looks like rendering adblockers extensions obsolete with manifest-v3 was not enough so now they try to implement DRM into the browser giving the ability to any website to refuse traffic to you if you don’t run a complaint browser ( cough…firefox )

here is an article in hacker news since i’m sure they can explain this to you better than i.

and also some github docs

  • frog@programming.dev
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 year ago

    I could go into the conspiratorial 4D chess I’m sure google is playing, but let me ask this instead: Does you bank not have any captchas, anywhere in the flow of accessing/using their website? Cause if they do, I hope you know google is absolutely going to advertise DRM requirements as the best tech for fighting bot traffic. Even if Google wasn’t doing anything like offering cheap training to their standards to influence the future of the cybersecurity space, that would be PLENTY to get a looooot of big corporations, including banks, to use it.

    • argv_minus_one@beehaw.org
      link
      fedilink
      English
      arrow-up
      0
      ·
      1 year ago

      Criminals will crack the DRM in short order—they always do—so that idea won’t last long.

      And no, the DRM can’t be updated to fix the vulnerability if it’s implemented in firmware. Not without shutting out absolutely everyone whose computer/phone is more than 3 years old, and there’s not a snowball’s chance in hell that banks will do that when half of their customers are old farts with decade-old computers and an “if it ain’t broke, don’t fix it” attitude.

      • frog@programming.dev
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        Wait were they seriously looking to implement it at a FIRMWARE level? jesus that’s just stupid.

        • argv_minus_one@beehaw.org
          link
          fedilink
          English
          arrow-up
          0
          ·
          1 year ago

          If they implement it in hardware, then fixing vulnerabilities is completely impossible instead of only mostly impossible.

          • frog@programming.dev
            link
            fedilink
            English
            arrow-up
            1
            ·
            1 year ago

            I was just expecting it to be something built into chrome, similar to how drivers need to be signed to run in windows, they’d force you to use browsers Signed By Google to be verifiably compliant with the DRM. It seems like the easiest option for them and the most well understood since it’s been used for drivers for so long