5 ms·
Any sort of file system imprint would at least leave a trace that incognito had been used. I’m not sure how much of a problem at is, and how much of a trace it
by TomAnthony 7y ago
Any sort of file system imprint would at least leave a trace that incognito had been used. I’m not sure how much of a problem at is, and how much of a trace it currently leaves.
- em-bee 7y agothere are many mundane reasons to use incognito mode. and the system would work in a way that the user will not even know the decryption key since it can be generated on the fly for each session. the browser could even encrypt all their data by default. (but for non-incognito mode with a known key) it could then write the normal and incognito data in such a way that you can't even see that there is incognito data in there if you don't have the incognito key
- wtmt 7y agoWhat about swap space used on the disk by the OS, transparent to the application? Is that also a concern for “file system imprint”? What’s the threat model here? The application would have to use RAM that’s never swapped for storing this sort of information. That would make it quite heavy.
- geekroutine 7y agoI think chrome devs want to limit the "file system imprint" as much as possible to enforce "no-history in incognito". There's been some discussions on finding a way around crash reporting in incognito session which stores the dump in the disk, and to my knowledge this is the only violation of this policy. [1]https://bugs.chromium.org/p/chromium/issues/detail?id=876270&q=component%3APrivacy%3EIncognito&colspec=ID%20Pri%20M%20Stars%20ReleaseBlock%20Component%20Status%20Owner%20Summary%20OS%20Modified https://bugs.chromium.org/p/chromium/issues/detail?id=876270...
- dredmorbius 7y agoInitialising a fixed storage image with random data offers plausible deniability.