April 30, 2011

March of the Evercookies

Late last year a security researcher and known malware author decided to perform an experiment with modern day browsers. His mission; to create a “cookie” file that was truly persistent in that a user could never delete it. Thus the Evercookie was born.

This particularly nasty code is developed in such a way as to copy itself to every part of your browser and operating system it can in order to evade deletion. And if that wasn’t enough, it also is setup to “heal” itself when the cookie is loaded by your browser it will copy itself back to all those locations.

By not being able to get rid of it the evercookie  will permanently be tracking your movements on the web and reporting them in to the owner of the cookie file. This has some pretty big implications to privacy on the internet!