TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

The Yandex leak: How a Russian search giant uses consumer data

199 点作者 jdangu将近 2 年前

20 条评论

whywhywhywhy将近 2 年前
&gt;Do we want, at a time when Russia is considering the UK as an enemy, to be providing all our personal details to a server in Moscow?<p>Depends how good the search is. Google doesn’t seem to want to provide me proper results anymore, even very basic image search tasks on google now net you only about 20 results all of which are wrong or useless. Yandex image search actually works.<p>If you don’t want me to use the Russian tech that helps me get my job done then roll back the Google Search codebase 10 years to when it worked as well as Yandex does today. (Only partially joking)
评论 #37074965 未加载
评论 #37075162 未加载
评论 #37074816 未加载
评论 #37075864 未加载
评论 #37075111 未加载
评论 #37079975 未加载
评论 #37077974 未加载
评论 #37076090 未加载
评论 #37075248 未加载
NelsonMinar将近 2 年前
Folks are focussing on the Russian part of this. But Yandex just happens to be the one whose source code got analyzed; you can safely substitute &quot;Google&quot; or &quot;Facebook&quot; or any of the other various behavior advertising companies here. They&#x27;re all doing similar things and it&#x27;s terrific to have such a detailed analysis of how it works.<p>Wired has a good summary if you want something more like a mainstream press article: <a href="https:&#x2F;&#x2F;www.wired.com&#x2F;story&#x2F;yandex-leaks-crypta-ads&#x2F;" rel="nofollow noreferrer">https:&#x2F;&#x2F;www.wired.com&#x2F;story&#x2F;yandex-leaks-crypta-ads&#x2F;</a>
评论 #37077633 未加载
throw-ru-938将近 2 年前
Context: Yandex is in the news right now because a couple of days ago its cofounder and former CEO Arkady Volozh was caught trying to hide his Russian past [0], and today he finally issued a public statement condemning the war [1], almost 1.5 years after the full-scale invasion began.<p>[0] <a href="https:&#x2F;&#x2F;kz.kursiv.media&#x2F;en&#x2F;2023-08-07&#x2F;co-founder-of-yandex-erases-russia-from-his-biography-and-reflects-on-kazakhstan&#x2F;" rel="nofollow noreferrer">https:&#x2F;&#x2F;kz.kursiv.media&#x2F;en&#x2F;2023-08-07&#x2F;co-founder-of-yandex-e...</a><p>[1] <a href="https:&#x2F;&#x2F;www.reuters.com&#x2F;article&#x2F;ukraine-crisis-yandex-volozh&#x2F;yandex-co-founder-volozh-slams-russias-barbaric-invasion-of-ukraine-idINR4N36T02J" rel="nofollow noreferrer">https:&#x2F;&#x2F;www.reuters.com&#x2F;article&#x2F;ukraine-crisis-yandex-volozh...</a>
评论 #37075107 未加载
评论 #37076884 未加载
评论 #37077109 未加载
评论 #37082956 未加载
评论 #37077999 未加载
评论 #37074983 未加载
评论 #37075716 未加载
azangru将近 2 年前
Another example of political language from the article, in addition to what was described in a sibling comment:<p>&gt; Do we want, at a time when Russia is considering the UK as an enemy, to be providing all our personal details to a server in Moscow?<p>Not &quot;at a time when the UK considers Russia as an enemy&quot;. There is something of a Russell conjugation here.
评论 #37076956 未加载
评论 #37076317 未加载
secondary_op将近 2 年前
&gt; jdangu &gt; co-founder Confiant &gt; Kaileigh McCrea, Privacy Engineer<p>&gt; jdangu on Aug 4, 2015 &gt; We (ClarityAd) do this for major ad platforms. We use a mix of static and dynamic analysis to assess risk.<p>Fuck off. And since you here, you might tell us all how much you get incentive by aligning with U.S. owned Ad platforms, that also align with U.S. national interest to smear foreign tech giant Ad business?
评论 #37080698 未加载
Dah00n将近 2 年前
&gt;what I’ve found is both fascinating and deeply unsettling.<p>I see nothing unsettling, unless one considers Google, Microsoft, Meta, Apple.... unsettling too (which I do, but then I don&#x27;t act surprised and unsettled by a non-US company doing what everyone else is doing).
DeathArrow将近 2 年前
&gt; Do we want, at a time when Russia is considering the UK as an enemy, to be providing all our personal details to a server in Moscow?<p>I think I am safer with Russian govt having access to my data vs my local govt having access to my data.
评论 #37075024 未加载
评论 #37081065 未加载
评论 #37079035 未加载
tuukkah将近 2 年前
The name of the Yandex taxi service that shares data with Russian FSB is Yango: <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Yango_(ride_sharing)" rel="nofollow noreferrer">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Yango_(ride_sharing)</a><p>In EU, it&#x27;s registered in Amsterdam so the responsible authority is Dutch data protection authority, who should force the service to shut down.
darthrupert将近 2 年前
I would also be quite worried of Telegram, with their lack of default encryption, and a bit suspicious unblocking in Russia in 2020[0].<p>[0] <a href="https:&#x2F;&#x2F;www.independent.co.uk&#x2F;tech&#x2F;telegram-russia-ban-lift-messaging-app-encryption-download-a9573181.html" rel="nofollow noreferrer">https:&#x2F;&#x2F;www.independent.co.uk&#x2F;tech&#x2F;telegram-russia-ban-lift-...</a>
whimsicalism将近 2 年前
I feel like this whole neo-cold war against China &amp; Russia was never put up for a vote. Where can I vote against it?<p>Please, let&#x27;s all just get rich together. Governments democratize over time - the UK wasn&#x27;t a democracy when it started out but over 1000 years of governance transitioned into being one. I suspect it will be much faster nowadays, but in the meantime - please no war.
评论 #37076901 未加载
评论 #37077179 未加载
denton-scratch将近 2 年前
&gt; but they’re still going to be very unique and therefore uniquely identifying (likely more so than before because of the entropy the hashing algorithm adds).<p>Surely hashing something can&#x27;t add entropy? Assuming the hash output is smaller than its input, in the general case I&#x27;d expect the hash to have less entropy than its input.
stjohnswarts将近 2 年前
Kind of funny to see how quickly authoritarianism can destroy something that was profitable and usable. I used to use the image search sometimes when google was failing miserably and it worked pretty well. I&#x27;m afraid to visit there now as it&#x27;s not unlikely they could inject a virus into your system.
bionhoward将近 2 年前
Great content. Just some feedback for the webmaster: it’s annoying when you scroll up one line of text and the header nav inserts itself into your view frame on mobile. I wish the header nav was not sticky &#x2F; popup!
DoItToMe81将近 2 年前
A tech company has ties to its native government and uses user data for its own corrupt ends? Shock of the century.
EVa5I7bHFq9mnYK将近 2 年前
So what&#x27;s the action items? How do we identify apps that include that Yandex SDK (apart, obviously, from those that have Yandex in their name)? How can we block sending any data to Yandex or to Ruzzia in general?
jdangu将近 2 年前
Since this is taking off, Confiant is hiring in engineering and security to work alongside Kaileigh on projects like this. jerome at confiant. Pardon the plug.
beardyw将近 2 年前
Use of SSID seems odd. That can be changed any time. MAC address is rarely changeable on WiFi (regularly changes on your phone).
martinsnow将近 2 年前
Many of the images seems to be broken in the article for me.
gumballindie将近 2 年前
Funny how news loves to refer to russian companies as &quot;giants&quot;. Russian oil &quot;giant&quot;, search &quot;giant&quot;, etc. Just an amusing fact.
评论 #37074707 未加载
评论 #37074518 未加载
评论 #37074670 未加载
评论 #37075746 未加载
评论 #37074845 未加载
评论 #37074966 未加载
评论 #37074630 未加载
评论 #37080390 未加载
评论 #37074519 未加载
doubelstandard将近 2 年前
Russia: tight control of user data<p>US and EU: guaranteeing user privacy
评论 #37074898 未加载