Google knows where you are.... creepy.
Thread Starter
VIP Member
iTrader: (17)
Joined: May 2005
Posts: 22,776
From: Sunnyvale, CA
Car Info: '13 BRZ Limited / '02 WRX
Registered User
iTrader: (1)
Joined: Jan 2008
Posts: 143
From: Santa Cruz, Ca
Car Info: 07 STi, 02 F150-FX4, 04 ZX-636, 07 990 SuperDuke
This is most likely done by cross mapping an internet ip address database (zip code entry form on most sites), along with what google knows about you with your account information. There's no direct mapping of IP address to direct GPS coordinates out there, just general areas for ranges down to the zip code.
plays well with others
iTrader: (1)
Joined: Aug 2006
Posts: 9,923
From: Sac
Car Info: your mother crazy
This is most likely done by cross mapping an internet ip address database (zip code entry form on most sites), along with what google knows about you with your account information. There's no direct mapping of IP address to direct GPS coordinates out there, just general areas for ranges down to the zip code.
its accurate to about 10 feet.
Token Toyota Mod
iTrader: (50)
Joined: Jun 2004
Posts: 52,306
From: Palo Alto, CA
Car Info: Something german
Maybe you already know but you can use Little Snitch on your mac to accept or deny connections to anything.. you can set rules for all apps or rules for 1 specific app.
http://www.obdev.at/products/littlesnitch/index.html
http://www.obdev.at/products/littlesnitch/index.html
Token Toyota Mod
iTrader: (50)
Joined: Jun 2004
Posts: 52,306
From: Palo Alto, CA
Car Info: Something german
Friendly Neighborhood Ogre
iTrader: (6)
Joined: Mar 2000
Posts: 19,930
From: www.gunatics.com
Car Info: GUNATICS.COM
^^^ Just waiting for your excuse to use that huh?
Also, what false advertising! $2.99 for a pack of RAMEN!? Are they f'ing HIGH?!
http://www.perpetualkid.com/wasted-a...n-noodles.aspx
Also, what false advertising! $2.99 for a pack of RAMEN!? Are they f'ing HIGH?!
http://www.perpetualkid.com/wasted-a...n-noodles.aspx
Registered User
Joined: Jun 2009
Posts: 837
From: up in them guts.
Car Info: 2008 Forester XT Sports
Despite my abstract humor that does not have any value to the topic at hand, I am forced to ask you why you did not ask the question of 'why they do it' before 'how they do it'.
Granted you already answered your own question along with other folks here, using the tactics of IP logging and locational caching; I would argue that the 'why' derived from your avatar of a google QR code explains the purpose behind it and your website address and 'web spiders' that run through it to obtain all the geotagging of the pictures you have taken give you the how.
Granted you already answered your own question along with other folks here, using the tactics of IP logging and locational caching; I would argue that the 'why' derived from your avatar of a google QR code explains the purpose behind it and your website address and 'web spiders' that run through it to obtain all the geotagging of the pictures you have taken give you the how.
Thread Starter
VIP Member
iTrader: (17)
Joined: May 2005
Posts: 22,776
From: Sunnyvale, CA
Car Info: '13 BRZ Limited / '02 WRX
Despite my abstract humor that does not have any value to the topic at hand, I am forced to ask you why you did not ask the question of 'why they do it' before 'how they do it'.
Granted you already answered your own question along with other folks here, using the tactics of IP logging and locational caching; I would argue that the 'why' derived from your avatar of a google QR code explains the purpose behind it and your website address and 'web spiders' that run through it to obtain all the geotagging of the pictures you have taken give you the how.
Granted you already answered your own question along with other folks here, using the tactics of IP logging and locational caching; I would argue that the 'why' derived from your avatar of a google QR code explains the purpose behind it and your website address and 'web spiders' that run through it to obtain all the geotagging of the pictures you have taken give you the how.
Registered User
Joined: Sep 2010
Posts: 997
From: SF Bay Area, CA (USA)
Car Info: 2014 Subaru XV (Crosstrek)
13:52 How does one enable this "NoScript" thing?
http://www.youtube.com/watch?v=2ctRfWnisSk&NR=1
And jeez, internet security (or lack of it) stuff makes me paranoid.
http://www.youtube.com/watch?v=2ctRfWnisSk&NR=1
And jeez, internet security (or lack of it) stuff makes me paranoid.
Token Toyota Mod
iTrader: (50)
Joined: Jun 2004
Posts: 52,306
From: Palo Alto, CA
Car Info: Something german
13:52 How does one enable this "NoScript" thing?
http://www.youtube.com/watch?v=2ctRfWnisSk&NR=1
And jeez, internet security (or lack of it) stuff makes me paranoid.
http://www.youtube.com/watch?v=2ctRfWnisSk&NR=1
And jeez, internet security (or lack of it) stuff makes me paranoid.
http://noscript.net/
I think they have one for chrome too.
Registered User
Joined: Sep 2010
Posts: 997
From: SF Bay Area, CA (USA)
Car Info: 2014 Subaru XV (Crosstrek)
Registered User
iTrader: (1)
Joined: Jan 2008
Posts: 143
From: Santa Cruz, Ca
Car Info: 07 STi, 02 F150-FX4, 04 ZX-636, 07 990 SuperDuke
As for SSID and router MAC, how is google going to know what SSID you're on? I'm not terribly experienced with JAVA or AJAX, but that's typically run in a JVM.
From a "war driving standpoint", sure.. you'll know the location of the SSID, and the MAC address of the wireless radio for that SSID; but unless you do an invasive look (attack) into the AP, you won't know the public address, nor will you know the MAC addresses of the AP's external link ("internet"), or the internal link ("lan") of the AP (Unless the AP's incrementing their MAC's and you guess them). Your typical AP's will actually have at least 3 MAC's: Wireless, WAN, and LAN.
plays well with others
iTrader: (1)
Joined: Aug 2006
Posts: 9,923
From: Sac
Car Info: your mother crazy
I must be missing the link to the video, where's it at? Are you talking about the Defcon video's?
As for SSID and router MAC, how is google going to know what SSID you're on? I'm not terribly experienced with JAVA or AJAX, but that's typically run in a JVM.
From a "war driving standpoint", sure.. you'll know the location of the SSID, and the MAC address of the wireless radio for that SSID; but unless you do an invasive look (attack) into the AP, you won't know the public address, nor will you know the MAC addresses of the AP's external link ("internet"), or the internal link ("lan") of the AP (Unless the AP's incrementing their MAC's and you guess them). Your typical AP's will actually have at least 3 MAC's: Wireless, WAN, and LAN.
As for SSID and router MAC, how is google going to know what SSID you're on? I'm not terribly experienced with JAVA or AJAX, but that's typically run in a JVM.
From a "war driving standpoint", sure.. you'll know the location of the SSID, and the MAC address of the wireless radio for that SSID; but unless you do an invasive look (attack) into the AP, you won't know the public address, nor will you know the MAC addresses of the AP's external link ("internet"), or the internal link ("lan") of the AP (Unless the AP's incrementing their MAC's and you guess them). Your typical AP's will actually have at least 3 MAC's: Wireless, WAN, and LAN.
so he grabs the routors MAC and uses a phoney user agent string to query google maps. Gmaps gives him lon/lat for the MAC's known location and he Gets Directions from the street address where the routor is located to the lon/lat.
it nails down the routor location inside the house and says "walk 30 ft" or something like that gmaps. thats how accurate their triangulation is. of course, this only works if the routor is the same as when the streetview car came by.
of course, all of this is after he reduces 160 bits of entropy down to 12bits so he can brute force someones facebook account by spoofing their cookie data and using that port overflow exploit and DCC (old IRC file transfer) to load the XSS on the target system.
dudes pretty serious biz, and very hilarious. I highly recommend watching the video
its posted above or you can google "how i met your girlfriend"
Thread
Thread Starter
Forum
Replies
Last Post







