Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

bc0a.com #481

Closed
1 of 3 tasks
spirillen opened this issue Jun 11, 2024 · 1 comment
Closed
1 of 3 tasks

bc0a.com #481

spirillen opened this issue Jun 11, 2024 · 1 comment
Assignees
Labels
AdWare Any kind of ads, banners etc based on privacy violating behavior False Positive If we did block a domain and we shouldn't had Tracking Basically the same as SpyWare but TrackWare is used to Track you're online habits

Comments

@spirillen
Copy link
Contributor

spirillen commented Jun 11, 2024

Blacklist domain as

  • Wildcard, The domain should be entirely blacklisted
  • Subdomain, We should not blacklist the entire domain, only sub-domains
  • Both types, category depended, How to Blacklist, depends on category assign per (sub-)domain

Comments

This service has been classified as Advertising and FingerprintingInvasive for the following reasons:

Technical Review

Script: https://cdn.b0e8.com/conv_v3.js

Script embeds or includes snippets of an open source fingerprinting library, fingerprintjs2:

var audioTimeoutId$jscomp$0 = setTimeout(function() {
       console.warn('Audio fingerprint timed out. Please report bug at https://github.com/Valve/fingerprintjs2 with your user agent: "' + navigator.userAgent + '".');
       /**
        * @return {undefined}
        */
       context$jscomp$0.oncomplete = function() {
       };
       /** @type {null} */
       context$jscomp$0 = null;
       return done$jscomp$1("audioTimeout");
     }
  1. Fingerprint is then sent to to BrightEdge:
 var _bright3 = new Object({
   C_NAME : "BE_CLA3",
   BE_URL : "a.b0e8.com/brightedge3.php",
   BE_SURL : "a.b0e8.com/brightedge3.php",
   IX_CONTENTS_HOSTNAME : "ix-contents.brightedge.com",
   IX_CONTENTS_STAGING_HOSTNAME : "ixl-nginx1-001.gcp.staging.brightedge.com",
   IX_STAGING_EXTERNAL_HOSTNAMES : /(ix-testing.brightedge.com)|(valuemyweb.com)/g,
   IX_STAGING_INTERNAL_HOSTNAMES : /(-staging.brightedge.com)/g,
   IX_TRUNCATE_HEADLINE_CHAR_COUNT : 100,
   IX_TRUNCATE_DESC_CHAR_COUNT : 200,
   TIMEOUT : 100 * 12 * 31 * 24 * 60 * 60 * 1E3,
   S_TIMEOUT : 30 * 60 * 1E3,
   VERSION : "3.39",

Domain records

bc0a.com|adware,tracking

Hosts specific records, not used by DNS RPZ firewalls

apcookieportal-cdn.bc0a.com
apcookieportal-qa-cdn.bc0a.com
apif-cdn.bc0a.com
apif-cf.bc0a.com
apif-qa-cdn.bc0a.com
ap-website.bc0a.com
bc0a.com
cdn1.bc0a.com
cdn.bc0a.com
chat-cdn.bc0a.com
chat-cf.bc0a.com
chat-qa-cdn.bc0a.com
cmpportal-cdn.bc0a.com
cmpportal-qa-cdn.bc0a.com
consentpref-cdn.bc0a.com
consentprefqa-cdn.bc0a.com
consents-cf.bc0a.com
cookie-cdn.bc0a.com
cookie-qa-cdn.bc0a.com
cta-cdn.bc0a.com
cta-cf.bc0a.com
ctaportal-cdn.bc0a.com
ctaportal-qa-cdn.bc0a.com
cta-qa-cdn.bc0a.com
dsr-cdn.bc0a.com
dsrportal-cdn.bc0a.com
dsrportal-qa-cdn.bc0a.com
dsr-qa-cdn.bc0a.com
ixf0-api.bc0a.com
ixf2-api.bc0a.com
ixf3-api.bc0a.com
ixf3-api.staging.bc0a.com
ixf5-api.bc0a.com
ixf6-api.bc0a.com
ixf7-api.bc0a.com
ixfd0-api.bc0a.com
ixfd1-api.bc0a.com
ixfd2-api.bc0a.com
ixfd-api.bc0a.com
ixfd-api.staging.bc0a.com
ixf-gcp.bc0a.com
ixf-ssp-alfreddunner.staging.bc0a.com
ixf-ssp-amicoglobal.staging.bc0a.com
ixf-ssp-autopilot.staging.bc0a.com
ixf-ssp-bigtincan.bc0a.com
ixf-ssp-bigtincan.staging.bc0a.com
ixf-ssp-bottlestore.bc0a.com
ixf-ssp-bottlestore.staging.bc0a.com
ixf-ssp-cdn0.bc0a.com
ixf-ssp-cdn0.staging.bc0a.com
ixf-ssp-cdn1.bc0a.com
ixf-ssp-checkpoint.staging.bc0a.com
ixf-ssp-contractorsdirect.staging.bc0a.com
ixf-ssp-cyberpowersystems.staging.bc0a.com
ixf-ssp-dfcu.staging.bc0a.com
ixf-ssp-dialogtech.staging.bc0a.com
ixf-ssp-faberge.staging.bc0a.com
ixf-ssp-fruitfulyield.staging.bc0a.com
ixf-ssp-ginoseast.bc0a.com
ixf-ssp-ginoseast.staging.bc0a.com
ixf-ssp-gogreencloud.staging.bc0a.com
ixf-ssp-gpsinsight.bc0a.com
ixf-ssp-gpsinsight.staging.bc0a.com
ixf-ssp-kaufmancontainer.staging.bc0a.com
ixf-ssp-letu.bc0a.com
ixf-ssp-letu.staging.bc0a.com
ixf-ssp-lucchese.staging.bc0a.com
ixf-ssp-manningfulton.staging.bc0a.com
ixf-ssp-manor.staging.bc0a.com
ixf-ssp-medinstitute.staging.bc0a.com
ixf-ssp-mobilityworks.bc0a.com
ixf-ssp-mobilityworks.staging.bc0a.com
ixf-ssp-oberoncompany.staging.bc0a.com
ixf-ssp-orbitonline.staging.bc0a.com
ixf-ssp-pedigreetechnologies.bc0a.com
ixf-ssp-pedigreetechnologies.staging.bc0a.com
ixf-ssp-potogoldwaste.staging.bc0a.com
ixf-ssp-primera.staging.bc0a.com
ixf-ssp-rccsurfacepro.bc0a.com
ixf-ssp-regencycenters.staging.bc0a.com
ixf-ssp-simoniz-shop.staging.bc0a.com
ixf-ssp-smilebpi.staging.bc0a.com
ixf-ssp-spicely.staging.bc0a.com
ixf-ssp-sunmaid.bc0a.com
ixf-ssp-sunmaid.staging.bc0a.com
ixf-ssp-tailoredlabel.bc0a.com
ixf-ssp-tailoredlabel.staging.bc0a.com
ixf-ssp-themountain.bc0a.com
ixf-ssp-themountain.staging.bc0a.com
ixf-ssp-tyndale.bc0a.com
ixf-ssp-tyndale.staging.bc0a.com
ixf-ssp-unilogcorp.staging.bc0a.com
ixf-ssp-vitalessentialsraw.staging.bc0a.com
ixf-ssp-wausautile.staging.bc0a.com
ixf-ssp-whitehatsec.staging.bc0a.com
ixf-ssp-xytechsystems.bc0a.com
ixf-ssp-xytechsystems.staging.bc0a.com
marvel-admin.bc0a.com
marveladmin-cdn.bc0a.com
marveladmin-qa-cdn.bc0a.com
marvel-api-cdn.bc0a.com
marvel-api-qa-cdn.bc0a.com
marvel-b1-cdn.bc0a.com
marvel-b2-cdn.bc0a.com
marvel-b3-cdn.bc0a.com
marvel-b4-cdn.bc0a.com
marvel-b5-cdn.bc0a.com
marvel-b6-cdn.bc0a.com
marvel-cdn.bc0a.com
marvel-dev1.bc0a.com
marvel-processor.bc0a.com
marvel-test1.bc0a.com
marvel-test2.bc0a.com
marvel-test3.bc0a.com
schema-cdn.bc0a.com
schema-cf.bc0a.com
schema-qa-cdn.bc0a.com
staging.bc0a.com
www.bc0a.com

Screenshots

N/A

Links to external sources

https://github.com/disconnectme/disconnect-tracking-protection/blob/master/descriptions.md#brightedge

logs from uBlock Origin

N/A

@spirillen spirillen added AdWare Any kind of ads, banners etc based on privacy violating behavior Tracking Basically the same as SpyWare but TrackWare is used to Track you're online habits labels Jun 11, 2024
@spirillen spirillen self-assigned this Jun 11, 2024
@spirillen spirillen mentioned this issue Jul 30, 2024
@spirillen
Copy link
Contributor Author

Please see latest records in #564 (duplicated issue)

@spirillen spirillen reopened this Jul 30, 2024
@spirillen spirillen added False Positive If we did block a domain and we shouldn't had AdWare Any kind of ads, banners etc based on privacy violating behavior Tracking Basically the same as SpyWare but TrackWare is used to Track you're online habits and removed AdWare Any kind of ads, banners etc based on privacy violating behavior Tracking Basically the same as SpyWare but TrackWare is used to Track you're online habits labels Jul 30, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
AdWare Any kind of ads, banners etc based on privacy violating behavior False Positive If we did block a domain and we shouldn't had Tracking Basically the same as SpyWare but TrackWare is used to Track you're online habits
Development

No branches or pull requests

1 participant