PogoWasRight.org

Menu
  • About
  • Privacy
Menu

Verizon gives 120 million customers a cookie they can’t delete

Posted on October 29, 2014 by pogowasright.org

Mark Stockley writes:

Verizon Wireless has been caught with their hand in the cookie jar, so to speak.

It emerged last week that the cellular provider has been adding a unique identifier to its cell phone customers’ web traffic – the identifier can be used to track a user’s actions in exactly the same way as a cookie can but, unlike a cookie, it can’t be deleted.

An HTTP header containing a device-specific ID is tacked onto outgoing web traffic as it passes through Verizon’s network, after it has left their users’ phones and before it hits the internet.

Read more on Graham Cluley.

Unsurprisingly, Verizon denies a privacy problem. Over on eWeek, Todd Weiss reports:

Adria Tomaszewski, a Verizon Wireless spokeswoman, told eWEEK in an Oct. 28 email reply to an inquiry that the UIDH data has been in use since late 2012 and that the information “accompanies users’ Internet data requests transmitted over our wireless network.”

The UIDH data is dynamic and changes often on user devices, and can be used to authenticate subscribers as well as help “to associate devices with targeted ad campaigns for the Relevant Mobile Advertising program to the extent a customer has not opted-out of the program,” wrote Tomaszewski.”We do not use the UIDH to create customer profiles,” she wrote. “Verizon Wireless does not use the UIDH to track where customers go on the Web.  And, information about Web browsing is not part of the relevant mobile advertising program.”

Category: BusinessSurveillanceU.S.

Post navigation

← Virginia Justices to Hear Yelp Anonymity Case
Statement of the Privacy and Information Commissioners of Canada on National Security and Law Enforcement Measures →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • South Korea fines Temu for data protection violations
  • The BR Privacy & Security Download: May 2025
  • License Plate Reader Company Flock Is Building a Massive People Lookup Tool, Leak Shows
  • FTC dismisses privacy concerns in Google breakup
  • ARC sells airline ticket records to ICE and others
  • Clothing Retailer, Todd Snyder, Inc., Settles CPPA Allegations Regarding California Consumer Privacy Act Violations
  • US Customs and Border Protection Plans to Photograph Everyone Exiting the US by Car

RSS Recent Posts on DataBreaches.net

  • Chinese Hackers Hit Drone Sector in Supply Chain Attacks
  • Coinbase says hackers bribed staff to steal customer data and are demanding $20 million ransom
  • $28 million in Texas’ cybersecurity funding for schools left unspent
  • Cybersecurity incident at Central Point School District 6
  • Official Indiana .gov email addresses are phishing residents
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy