Some browser test results I have been running

Hello guys i have been doing some test of the browsers I have installed with amiunique.org and this are some of the results. I actually expected Brave and Helium to not leak information like local time and graphics card.

Metric / Parameter 1. LibreWolf 2. Brave 3. Helium 4. Zen Browser
Unique Fingerprint Hash a60eb6a0... 9f2c7d69... b9dab441... 56ff191b...
Engine Layout Type Firefox 150 (Gecko) Chrome 148 (Blink) Chrome 148 (Blink) Firefox 150 (Gecko)
Timezone Reported 0 (Spoofed UTC) -120 (Leaks Local) -120 (Leaks Local) -120 (Leaks Local)
Canvas Signature Size 1,234 (Masked) 21,078 (Farbled) 26,094 (Leaked) 19,046 (Leaked)
Reported CPU Cores 4 (Uniform spoof) 15 (Noise injected) 16 (True hardware) 8 (Standard pool)
Reported System RAM Hidden 16 GB 32 GB (True hardware) Hidden
WebGL GPU Model Blocked / None ANGLE (RTX 4060) (True hardware) ANGLE (RTX 4060)(True hardware) Spoofed (GTX 980)
6 Likes

I think you should report this to Brave. I’m really surprised too.

1 Like

I’m sure someone will come in here and chime in about this situation and explain it, I don’t remember exactly what it’s about because it’s been so long, but Brave is well aware of this, and they actually do this for a reason apparently.

I don’t remember where the article was, it might’ve been on their github, but I just remember reading it and thinking “oh, that makes sense.” but if memory serves me correct, I think it has to do with the fact that it leaves some clues, because hiding everything can break sites and can actually make you stand out more.

This should not be confused with TOR or Firefox fingerprinting, because that’s a whole different beast.

2 Likes

but why give out the real hardware tho and not spoof it to some random nvidia card. Ill try to ask in their community.

1 Like

You should add Tor Browser as a control

4 Likes
Metric / Parameter 1. Tor Browser :onion: 2. Mullvad Browser 🇲 3. Brave :lion: 4. Helium :balloon: 5. Zen Browser :person_in_lotus_position: 6. Google Chrome :globe_with_meridians:
Unique Fingerprint Hash 201c5749... 487afc4d... 0f7790d1... b9dab441... 56ff191b... a3faa3cf...
Engine Layout String Firefox 140 Firefox 140 Chrome 148 Chrome 148 Firefox 150 Chrome 148
Timezone Reported 0 (Spoofed UTC) 0 (Spoofed UTC) -120 -120 -120 -120
Canvas Signature Size 1,230 (Masked) 1,234 (Masked) 21,122 (Noise) 26,094 19,046 19,346
Reported CPU Cores 4 (Spoofed) 4 (Spoofed) 15 (Noise) 16 8 32(True Hardware)
Reported System RAM Hidden Hidden 4 GB 32 GB(True Hardware) Hidden 32 GB(True Hardware)
WebGL GPU Model Mozilla (Blocked) Mozilla (Blocked) RTX 4060(True Hardware) RTX 4060(True Hardware) Spoofed GTX 980 RTX 4060(True Hardware)
5 Likes

Helium randomizes Canvas by default, there’s a flag for the WebGL GPU Model that lets you hide or spoof the model, there are also flags for CPU Cores and RAM.

But overall, none of this really matters. Chromium is terrible at handling fingerprinting and is very easily fingerprinted by websites. Only Cromite has success in this, but it severely breaks compatibility with websites.

2 Likes

Once again, The Tor browser and Mullvad browser(which is essentially a fork of TB) has shown their uncomparable anti-fingerprinting capabilities. I use Mullvad browser as my default AND main browser ever since I got to know it.

It’s actually quite disappointing that Brave leaks so many data despite it being acknowledged as one of, if not the best, chromium based browsers

3 Likes

also check here Brave is NOT fingerprint resistant enough

5 Likes

thank you that is an interesting post

1 Like

What about Vivaldi? Is it not even worth mentioning? It has been my browser for more than 3 years now

1 Like

One thing that would be nice to see is Brave Tor tabs. Personally I’d love to see tab order at Brave > Brave Tor tab > Tor browser for easy comparison

1 Like

A browser that does not keep up with security releases is not worth mentioning. I would also highly recommend reconsidering your usage of it too.

6 Likes

So is Zen and Helium considered private and secure? Or both can’t be trusted?

1 Like

Test Cloakbrowser and camofox in DonutBrowser. These should have good fingerprint protection between profiles and wont be detected as suspicious for privacy reasons.

Obviously they have other problems, but fingerprint is not one of them.

2 Likes

Can you also test LibreWolf (my main browser)?

1 Like

You could test your main browser against the website and share the results. If you see any leaks, you can redact the information.