023
647 points (97.0% liked)

Privacy

29820 readers
2474 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 4 years ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 108 points 9 months ago* (last edited 9 months ago) (5 children)

I created an account while in the store with an email of [email protected] and a basic password and surprisingly didn't have to verify the email. Then turned on a VPN to my house.

I plan on just creating a new account every time I go in just to fill up their database with nonsense.

[–] DannyMac 35 points 9 months ago (2 children)
[–] glitch1985 28 points 9 months ago

It is not. You need to add a number at the end.

[–] hperrin 3 points 9 months ago

inhell.info is available and Postfix is a thing.

[–] geekworking 15 points 9 months ago* (last edited 9 months ago) (2 children)

You do realize that they are actually tracking the device itself by the hardware MAC address and other device fingerprints.

The email is just a bonus to let them legally spam you. Anti-spam laws have an exemption. If there's a prior business relationship like shopping in their stores, they can put you on their spam list unless you opt out.

Bogus email only helps for spam but doesn't do anything about tracking.

EDIT: For Android when there's a Captive Portal like the screen shot. devices will use Persistent randomization which while not the hardware MAC will remain the same for the same network where they can track your visits.

[–] [email protected] 29 points 9 months ago* (last edited 9 months ago) (2 children)

Pretty much all modern phones randomize the MAC address everytime they connect to a network unless the user explicitly says not to do that.

[–] [email protected] 6 points 9 months ago* (last edited 9 months ago)

randomize the MAC address everytime they connect to a network

+1, had issues using Android devices for presence detection because of this very useful privacy feature. Even on your home network, the MAC address and device hostname get randomized, unless disabled in the settings

Edit: typo

[–] geekworking 4 points 9 months ago (3 children)

When there's a Captive Portal like the screenshot, many devices use a random but persistent mac for that network avoid reauthorization after any network drop. This will make your access to the specific network trackable.

[–] wreckedcarzz 2 points 9 months ago (1 children)

chuckles in GrapheneOS

(per-connection random MAC, for all networks, by default)

[–] Molecular0079 3 points 9 months ago (1 children)

This is actually just part of stock Android. My Pixel 5 has MAC randomization on by default for new Wi-Fi networks.

[–] wreckedcarzz 2 points 9 months ago (1 children)

It's per-network, not per-connection. Though that option does exist but is hidden away under developer settings.

[–] Molecular0079 1 points 9 months ago (1 children)

Oh you mean like per TCP connection?

[–] wreckedcarzz 1 points 9 months ago

It's not at the packet level - by default on gOS (and a dev option on stock pixels), every time you connect to a network, even ones you have connected to prior, you get a new random MAC. The standard aosp/pixels do one random but persistent MAC randomization. This only helps marginally from a privacy standpoint. Per-connection makes this data point useless, thereby increasing privacy.

[–] [email protected] 2 points 9 months ago

But can't you go manually forget the network in your device network options to circumvent this?

[–] [email protected] 1 points 9 months ago

I'd assume after a certain amount of time or after moving far enough away from the network it "forgets" the last randomized MAC address?

It doesn't really make sense to store these things long term.

[–] [email protected] 4 points 9 months ago (1 children)

GrapheneOS let's me do a per-connection randomized MAC.

I'm sure they do collect a lot more about my device, but there's not much I can do about it short of wrapping my phone in tin foil.

[–] wreckedcarzz 3 points 9 months ago

Don't forget to disable wifi and bluetooth before approaching the store, as those give off unique identifiers too.

[–] [email protected] 9 points 9 months ago

This is the way. Fuck them.

[–] [email protected] 9 points 9 months ago* (last edited 9 months ago) (1 children)

Don't forget to spoof your MAC address so they cant see who is making the fake accounts ;D

[–] [email protected] 2 points 9 months ago

That's done automatically on mobile devices

[–] [email protected] 1 points 9 months ago

Not Walmart, not wifi but my default is @gfy.com