AliExpress was silently running audio in your browser to fingerprint and track your device
Researchers discover that AliExpress and Alibaba covertly tracked users' devices by running silent audio in browsers.
Velocity
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The brief
Recent reporting indicates that the e-commerce platform AliExpress, owned by Alibaba, has been utilizing covert methods to collect data from users visiting its platform. Specifically, researchers have found that the platform runs silent audio inside web browsers to perform WebAudio fingerprinting. This technical mechanism enables the tracking and identification of user devices without the knowledge or explicit consent of the individuals browsing the site. Coverage notes that a Bluetooth glitch initially exposed this covert data collection practice, bringing hidden tracking methods to public and technical attention.
Outlets such as Mezha, gHacks, CyberInsider, Cybernews, and TechSpot have actively covered the discovery, detailing how user audio systems are leveraged for device identification. These publications emphasize the technical nature of the tracking, explaining that WebAudio fingerprinting relies on how a device processes audio signals to create a unique identifier. The reporting highlights that this practice operated silently in the background while users navigated the AliExpress website, raising significant privacy questions regarding browser-based surveillance techniques. This unfolding situation adds to ongoing discussions surrounding digital privacy, corporate data collection, and the methods large technology and e-commerce conglomerates use to monitor consumer activity.
Device fingerprinting techniques have long been a subject of scrutiny among security researchers because they allow trackers to bypass traditional cookie controls and persist even when users clear their browser storage. The involvement of a major global platform like Alibaba places renewed focus on how web standards and browser architectures handle underlying hardware capabilities without explicit user authorization. As the story develops, coverage does not yet specify official regulatory responses, potential legal penalties, or whether Alibaba plans to alter its WebAudio practices in response to the findings. Observers and users will need to monitor further technical analyses from security researchers to see if similar tracking methods are uncovered on other platforms or if browser vendors implement new safeguards to restrict silent audio utilization.
Synthesized by PULSE from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 2h ago.
Quick answers
What method did AliExpress use for tracking?
Researchers found that AliExpress ran silent audio in browsers to perform WebAudio fingerprinting for user tracking.
How was the tracking discovered?
A Bluetooth glitch exposed the covert data collection, according to reporting from technology outlets.
Which companies are involved in the reports?
Coverage identifies AliExpress and its parent company, Alibaba, as utilizing the user audio systems.
Coverage (6)
- Experts discover that popular online shopping platform with millions of users might be spying on you UNILAD Tech · 20h ago
- A Bluetooth glitch exposed AliExpress's covert data collection via silent audio Mezha · 20h ago
- AliExpress Ran Silent Browser Audio to Fingerprint and Track Devices, Researchers Find gHacks · 20h ago
- Alibaba spotted using WebAudio fingerprinting for user tracking CyberInsider · 20h ago
- Alibaba’s AliExpress leverages user audio systems for fingerprinting Cybernews · 20h ago
- AliExpress was silently running audio in your browser to fingerprint and track your device TechSpot · 20h ago
Topics
Related trends
Hackers infect Android car head units with proxy botnet malware
Cyber attackers are targeting Android-based automotive head units to build a proxy botnet and conduct ad fraud through built-in system updaters.
De-Googled GrapheneOS is coming to Motorola’s foldables next year
Motorola is partnering with GrapheneOS to bring a de-Googled operating system to its foldable devices starting next year.
UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit
A Chinese-speaking adversary designated UAT-10147 is scaling server attacks by integrating agentic AI to automate vulnerability exploitation.
Stock Market Today: Dow, S&P 500 and Nasdaq set to fall ahead of Nvidia earnings and Jackson Hole
Alibaba executives purchase shares following a massive capital raise for artificial intelligence.
Alibaba shares slide after $10.2 billion AI share sale offered at sharp discount
Alibaba shares slide following a multi-billion dollar artificial intelligence share sale offered at a sharp discount.
Small UK power generator shut down after cyberattack linked to Iran: Telegraph
A cyberattack linked to Iran has forced the shutdown of a small UK power generator, exposing critical vulnerabilities in Western infrastructure.