Author Topic: avast forum site's insecure tracking flagged...  (Read 1241 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
avast forum site's insecure tracking flagged...
« on: October 02, 2017, 11:51:02 PM »
Tracker SSL extension report:

Website has a security hole.
100% of the trackers on this site could be helping protect you from NSA snooping.

But, even though avast.com uses HTTPS, there's at least one third party that's been communicating insecurely.

Tell avast.com to fix it.

Identifiers | All Trackers
 Insecure Identifiers
Unique IDs about your web browsing habits have been insecurely sent to third parties.

 -forum.avast.com phpsessid
o7d89q0vluftkc304943rkun36 fotkica.com phpsessid

 Tracking IDs could be sent safely if this site was secure.

Consider also: https://webcookies.org/scan/9115320

A meagre 34% score here: https://en.internet.nl/domain/forum.avast.com/99885/

D-grade status: https://observatory.mozilla.org/analyze.html?host=forum.avast.com

polonus
« Last Edit: October 03, 2017, 12:22:34 AM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89033
  • No support PMs thanks
Re: avast forum site's insecure tracking flagged...
« Reply #1 on: October 03, 2017, 12:34:21 AM »
Isn't fotkica.com an image storage/retrieval source, often being used by users for their profile image/avatar or images in their posts ?
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: avast forum site's insecure tracking flagged...
« Reply #2 on: October 03, 2017, 04:54:40 PM »
Yes, DavidR, when there is no third party link code from there, the website has a 100% green score.

This website is secured
100% of the trackers on this site are helping protect you from NSA snooping. Why not thank avast.com for being secure?

Identifiers | All Trackers
 Secure Identifiers
Unique IDs about your web browsing habits have been securely sent to third parties.

c6lngmsvlo0e4jg9ss274p4060 -forum.avast.com phpsessid

Just to set your mind at ease, but with sri hashes generated also the fotkica dot com could be securely connecting...

pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!