访问网站之外的浏览活动

发布于 2024-09-02 01:49:23 字数 50 浏览 6 评论 0原文

网站是否可以通过您的浏览器发送到网站的 HTTP 请求来了解您在该网站之外的浏览活动?

Is there a way a Web site can learn something about your browsing activities outside of this Web site from an HTTP request sent to the Web site by your browser?

如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。

扫码二维码加入Web技术交流群

发布评论

需要 登录 才能够评论, 你可以免费 注册 一个本站的账号。

评论(5

同展鸳鸯锦 2024-09-09 01:49:24

从道德上正确的立场来看,每个网站都可以找出您来自的网页(如果您单击了重定向到您网站的链接),

从黑暗的一面来看,您可能会通过浏览器漏洞或监视访问者 cookie 获得更多信息。尽管漏洞利用不是您可以依赖的东西,但您可能可以从未单击“仅接受我导航到的站点的 cookie”选项的用户检索一些信息。

From an ethically correct position, every website can find out the webpage you come from (if you clicked the links that redirects to your website)

From the dark side you might get something more with browser exploits or spying on your visitor cookies. Although exploits are not something that you can rely on, probably you can retrieve some information from users who do not click the option "accept only cookies from sites I navigate to".

椵侞 2024-09-09 01:49:24

正如其他人提到的,浏览器将发送一个 Referrer 标头,它告诉 Web 服务器您正在加载的新页面的链接来自哪里。

理论上,这是网站应该能够推断出有关您的浏览历史记录的唯一信息。但是,通常存在意味着信息泄露的浏览器漏洞 - 例如,利用已访问链接的颜色不同的事实。有时,其他浏览器错误也可能泄漏 Cookie。 (尽管请注意,这些需要的不仅仅是初始 GET - 通常必须在网页中提供 JavaScript 才能利用这些问题。)

总之 - 理论上,Referrer 就是发送的所有内容;实际上,浏览器错误可能会泄露更多信息。

As others have mentioned, the browser will send a Referrer header, which tells the web server where the link to the new page you're loading came from.

In theory this is the only information a site should be able to deduce about your browsing history. However, there are often browser vulnerabilities that mean that information is leaked - for example, using the fact that the colour for links that have been visited is different. Sometimes other browser bugs can leak cookies too. (Though note that these require more than just the initial GET - there usually must be javascript in the web page that gets served up in order to exploit these problems.)

In summary - theoretically the Referrer is all that gets sent; in practice browser bugs may leak more information.

甜点 2024-09-09 01:49:23

第三方 cookie 是专门用于此目的的构造。

Third-party cookies are a construct used specifically for this purpose.

无需解释 2024-09-09 01:49:23

嗯……我想在某种程度上是有可能的。 HTTP 请求可能包含引用链接,因此如果有人通过从某个外部站点单击您的网络链接来访问您的网站,您至少会知道他们来自哪里。以下是有关 HTTP 引用标头的一些信息: http://www.w3.org/Protocols /HTTP/HTRQ_Headers.html

Hmm... possible, to an extent, I suppose. The HTTP request might contain the referrer link, so if a person visits your website by clicking your web link from some external site, you will at least know where they come from. Here's some info on the HTTP referrer header: http://www.w3.org/Protocols/HTTP/HTRQ_Headers.html

甜中书 2024-09-09 01:49:23

是的,有时。如果您从谷歌搜索结果页面点击“说”,浏览器会发送一个引用网址。

事实上,在某些情况下,由于引用网址欺骗,依赖此引用网址会对 Web 服务器造成损害(!)。

请参阅:http://en.wikipedia.org/wiki/HTTP_referrer

Yes, sometimes. There is a referrer URL which browsers send if you click say from a google search result page.

In fact, in some cases, relying on this referrer has been detrimental to the web server(!) due to referrer spoofing.

See: http://en.wikipedia.org/wiki/HTTP_referrer

~没有更多了~
我们使用 Cookies 和其他技术来定制您的体验包括您的登录状态等。通过阅读我们的 隐私政策 了解更多相关信息。 单击 接受 或继续使用网站,即表示您同意使用 Cookies 和您的相关数据。
原文