https://github.com/uBlockOrigin/uAssets/issues/5184#issuecomment-1829172308

Twitch is a dangerous website, the extension probably won’t be back. They could still easily target you at any time and you are just lucky they are sending ads. After some time of using the extension twitch will react and become even more toxic.

Twitch even has a network sniffer in its source code (among other things), its so much worse than just ads, some of these experiments are basically malware/pup that no-one would install on their device willingly, these instances aren’t just left over code from some library they are deliberately crafted experiments that are present in the active code path.

  • orhtej2@eviltoast.org
    link
    fedilink
    English
    arrow-up
    36
    ·
    8 months ago

    The duck did I just read, some AI is attempting SEO or something?

    What an absolute garbage statement devoid of any proof nor tbh technical possibility to implement.

    • TORFdot0@lemmy.world
      link
      fedilink
      English
      arrow-up
      17
      arrow-down
      1
      ·
      8 months ago

      based on the randomly inserted code block that isn’t even syntax-correct, to say nothing about how it doesn’t even make sense, seems to be a tell tale sign of either 1.) AI generated or 2.) schizophrenic generated

      • Aatube@kbin.socialOP
        link
        fedilink
        arrow-up
        1
        ·
        8 months ago

        hmm, which parts of it aren’t syntax correct? see below, they made an extension before pulling it

        • crystal@feddit.de
          link
          fedilink
          English
          arrow-up
          3
          ·
          8 months ago

          I don’t see an issue in these two lines.

          The only thing is that they are most likely not actually successive lines (because otherwise that code would be pretty weird).

          I think that the point of the code is only to show the function names.

    • BlackEco@lemmy.blackeco.com
      link
      fedilink
      English
      arrow-up
      7
      ·
      8 months ago

      MostlyJustBored’s account 3 weeks old with no history. We should take whatever that guy says with a grain of salt.

    • Aatube@kbin.socialOP
      link
      fedilink
      arrow-up
      2
      arrow-down
      6
      ·
      edit-2
      8 months ago

      I doubt it’s just SEO… The fact that his first attempt at the comment was deleted by uBlock’s team and that his claim to be the developer of a now pulled Twitch adblock extension makes this interesting

  • LWD@lemm.ee
    link
    fedilink
    English
    arrow-up
    23
    ·
    8 months ago

    “New github user” appears to be the developer of a now- deleted Firefox addon called “Block Twitch ads,” previously available here.

    That’s not to legitimize anything they are claiming here (we don’t even know if Mozilla deleted their extension or they did), but apparently they aren’t just nobody, and they might understand how to write a little Javascript at least.

    • Aatube@kbin.socialOP
      link
      fedilink
      arrow-up
      1
      arrow-down
      3
      ·
      8 months ago

      That is, they claim to be. While I don’t know much JavaScript, someone below claims it’s not valid JavaScript

      • LWD@lemm.ee
        link
        fedilink
        English
        arrow-up
        6
        ·
        8 months ago

        As I understand it, someone else claimed that they were the add-on developer:

        ToxiClay: I had this extension installed which I can’t even find anymore.

        uBlock-user: @MostlyJustBored Why did you remove your extension from AMO ?

        To me, it looks like the snippets were cut out of a larger block of code, so they might have been “valid” in context. But I have no idea what the context is (e.g. whether these are JavaScript files loaded by twitch) or really anything else about them. Maybe they were written from memory.

        someObject.prototype.nuclearApocalypse= function() {
        

        Terrifying.

  • FishFace@lemmy.world
    link
    fedilink
    English
    arrow-up
    20
    ·
    8 months ago

    network sniffing

    This is only worth paying attention to if someone can say how they not only escaped the browser sandbox but then called native, privileged code. Javascript running in the browser cannot just do that.

  • redditReallySucks@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    6
    ·
    8 months ago

    If this was true, we would have much bigger problems than twitch. The dude determined twitch was spying on you based on function names (allegedly)

  • kpw@kbin.social
    link
    fedilink
    arrow-up
    6
    ·
    8 months ago

    What network requests can it sniff? Shouldn’t this be a browser security bug?

  • thelastknowngod@lemm.ee
    link
    fedilink
    English
    arrow-up
    5
    arrow-down
    6
    ·
    8 months ago

    This is what it feels like to interact with the Linux/opensource/selfhost people sometimes.

    “bUt ThEy CaN wAtCh YoU!!1!”

    • Prater@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      arrow-down
      1
      ·
      edit-2
      8 months ago

      I mean they can watch and monitor your activity on their website, and are probably partnered with many other websites to collate data on your interests and beliefs to feed into a chunky advertising algorithm sooooo…

      But you didn’t want to hear that, did you?

      • essteeyou@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        ·
        8 months ago

        We all know that to a degree, but do you really think they’re in collusion with the US government to jail anyone who mentions it?

        I also don’t think the dude gave anywhere near enough information to explain why search engines and browsers should be blocking access to Twitch. They made a lot of claims, but no proof.

        • Prater@lemmy.world
          link
          fedilink
          English
          arrow-up
          3
          ·
          8 months ago

          Yeah. Just to clarify, I didn’t mean to try to validate conspiracy theories like these and wasn’t suggesting that this guy is right, but that it’s wrong to ignore the large amount of data that closed source applications oftentimes do collect on you.