Welcome back...

This is a short list of user tracking techniques (based on browser cache poisoning) - which, for example, can be used to revive EverCookie.

Needless to say, this problem isn't new ... and yet, it's still easy to find ways to effectively compromise users' privacy.

The potential of finding other approaches is also quite significant. Give it a shot...*


POCS:
  1. XHR Preflight Cache Poisoning
  2. HTTP 301 Permanent Redirect Cache Poisoning
  3. Plain SVG Cache Tracking Example

References:

*
https://dev.chromium.org/Home/chromium-security/client-identification-mechanisms#TOC-Cached-objects

Author:

Piotr DuszyƄski (@drk1wi) http://duszynski.eu