Share this article

Improve this guide

Chrome enhances browsing privacy via new cookies handling process

3 min. read

Updated onOctober 4, 2023

updated onOctober 4, 2023

Share this article

Improve this guide

Read our disclosure page to find out how can you help Windows Report sustain the editorial teamRead more

Google is currently working on higher protection for Chrome’s users againstcyber attacks. It looks like Google Chrome fans will be able to enjoyincreased securityand privacy and here’s how Google plans to materialize the idea. The company is planning to reduce the lifespan of cookies that are delivered via HTTP connections.

The move seems to be targeted mostly at website developers and advertisers, and Google hopes that they will send cookies viaHTTPSbecause this step would offer increased confidentiality protection against cyber attacks. Mozilla also experienced with this feature, but it never reached Firefox.

Sending cookies via plaintext HTTPs is a major privacy and security risk

The cookies might be intercepted and even modified by an attacker. The ban over sending cookies via HTTP is not a viable option for the moment, and Chrome engineers are hoping that by limiting cookies’ lifespan, they would also prevent massive troves of user data from collecting inside cookies. This would also prevent advertisers using the same cookie to track users across various sites.

Chrome engineers plan to limit HTTP cookies lifetime to an initial maximum value of a single year, and this duration is set to reach a few days only in the future.

The capping process is scheduled for Chrome 70 which will be released in October. For the moment, a large number of HTTP-transmitted cookies have a lifespan that goes past one year.

The process won’t affect you in an obvious way

Mike West, Google engineer stated that cookie are fragile and they can get evicted all the time for various reasons outside the limits of developers’ control. There won’t be involved a high compatibility cost, and users won’t even fell the difference.

But, the ones who will feel the difference are services that use non-secure cookies, and this is a good thing. Sending cookies over non-secure channels especially when it’s done at a higher scale as part of anadvertising networktriggers specific risks.

Google’s decision will notstop user tracking online, but the move will increase security and prevent third-parties without authorization from getting access to the data by observing cookie flow via the network’s traffic.

Speaking of stopping third-parties from tracking your online activities, here are some suggestions on how to do that:

More about the topics:Cybersecurity

Radu Tyrsina

Radu Tyrsina has been a Windows fan ever since he got his first PC, a Pentium III (a monster at that time).

For most of the kids of his age, the Internet was an amazing way to play and communicate with others, but he was deeply impressed by the flow of information and how easily you can find anything on the web.

Prior to founding Windows Report, this particular curiosity about digital content enabled him to grow a number of sites that helped hundreds of millions reach faster the answer they’re looking for.

User forum

0 messages

Sort by:LatestOldestMost Votes

Comment*

Name*

Email*

Commenting as.Not you?

Save information for future comments

Comment

Δ

Radu Tyrsina